Skip to main contentSkip to main content
Room Banner
Room Icon

Publisher

Test your enumeration skills on this boot-to-root machine.

easy

60 min

25,524

User profile photo.
User profile photo.

To access material, start machines and answer questions login.

The "Publisher" CTF machine is a simulated environment hosting some services. Through a series of enumeration techniques, including directory fuzzing and version identification, a vulnerability is discovered, allowing for Remote Code Execution (). Attempts to escalate privileges using a custom binary are hindered by restricted access to critical system files and directories, necessitating a deeper exploration into the system's security profile to ultimately exploit a loophole that enables the execution of an unconfined bash shell and achieve privilege escalation.

Answer the questions below
What is the user flag?
What is the root flag?