Dont know what i was thinking on that day..i was given the guessed password for the ftp on the server which was just a normal user account for updating the web page on the server.
after uploading my phpshell which was c99shell i wonder how the heck am i going to get the root access on thin damn server??! becoz it dont have a telnet server onand im not very familar with with this so called "sun" server.
know what the department was so stupid that he put the local MYSQL passwords in the configuration.inc.php fortunately the x11 are opened..hahahaha
tried it and WALLA!! PWNED..haha..nice huh for a lame chemical engineer going to be to try 0WN a sun server rite?
then there it goes~
-openssh shell installed
-squid
-telnet opened
-dsniff<--am i greedy?? -and everityhiiiiing from the sunfreeware to make this server minEEE..ahahha.. login as: root root@160.0.*.*'s password: Sun Microsystems Inc. SunOS 5.10 Generic Int_13h Patch March 2006 <--lame isnt it? Sun Microsystems Inc. SunOS 5.10 Generic Int_13h Patch March 2006 You have new mail.<--wtf???!! Sourcing //.profile-EIS..... root@matrix1 # who root pts/2 Apr 2 11:10 (1*.*.*.*) apache pts/1 Apr 2 10:58 (1*.*.*.*) i was so damn glad that i could install everything on a server that i didn't know much about for having not to sleep for almost 2 days.man..i still remember crippling to those pesky "vi" to edit the /etc/password almost different with linux. btw..just glad to have pwned another server.and sniffing the LAN somemore;P ----------------- 04/02/07 12:03:51 tcp 16*.0.*.35.1535 -> 160.0.*.*.80 (http)
POST /login/index.php HTTP/1.1
Host: blablabla
Content-type: application/x-www-form-urlencoded
Content-length: 35
username=k24527&password=sdgfsdfs
-----------------
04/02/07 12:09:02 tcp 160.*.*.7.1740 -> 160.0.*.*.80 (http)
GET http://league.yesky.com/jsp/siteOwner/sitetext.html?sid=11226&id=55&advert=yesky11226&cid=1122650&sname=cb_advert_block5511226&amp;amp;key=&life=5550&pass=&width=180&amp;amp;bgcolor=FFFFFF&bgcolor2=FFFFFF&bcolor=00FE0C&fcolor=FA1C05&fcolor2=FA1C05&ref=http%3A//www.814e.com/index.html%3Fgoogle HTTP/1.0
Host: league.yesky.com
Tuesday, April 3, 2007
Owning a Sunos 5.8
Subscribe to:
Post Comments (Atom)

No comments:
Post a Comment