Dec. 15: new wargame started!

Questions? Stuck? post here....
User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Dec. 15: new wargame started!

Post by bad_brain »

the rules
- no DDoS
- no abuse of the server for malicious activity when it got rooted

is there something to win?
experience....well, ok, the first one can chose from an article in the suck-o merchandising shop once it is up... :P the intention of this wargame is that you work together in case you get stuck, and not to create a climate of competitiveness.

how do I prove that I have done it?
simply leave a file on the server with a notice, the time-stamp counts in case 2 people will do it on the same day.

how long will the wargame last?
about 4 weeks, when the server was rooted the wargame will not stop, either the whole server will be reinstalled or the one that rooted it simply don't tell the other how he did it (depends on WHO will root the box, for a well-known trusted member option #2 applies).

will logs be published again?
yes. BUT this time I am not able to run an IDS (too less RAM :roll: ), I will have to analyze the normal system logs. so this will also be a challenge for me, I will publish suspicious log entries once a week.

oook, where to hell is the server?
http://www.suck-o-licious.org


happy hacking! :D

User avatar
ph0bYx
Staff Member
Staff Member
Posts: 2039
Joined: 22 Sep 2008, 16:00
15
Contact:

Post by ph0bYx »

Good luck guys!
I expect reports ;)

User avatar
f4Gg0t_43
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 245
Joined: 13 Sep 2008, 16:00
15
Contact:

Post by f4Gg0t_43 »

Is it safe and you just want us to try to hack it, or did you actually put in vulnerabilities?

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

there are vulnerabilities... :wink:

User avatar
DNR
Digital Mercenary
Digital Mercenary
Posts: 6114
Joined: 24 Feb 2006, 17:00
18
Location: Michigan USA
Contact:

Post by DNR »

It is safe because you are messing with a server, not a network. While the server has holes in it, its IDS does not. You can start with just viewing the source of the webpage's code - which you can do on any website.
The next step would be exploiting the weaknesses you find in a harmless way-just post a short simple message on the server - it does not have to include your name. You'll then contact B_B and tell him the message you left. No profanity, no promotion, just a test of skills.

It is advised not to share in public your method of hacking the wargame until the game is over. When the game is over you will be invited to write a short tutorial on what you did, and the winner gets a prize!

DNR
-
He gives wisdom to the wise and knowledge to the discerning. He reveals deep and hidden things; he knows what lies in Darkness, and Light dwells with him.

User avatar
Still_Learning
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 1040
Joined: 11 Jun 2008, 16:00
15
Location: Trigger City

Post by Still_Learning »

So i need to sign up for a new account to do this im guessing?
Gone

User avatar
Lyecdevf
cyber Idi Amin
cyber Idi Amin
Posts: 1222
Joined: 16 Mar 2006, 17:00
18
Location: In between life and death.
Contact:

Post by Lyecdevf »

Still_Learning wrote:So i need to sign up for a new account to do this im guessing?
You could if you know of some exploit that would allow you to elevate your privelages but you do not have to. Maybe as a user you would have access to certain features like adding an avatar and you could upload some thing there! :D
We will either find a way, or make one.
- Hannibal

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

no need to sign up, actually it is not even possible because there is no mail server running....I had to disable it to save some RAM.... :wink:

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

first logfiles available:
http://wwww.suck-o-licious.org/logs18122008.tar.gz

as I said, no IDS logs this time, but even the regular logs give enough info about intruding attempts....this is what an admin sees when his server has no IDS, and believe me, many servers have no IDS running... :wink:

I recommend Notepad++ to check the logfiles on MS systems:
http://notepad-plus.sourceforge.net/uk/site.htm

MariaLara
suck-o-fied!
suck-o-fied!
Posts: 99
Joined: 27 Feb 2008, 17:00
16
Contact:

Post by MariaLara »

bad_brain wrote:first logfiles available:
http://wwww.suck-o-licious.org/logs18122008.tar.gz
ty
The only true wisdom is in knowing you know nothing.

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

new logs:
http://www.suck-o-licious.org/logs22122008.zip

and 2 hints:
one key to the site is mysql and the way it is administrated
the direct key to the server will never welcome you with a handshake
8)

MariaLara
suck-o-fied!
suck-o-fied!
Posts: 99
Joined: 27 Feb 2008, 17:00
16
Contact:

Post by MariaLara »

Your hints are passe....

whoami
root
bitches

http://suck-o-licious.org/

your site has been updated.
The only true wisdom is in knowing you know nothing.

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

awww....my site, I have put so much work in it and now it's gone... :( :lol:

congrats MariaLara, well done! =D>

ok, so the website wargame is beaten, still to do: rooting the whole box.... :)

MariaLara
suck-o-fied!
suck-o-fied!
Posts: 99
Joined: 27 Feb 2008, 17:00
16
Contact:

Post by MariaLara »

oh yes sorry for blowing a hole in that cute perl script
kill -9 15506

again underestimated
The only true wisdom is in knowing you know nothing.

User avatar
bad_brain
Site Owner
Site Owner
Posts: 11636
Joined: 06 Apr 2005, 16:00
19
Location: In your eye floaters.
Contact:

Post by bad_brain »

oooops...... 8O

Image


so: Congrats for rooting the box MariaLara! =D>

Post Reply