[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

German Intelligence Cyber Security Task

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 19
Thread images: 5

File: 2Q==.jpg (18KB, 273x185px) Image search: [Google]
2Q==.jpg
18KB, 273x185px
The german intelligence agencies has some task up on its website. People who can solve it can apply for a job in the cyber security department i guess.

The scenario is the following:

Some agency from an allied country asks the BND to check an incident. The server of some state insurancy company got hacked. They supply an image of the server.

You have to analyze the image. The hackers left traces on the system (files) and you have to figure out how to get root access. LUCKILY the hackers somehow created a low level user (hacker:abcd1234).

They supply an image you can use in a VM. Thats it. Im not far in but i have a decent idea about whats going on but im not advanced enough to solve it all.

http://www.bnd.bund.de/DE/Karriere/Forensik_Challenge/Forensik_Challenge_node.html ... You can find the image here.

http://download.gsb.bund.de/BND/ZIP_Challenge.zip (754 MB).
>>
>>59306031
who the fuck thought that a long agency name is a good idea
>>
>>59306031
go fuck yourself
>>
>>59306041

>Central Intelligence Agency is short

cmon ...


>pic related

>"This machine has been hacked by Rul0rzZ!"

Thats how it looks like when you get in.
>>
>>59306041
In german we just like to link multiple words into one. Translated it would be "federal news service".
>>
>>59306071

>oh no finally an interesting thread involving an interesting challenge .. i better tell OP to go fuck himself and go back to one of my 30 consumerist meme threads and circle jerk about AMD, Intel and the latest vidya gaming hardware

kys tbqh.
>>
>>59306095
Sorry, you had a chance. If not making this thread, which proves that you cannot solve it yourself, then at least this post has rendered you utterly unqualified for the job. People who use such foul language are not welcome in our agency.

Kind Regards
BND
>>
>>59306133

i think i mentioned that i am not advanced enough to solve it all!!!! Thank you though!!!
>>
>>59306086
Federal intelligence service mate
>>
File: Z.jpg (5KB, 303x166px) Image search: [Google]
Z.jpg
5KB, 303x166px
Soo in the scenario they give you some hints:

Apparently there is a web application involved and those are obviously vulnerable.

When you enter a folder named "html" you will find a .php which includes the following code

 /home/readFile “.$_GET [‘password’].” Insurances/“.$_GET[‘file’] 


soo .. i guess the attackers used the .php as their attack vector because it gave them direct access to /home/readFile ... the readFIle.c is also included. I guess the server ran with root access and this is how they managed to change the root password.

From the /mail/ folder i have concluded that the root user name should be 'www-data' since its the only one i can't access.
>>
>>59306031
I couldn't hack my way out of a paper bag, if you gave me an axe.
besides, the CIA has distributed plenty of malware already. the last thing I need is more malware in a language I can't read. Germany has some great talent in the c3. I'll bet someone there will solve- as soon as they can find and remove all the shit merikuh infested the world with.
>>
>>59306272

its just a fucking vmware image you dumb fucking clown ... an image of a debian linux system ...
>>
>>59306280
fuck you, Frazier. fuck you, fuck VMware, fuck CIA niggers, and fuck you, again for good measure. when you're done eating a dick, eat another one.
>>
>>59306385

no need to rage because you have absolutely no idea how to use a VM and the CLI lol
>>
Any of you self proclaimed Linux Gods figured something out yet?!!
>>
Sweet, I can stop role-playing a Nazi and be an actual Nazi.
>>
ITT OP wants the solution to get accepted at bnd
>>
>>59306790

no i dont. I just think its an interesting challenge and i simply want to learn more about it.
>>
File: german autism.jpg (39KB, 500x399px) Image search: [Google]
german autism.jpg
39KB, 500x399px
>>59306041
It's just regular german autism.
(pic related translates to ''
floor sanding machine rental'')
Thread posts: 19
Thread images: 5


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.