(Ethical
Hacking:
sudo)
{ sudo vi exploit}
- Background
- If the /etc/sudoers file is misconfigured for a
particular user, then that specific user can use sudo command to gain root
access.
- Login to your
TargetUbuntu01 VM, as username adminstrator
- For those of you that do not have access to
my class, the TargetUbuntu01 VM is a Linux Ubuntu Operating System.
Section 1: Exploit
sudo with vi |
- Command:
sudo vi hackme.txt (See Below)
- sudo allows a permitted user to execute a
command as the superuser or another user, as specified in the sudoers
file.
- The vi editor (short for visual editor) is
a screen editor which is available on almost all Unix systems.
- hackme.txt - is just a name of a file you
are opening with the vi command. Note, the file hackme.txt can be
called anything.
- Press the return key.
- Then type the administrator password.
data:image/s3,"s3://crabby-images/b0309/b0309ac2a1b2685500225587d3f1f1192e125982" alt=""
- You will see the below screen after hitting the
return key in the previous step.
- Command:
:!/bin/sh
- After you type ":!/bin/sh" press the enter
key.
data:image/s3,"s3://crabby-images/f116d/f116d19904a47002e78ef64fbff1a357968c1be1" alt=""
- After enter was pressed in the previous step,
you will see the "#" or "$" prompt.
- Command: id
- The id command prints the real and
effective user and group IDs.
- Notice your uid is now equal to 0 which is
the uid for the root user.
data:image/s3,"s3://crabby-images/59b8d/59b8d145c73e8c25909c32833efdf699e9288831" alt=""
Section 2: Exiting
the root shell |
- Command: exit
- Press Enter
- By typing exit, you will exit the current
shell of user root, which will drop you back into the administrator
shell.
data:image/s3,"s3://crabby-images/f371a/f371afea258abb11b23e223d87751a09867ec946" alt=""
- After pressing enter in the previous step you
will see the below screen.
- Notice you are in vi's shell.
- Press the enter key
data:image/s3,"s3://crabby-images/25a1a/25a1af64dae77f1c45630a7523861b1f4ea31993" alt=""
- After pressing enter in the previous step, will
place you back in vi's editor.
- Press the Esc key.
- Command:
:q!
- Hit the enter key.
data:image/s3,"s3://crabby-images/14fff/14fff973dc63049b49764010eb35414c398912ec" alt=""
- Now you will be placed back at the
administrator command line prompt.
- .
data:image/s3,"s3://crabby-images/c71e3/c71e3f913f10fc4c640465bc9b5243ae5e62f3aa" alt=""
- Command: grep
sudo /var/log/auth.log | tail -1
- Do a screen print similar to the picture
below and paste picture into a word document.
- Submit to moodle.
data:image/s3,"s3://crabby-images/8cf81/8cf814fa459fa29252f90a5240d701d064171d2b" alt=""
|
data:image/s3,"s3://crabby-images/2ab45/2ab450a213d1c105d2d79f19dd762b83756cd4f7" alt=""
 
|