Zetta
Zetta
Zetta 204
Zetta
RETIRED MACHINE

Zetta

Zetta - Linux Linux
Zetta - Hard Hard

4.5

MACHINE RATING

1444

USER OWNS

1271

SYSTEM OWNS

31/08/2019

RELEASED
Created by jkr

Machine Synopsis

Zetta is a hard difficulty Linux machine running an FTP server with FXP enabled, which allows us to leak the server's IPv6 address and scan it. An rsync server is found to be running on the IPv6 interface, that can be brute-forced to gain access to a user's home folder. Enumeration yields a git repository containing a vulnerable template for rsyslog. This is exploited via SQL injection to execute code as the postgres user. A predictable password scheme is then leveraged to gain a root shell.

Machine Matrix

Ready to start your
hacking journey?