HTB - Napper
by peRd1 - Saturday November 11, 2023 at 07:18 PM
#81
(11-15-2023, 01:14 PM)VrxWqpKiQ7LSpX Wrote: For the one still struggling on the initial payload. 

I coded this semi-auto script to gain access to the machine. feel free to use (it's quick and dirty)
https://github.com/Burly0/HTB-Napper

Thanks the stupid payload drove me nuts! Script works perfectly, thanks!
Reply
#82
I created a repository on GitHub with the improved .cs code and Python script to gain initial access to the machine. I used Invoke-PowerShellTcp.ps1 to get the reverse shell.
https://github.com/kvlx-alt/HTB-Napper-Scripts
Reply
#83
I dont know what i m doing bad, i m have the user flag

i found the a.exe and the .env

I modifiy the .env to this:

ELASTICUSER=test
ELASTICPASS=12345

ELASTICURI=https://127.0.0.1:9200

but when i visit the elastic search url keeps saying me that the credentials are wrong Sad
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  HTB Academy - Active Directory Penetration Tester Path 2024 loganpaul09 19 10,430 Yesterday, 06:25 AM
Last Post: adolfoL
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 95 27,276 08-31-2026, 03:15 PM
Last Post: Marlb0r0Man
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 367 114,752 08-31-2026, 03:05 PM
Last Post: Marlb0r0Man
  HTB Eloquia User and Root Flags - Insane Box 69646B 14 18,497 08-21-2026, 07:27 PM
Last Post: tangol
  [FREE] HTB-ProLabs APTLABS Just Flags kewlsunny 25 20,395 08-15-2026, 06:06 PM
Last Post: m4573rx



 Users browsing this thread: 1 Guest(s)