(Ethical
Hacking:
sudo)
{ sudo vi exploit}
- Background
- If the /etc/sudoers file is misconfigured for a
particular user, then that specific user can use sudo command to gain root
access.
- Login to your
TargetUbuntu01 VM, as username adminstrator
- For those of you that do not have access to
my class, the TargetUbuntu01 VM is a Linux Ubuntu Operating System.
Section 1: Exploit
sudo with vi |
- Command:
sudo vi hackme.txt (See Below)
- sudo allows a permitted user to execute a
command as the superuser or another user, as specified in the sudoers
file.
- The vi editor (short for visual editor) is
a screen editor which is available on almost all Unix systems.
- hackme.txt - is just a name of a file you
are opening with the vi command. Note, the file hackme.txt can be
called anything.
- Press the return key.
- Then type the administrator password.
data:image/s3,"s3://crabby-images/450fb/450fbf8ecb63e734de0517aff77da206d5696036" alt=""
- You will see the below screen after hitting the
return key in the previous step.
- Command:
:!/bin/sh
- After you type ":!/bin/sh" press the enter
key.
data:image/s3,"s3://crabby-images/d56dc/d56dcfc55fb1173a9e019e495364db43f68a2e9a" alt=""
- After enter was pressed in the previous step,
you will see the "#" or "$" prompt.
- Command: id
- The id command prints the real and
effective user and group IDs.
- Notice your uid is now equal to 0 which is
the uid for the root user.
data:image/s3,"s3://crabby-images/006bc/006bc6f684fc1a46bd30a281238f822f6f9556c2" alt=""
Section 2: Exiting
the root shell |
- Command: exit
- Press Enter
- By typing exit, you will exit the current
shell of user root, which will drop you back into the administrator
shell.
data:image/s3,"s3://crabby-images/06c83/06c83e118c48032d56962ae3c92b9a3d3c2bf0ae" alt=""
- After pressing enter in the previous step you
will see the below screen.
- Notice you are in vi's shell.
- Press the enter key
data:image/s3,"s3://crabby-images/4eb03/4eb03333858338110b0d6f62ce6227d5df58bf40" alt=""
- After pressing enter in the previous step, will
place you back in vi's editor.
- Press the Esc key.
- Command:
:q!
- Hit the enter key.
data:image/s3,"s3://crabby-images/a6089/a60895ca3e10f22a83736374cdcad71f9e424368" alt=""
- Now you will be placed back at the
administrator command line prompt.
- .
data:image/s3,"s3://crabby-images/5f70d/5f70d7e54bbe99cbfcf03ac92c783846443998e7" alt=""
- Command: grep
sudo /var/log/auth.log | tail -1
- Do a screen print similar to the picture
below and paste picture into a word document.
- Submit to moodle.
data:image/s3,"s3://crabby-images/f4170/f41706c3d2b2ea794332be4bae3b851eebf102e7" alt=""
|
data:image/s3,"s3://crabby-images/2ab45/2ab450a213d1c105d2d79f19dd762b83756cd4f7" alt=""
 
|