| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
| Name | Name | Last commit date | ||
|---|---|---|---|---|
This is an intentionally vulnerable web application. There are 3 steps to complete the challenge, and multiple ways to complete each step.
I would suggest to try and find every way to get the most out of TUDO. Bonus: Create a python script which chains together all 3 steps for a complete POC.
Note: The attack for step 2 may take up to a minute to complete, since the admin's actions are emulated with a cron job every minute on the target machine.
This is intended as a white-box penetration test, so open up VSCode, and read.
Note: If you want to shutdown the container, you may use KILL.sh for convenience.
Note 2: I included SHELL.sh as a quick way to run a shell for the docker container
There are explanations and solutions for all (intended) ways to solve this machine in /solution.
And finally, good luck!
| Back | FazBrowse Home | New Git URL |