top of page

Hack the box Lame retired Machine Walkthrough

  • Writer: Chamodi Abisheka
    Chamodi Abisheka
  • Sep 14, 2019
  • 1 min read

Updated: Dec 16, 2019

Lame is a hackthebox retired machine and is ideal for beginners who have the basic linux commands knowledge.


I used the Kali Linux terminal to complete this challenge.


You can follow the instructions on the video to successfully gain the flags.




Additionally a break down of the steps used and results gained is included below.


STEP 1


Deep nmap Port Scan results

Machine IP- 10.10.10.3




Open ports identified are

  • FTP (TCP-21)

  • SSH (TCP-22)

  • SAMBA (TCP-139/145)

Since anonymous login is allowed on FTP, let's try it.


STEP 2


Log into FTP using anonymous login


STEP 3


Let's try to exploit Samba service as no files were available inside FTP.

Searching for exploits and viewing results



STEP 4


Run the correct exploit using msfconsole and set host IP as 10.10.10.3


STEP 5


Now let's try to run the exploit


Voila! We are in!


STEP 6


Now let's navigate through the directories and find the flags. We already know the 2 flags are inside 2 text files called user.txt and root.txt as mentioned in the hackthebox lame page.


Now let's navigate thrhe ough the directories and find the flags. We already know the 2 flags are inside 2 text files called user.txt and root.txt as mentioned in the hackthebox lame page.


To navigate inside directories we will have to use some basic linux commands.


Next let's find the root flag inside root.txt.



And done! Now you can submit the 2 flags to own the machine. Congrats!


Comments


©2019 by chamodiabisheka.

  • Twitter
  • LinkedIn
  • Instagram
bottom of page