RE: You Vomit You Lose 06-20-2014, 04:20 AM
#21
(06-19-2014, 10:41 PM)Adorapuff Wrote: Do they know that /etc/password is useless without /etc/shadow also why do they claim to be leet yet can't find a local root exploit for a kernel that has serval public vulns. They probably couldn't figure out wget
While I do agree with you that I am unsure why they even thought to disclose the passwd file, I don't know if I would be so quick to rip on them for not rooting that box. Does that specific kernel have various public vulnerabilities that could lead to root code exec? Yes - but I was unable to find any public PoCs which get code exec for these vulns. While it is possible that they could have made their own, doing such is a pretty difficult task (hence why you can't find anything that's currently public), and I would actually have a lot of respect for them if they could manage to do that. If however I am just failing to correctly use the internet to find a privilege escalation exploit that is applicable for this kernel, please provide it here and I'll put my dick back in my pants.
Don't take this as me defending nullcrew, I just think you're criticizing them for the wrong reasons.




![[+]](https://sinister.li/images/modern/collapse_collapsed.png)
















