Team Information
- Number
- Team 2
- Name
- Hair cURLer
- IP Range
- 33.96.5.0/24
- Domain
- team2.isucdc.com
- Current Place
- 8th
- Red Teamer(s)
- None
Flag Status
| Blue Flags |
|---|
| AD C:\Windows\System32\ TICKETS C:\Windows\System32\ MGMT /etc/ ADMIN C:\Windows\System32\ WWW /etc/ TICKETS Forged ticket MGMT DB Read MGMT Bus service MGMT Train service |
| Red Flags |
|---|
| AD C:\Users\Administrator\ TICKETS C:\Users\Administrator\ MGMT /root/ ADMIN C:\Users\Administrator\ WWW /root/ |
Service Status
| AD LDAP |
| AD RDP |
| AD LDAPS |
| TICKETS HTTP |
| TICKETS RDP |
| MGMT HTTP |
| MGMT SSH |
| ADMIN HTTP |
| ADMIN RDP |
| WWW HTTP |
| WWW SSH |
| ADMIN Login |
| WWW Login |
Nmap
NOTE: Is using https on `tickets.team2.isucdc.com`, `admin.team2.isucdc.com`, and `www.team2.isucdc.com`
Add content here...
Notable Vulnerabilities
Add content here...
Notable Defenses
TEAM 02
────────────────────────────────────────────────────────────
[Team 02] [08:39:22] ⟶ Probing MGMT backend at http://mgmt.team2.isucdc.com:5000/auth/login
[Team 02] MGMT backend unreachable — MGMT checks skipped, continuing with other services
[Team 02] [08:39:37] ⟶ Probing TICKETS service at http://tickets.team2.isucdc.com:5000/api/tickets/help
[Team 02] Tickets service unreachable (no response)
[Team 02] [08:39:52] ⟶ Probing Admin UI at http://admin.team2.isucdc.com/login
[Team 02] Admin UI unreachable (no response)
[Team 02] [08:40:07] ⟶ Probing WWW frontend at http://www.team2.isucdc.com
[Team 02] WWW frontend unreachable (no response)
[Team 02] [08:40:22] ⟶ Starting MySQL attack on mgmt.team2.isucdc.com:3306
[Team 02] [08:40:22] ⟶ Connecting MySQL mgmt.team2.isucdc.com:3306 as cdc/cdc
[Team 02] MySQL: port closed or credentials changed
[Team 02] [08:40:37] ⟶ Checking code-server (unauthenticated root shell) at http://www.team2.isucdc.com:67
[Team 02] Code-server: not accessible (patched or port blocked)
[Team 02] [08:40:52] ⟶ Starting SSH flag grabs on WWW and MGMT machines
[Team 02] [08:40:52] ⟶ Starting RDP credential checks on Windows machines
[Team 02] [08:40:52] ⟶ RDP credential check on AD (ad.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying Administrator:Password1234! on AD
[Team 02] RDP AD: no default creds worked
[Team 02] [08:40:52] ⟶ RDP credential check on ADMIN (admin.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying Administrator:Password1234! on ADMIN
[Team 02] RDP ADMIN: no default creds worked
[Team 02] [08:40:52] ⟶ RDP credential check on TICKETS (tickets.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on TICKETS
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on TICKETS
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on TICKETS
[Team 02] [08:40:53] ⟶ RDP trying Administrator:Password1234! on TICKETS
[Team 02] RDP TICKETS: no default creds worked
[Team 02] Werkzeug RCE skipped — MGMT unreachable
[Team 02] Team 02 complete
────────────────────────────────────────────────────────────
[Team 02] [08:39:22] ⟶ Probing MGMT backend at http://mgmt.team2.isucdc.com:5000/auth/login
[Team 02] MGMT backend unreachable — MGMT checks skipped, continuing with other services
[Team 02] [08:39:37] ⟶ Probing TICKETS service at http://tickets.team2.isucdc.com:5000/api/tickets/help
[Team 02] Tickets service unreachable (no response)
[Team 02] [08:39:52] ⟶ Probing Admin UI at http://admin.team2.isucdc.com/login
[Team 02] Admin UI unreachable (no response)
[Team 02] [08:40:07] ⟶ Probing WWW frontend at http://www.team2.isucdc.com
[Team 02] WWW frontend unreachable (no response)
[Team 02] [08:40:22] ⟶ Starting MySQL attack on mgmt.team2.isucdc.com:3306
[Team 02] [08:40:22] ⟶ Connecting MySQL mgmt.team2.isucdc.com:3306 as cdc/cdc
[Team 02] MySQL: port closed or credentials changed
[Team 02] [08:40:37] ⟶ Checking code-server (unauthenticated root shell) at http://www.team2.isucdc.com:67
[Team 02] Code-server: not accessible (patched or port blocked)
[Team 02] [08:40:52] ⟶ Starting SSH flag grabs on WWW and MGMT machines
[Team 02] [08:40:52] ⟶ Starting RDP credential checks on Windows machines
[Team 02] [08:40:52] ⟶ RDP credential check on AD (ad.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on AD
[Team 02] [08:40:52] ⟶ RDP trying Administrator:Password1234! on AD
[Team 02] RDP AD: no default creds worked
[Team 02] [08:40:52] ⟶ RDP credential check on ADMIN (admin.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on ADMIN
[Team 02] [08:40:52] ⟶ RDP trying Administrator:Password1234! on ADMIN
[Team 02] RDP ADMIN: no default creds worked
[Team 02] [08:40:52] ⟶ RDP credential check on TICKETS (tickets.team2.isucdc.com)
[Team 02] [08:40:52] ⟶ RDP trying Administrator:cdc on TICKETS
[Team 02] [08:40:52] ⟶ RDP trying cdc:cdc on TICKETS
[Team 02] [08:40:52] ⟶ RDP trying scrat:cdc on TICKETS
[Team 02] [08:40:53] ⟶ RDP trying Administrator:Password1234! on TICKETS
[Team 02] RDP TICKETS: no default creds worked
[Team 02] Werkzeug RCE skipped — MGMT unreachable
[Team 02] Team 02 complete
Team Spirit Issues
Add content here...