{"id":209,"date":"2019-01-17T04:33:15","date_gmt":"2019-01-17T04:33:15","guid":{"rendered":"https:\/\/mrjsec.co.uk\/blog\/?p=209"},"modified":"2019-01-17T04:33:21","modified_gmt":"2019-01-17T04:33:21","slug":"sparkle-redberry-dev-ops-fail-cranberry-pi-terminal","status":"publish","type":"post","link":"https:\/\/mrjsec.co.uk\/blog\/sparkle-redberry-dev-ops-fail-cranberry-pi-terminal\/","title":{"rendered":"<center>Sparkle Redberry &#8211; Dev Ops Fail Cranberry Pi terminal<\/center>"},"content":{"rendered":"\n<p style=\"text-align:center\">We speak to Sparkle Redberry, who explains they had at one point by mistake saved there credentials &#8220;password&#8221; and updated there git project with it.<\/p>\n\n\n\n<p style=\"text-align:center\">Later on, Sparkle Redberry removed the password and re-updated there git project. <\/p>\n\n\n\n<p style=\"text-align:center\">However, was unsure if you were still able to find it or not, even so, they updated their git project with it removed, you&#8217;re given a hint to a git page &#8220;<a href=\"https:\/\/gist.github.com\/hofmannsven\/6814451\">My simply Git Cheatsheet<\/a>&#8221; and to be honest, this is all you need.<\/p>\n\n\n\n<p style=\"text-align:center\">&#8220;Coalbox again, and I&#8217;ve got one more ask.<br>\nSparkle Q. Redberry has fumbled a task.<br>\nGit pull and merging, she did all the day;<br>\nWith all this gitting, some creds got away.<br>\nUrging &#8211; I scolded, &#8220;Don&#8217;t put creds in git!&#8221;<br>\nShe said, &#8220;Don&#8217;t worry &#8211; you&#8217;re having a fit.<br>\nIf I did drop them then surely I could,<br>\nUpload some new code done up as one should.&#8221;<br>\nThough I would like to believe this here elf,<br>\nI&#8217;m worried we&#8217;ve put some creds on a shelf.<br>\nAny who&#8217;s curious might find our &#8220;oops,&#8221;<br>\nPlease find it fast before some other snoops!&#8221;<\/p>\n\n\n\n<p style=\"text-align:center\">We need to &#8220;Find Sparkle&#8217;s password, then run the run to answer tool&#8221;.<\/p>\n\n\n\n<p style=\"text-align:center\">First thing is the first cd to the git project folder on the local system and use &#8220;git log -p&#8221;. Note: Maybe there is a more natural method, but I went with this as there wasn&#8217;t much to look.<\/p>\n\n\n\n<p><br> Once you run &#8220;git log -p&#8221; you get a bunch of text, it shows what changes where made and I just went down the list until I saw something that looked like a password.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"706\" height=\"743\" data-attachment-id=\"210\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/sparkle-redberry-dev-ops-fail-cranberry-pi-terminal\/devopsfail1\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?fit=706%2C743&amp;ssl=1\" data-orig-size=\"706,743\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"DevOpsFail1\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?fit=700%2C737&amp;ssl=1\" src=\"https:\/\/i1.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?fit=700%2C737&amp;ssl=1\" alt=\"\" class=\"wp-image-210\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?w=706&amp;ssl=1 706w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?resize=285%2C300&amp;ssl=1 285w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail1.png?resize=700%2C737&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p style=\"text-align:center\">Not too far down I came across a MongoDB URL which was User: Pass, copying the password &#8220;twinkletwinkletwinkle&#8221; and then running &#8220;\/home\/elf\/.\/runtoanswer&#8221; with the password, we complete the challenge.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter\"><img loading=\"lazy\" decoding=\"async\" width=\"747\" height=\"564\" data-attachment-id=\"211\" data-permalink=\"https:\/\/mrjsec.co.uk\/blog\/sparkle-redberry-dev-ops-fail-cranberry-pi-terminal\/devopsfail2\/\" data-orig-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?fit=747%2C564&amp;ssl=1\" data-orig-size=\"747,564\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"DevOpsFail2\" data-image-description=\"\" data-image-caption=\"\" data-large-file=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?fit=700%2C529&amp;ssl=1\" src=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?fit=700%2C529&amp;ssl=1\" alt=\"\" class=\"wp-image-211\" srcset=\"https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?w=747&amp;ssl=1 747w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?resize=300%2C227&amp;ssl=1 300w, https:\/\/i0.wp.com\/mrjsec.co.uk\/blog\/wp-content\/uploads\/2019\/01\/DevOpsFail2.png?resize=700%2C529&amp;ssl=1 700w\" sizes=\"auto, (max-width: 700px) 100vw, 700px\" \/><\/figure><\/div>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>We speak to Sparkle Redberry, who explains they had at one point by mistake saved there credentials &#8220;password&#8221; and updated there git project with it. Later on, Sparkle Redberry removed the password and re-updated there&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[10],"tags":[13,14,12],"class_list":["post-209","post","type-post","status-publish","format-standard","hentry","category-kringlecon-2018","tag-13","tag-ctf","tag-kringlecon"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/paD3U6-3n","_links":{"self":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/209","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=209"}],"version-history":[{"count":1,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/209\/revisions"}],"predecessor-version":[{"id":212,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/posts\/209\/revisions\/212"}],"wp:attachment":[{"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=209"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=209"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mrjsec.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=209"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}