Spooktrol
Spooktrol
Spooktrol 413
Spooktrol
RETIRED MACHINE

Spooktrol

Spooktrol - Linux Linux
Spooktrol - Hard Hard

5

MACHINE RATING

196

USER OWNS

171

SYSTEM OWNS

26/10/2021

RELEASED
Created by ippsec

Machine Synopsis

Spooktrol is a hard-difficulty Linux machine that demonstrates exploitation of a malware C2 server. The tasking message is hijacked to upload a file using a directory traversal vulnerability. This vulnerability allows the SSH key to be written to the root user's `authorized_keys` file within the container. By exploiting the C2 framework's database, a task is written to another agent, granting access to a shell on the system.

Machine Matrix

Ready to start your
hacking journey?