{"id":181,"date":"2019-01-17T04:08:07","date_gmt":"2019-01-17T04:08:07","guid":{"rendered":"https:\/\/mrjsec.co.uk\/blog\/?p=181"},"modified":"2019-01-17T04:08:15","modified_gmt":"2019-01-17T04:08:15","slug":"wunorse-openslae-stall-mucking-report-cranberry-pi-terminal","status":"publish","type":"post","link":"https:\/\/mrjsec.co.uk\/blog\/wunorse-openslae-stall-mucking-report-cranberry-pi-terminal\/","title":{"rendered":"<center>Wunorse Openslae &#8211; Stall Mucking Report Cranberry Pi terminal<\/center>"},"content":{"rendered":"\n<p style=\"text-align:center\">When you speak to Wunorse Openslae, they explain they had forgotten there a password for the samba share, and they need to upload reports.txt!<br> Wunorse Openslae explains it could be in memory somewhere &#8220;Still, with all the automated tasks we use, I&#8217;ll bet there&#8217;s a way to find it in memory\u2026&#8221;, and the game gives you a link about &#8220;Passwords on the command line visible to ps? Not in Linux&#8221;<\/p>\n\n\n\n<p style=\"text-align:center\">First let&#8217;s do a &#8220;ps -aux | less&#8221;, as this is what the game is hinting.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"750\" height=\"398\" data-attachment-id=\"182\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/wunorse-openslae-stall-mucking-report-cranberry-pi-terminal\/stallmuckingreport1\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?fit=750%2C398&amp;ssl=1\" data-orig-size=\"750,398\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"StallMuckingReport1\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?fit=700%2C371&amp;ssl=1\" src=\"https:\/\/i1.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?fit=700%2C371&amp;ssl=1\" alt=\"\" class=\"wp-image-182\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?w=750&amp;ssl=1 750w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?resize=300%2C159&amp;ssl=1 300w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport1.png?resize=700%2C371&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p style=\"text-align:center\">Lot&#8217;s of, umm, stuff? Let&#8217;s copy it to notepad making it easy to read!<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"765\" height=\"370\" data-attachment-id=\"183\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/wunorse-openslae-stall-mucking-report-cranberry-pi-terminal\/stallmuckingreport2\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?fit=765%2C370&amp;ssl=1\" data-orig-size=\"765,370\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"StallMuckingReport2\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?fit=700%2C339&amp;ssl=1\" src=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?fit=700%2C339&amp;ssl=1\" alt=\"\" class=\"wp-image-183\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?w=765&amp;ssl=1 765w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?resize=300%2C145&amp;ssl=1 300w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport2.png?resize=700%2C339&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p style=\"text-align:center\">&#8220;sudo -u manager \/home\/manager\/samba-wrapper.sh &#8211;verbosity=none &#8211;no-check-certificate &#8211;extraneous-command-argument &#8211;do-not-run-as-tyler &#8211;accept-sage-advice -a 42 -d~ &#8211;ignore-sw-holiday-special &#8211;suppress &#8211;suppress \/\/localhost\/report-upload\/ directreindeerflatterystable -U report-upload&#8221;<\/p>\n\n\n\n<p style=\"text-align:center\">Interesting, so user wise there is an elf (us), manager and report-upload, we can&#8217;t log in with an elf as we don&#8217;t know the password and either does Wunorse Openslae, and the manager also requires a password. However, the user report-upload also requires a password (Back, to step one!).<\/p>\n\n\n\n<p style=\"text-align:center\">&#8220;directreindeerflatterystable&#8221; If passwords have taught me anything, anything that seems out of place usually is something we need to try! (Or something like that?)<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"755\" height=\"89\" data-attachment-id=\"186\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/wunorse-openslae-stall-mucking-report-cranberry-pi-terminal\/stallmuckingreport3\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?fit=755%2C89&amp;ssl=1\" data-orig-size=\"755,89\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"StallMuckingReport3\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?fit=700%2C83&amp;ssl=1\" src=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?fit=700%2C83&amp;ssl=1\" alt=\"\" class=\"wp-image-186\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?w=755&amp;ssl=1 755w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?resize=300%2C35&amp;ssl=1 300w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport3.png?resize=700%2C83&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p style=\"text-align:center\">Well, that worked! Now we need to upload the file!<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>smbclient \/\/localhost\/report-upload\/ -U report-upload -w directreindeerflatterystable -c \"put report.txt report.txt\"<\/code><\/pre>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"758\" height=\"581\" data-attachment-id=\"188\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/wunorse-openslae-stall-mucking-report-cranberry-pi-terminal\/stallmuckingreport4\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?fit=758%2C581&amp;ssl=1\" data-orig-size=\"758,581\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"StallMuckingReport4\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?fit=700%2C537&amp;ssl=1\" src=\"https:\/\/i1.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?fit=700%2C537&amp;ssl=1\" alt=\"\" class=\"wp-image-188\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?w=758&amp;ssl=1 758w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?resize=300%2C230&amp;ssl=1 300w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/StallMuckingReport4.png?resize=700%2C537&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p style=\"text-align:center\">Moreover, that&#8217;s how I saved <del>Christmas <\/del> Wunorse Openslae.<\/p>\n\n\n\n<p style=\"text-align:center\">References:<br>\nhttps:\/\/blog.rackspace.com\/passwords-on-the-command-line-visible-to-ps<br>\nhttps:\/\/linux.die.net\/man\/1\/smbclient<br>\nhttps:\/\/www.computerhope.com\/unix\/smbclien.htm<\/p>\n","protected":false},"excerpt":{"rendered":"<p>When you speak to Wunorse Openslae, they explain they had forgotten there a password for the samba share, and they need to upload reports.txt! Wunorse Openslae explains it could be in memory somewhere &#8220;Still, with&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[10],"tags":[13,14,12],"class_list":["post-181","post","type-post","status-publish","format-standard","hentry","category-kringlecon-2018","tag-13","tag-ctf","tag-kringlecon"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/paD3U6-2V","_links":{"self":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=181"}],"version-history":[{"count":4,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/181\/revisions"}],"predecessor-version":[{"id":189,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/181\/revisions\/189"}],"wp:attachment":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=181"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=181"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}