diff --git a/modules/utilities/unix/container/chroot_debootstrap/secgen_metadata.xml b/modules/utilities/unix/container/chroot_debootstrap/secgen_metadata.xml index 81e7f290e..64c96d249 100644 --- a/modules/utilities/unix/container/chroot_debootstrap/secgen_metadata.xml +++ b/modules/utilities/unix/container/chroot_debootstrap/secgen_metadata.xml @@ -14,7 +14,7 @@ chroot_dir - /srv/chroot + /opt/chroot diff --git a/modules/vulnerabilities/unix/misc/nc_backdoor_chroot_esc/secgen_metadata.xml b/modules/vulnerabilities/unix/misc/nc_backdoor_chroot_esc/secgen_metadata.xml index f5e03ea09..6f2c72787 100644 --- a/modules/vulnerabilities/unix/misc/nc_backdoor_chroot_esc/secgen_metadata.xml +++ b/modules/vulnerabilities/unix/misc/nc_backdoor_chroot_esc/secgen_metadata.xml @@ -42,6 +42,11 @@ Connect to a port, you will find yourself in a chroot. Connecting to the right port will give you a root shell. You can misuse /proc to escape. + + + .*chroot_debootstrap + + update diff --git a/scenarios/ctf/hackme.xml b/scenarios/ctf/hackme.xml new file mode 100644 index 000000000..21deb5952 --- /dev/null +++ b/scenarios/ctf/hackme.xml @@ -0,0 +1,161 @@ + + + + + Hackme + Z. Cliffe Schreuders + A bunch of servers for you to hack. + + + ctf + hack-ctf + easy + + + attack_vm + + + + + + 172.16.0.2 + + 172.16.0.3 + + 172.16.0.4 + + 172.16.0.5 + + + + + + + + IP_addresses + + + + + + + hackme_server + + + + + + + Hackme + + + Well done! You hacked this server. It's possible for you to get root from here. + + + + + + + + + + + + + + + + + + + + IP_addresses + + + + + + + hackmetoo_server + + + + + + + Hackme + + + + Well done! You hacked this server. There's some extra flags for you to decode. + + + + + + + + + + + + + + + + + + + + + + + + + + + IP_addresses + + + + + + + hackmethree_server + + + + + + + Hackme + + + Well done! You hacked this server. There is a CTF-style challenge on the server, if you can find it. + + + + + + + + + + + + + + + + + + + + IP_addresses + + + + +