1. Bandit17 목표
There are 2 files in the homedirectory: passwords.old and passwords.new.
The password for the next level is in passwords.new and is the only line that has been changed between passwords.old and passwords.new
NOTE: if you have solved this level and see ‘Byebye!’ when trying to log into bandit18, this is related to the next level, bandit19
Commands you may need to solve this level
cat, grep, ls, diff
2. Bandit17 구현
# 비밀번호 root 입력 접속
ssh -oStrictHostKeyChecking=no root@localhost -p 2220
echo cluFn7wTiGryunymYOu4RcffSxQluehd > /home/bandit17/.bandit16.password
chmod 640 /home/bandit17/.bandit16.password
chown bandit17:bandit17 /home/bandit17/.bandit16.password
cat <<'PASSWORD_NEW' > /home/bandit17/passwords.new
9Fkwc9ZTtY6ywYuxlo58JKdkDsiIwLBH
1wi80wDbIRmpVkKpQwXxMtuSZ0EX8GzY
EyzMmKwzfyhbcBjPbjR3mmvRqDnIkWCY
NJorV9d6p084qPoW7NrQGxHLbMFSeJVd
yL8GyaKlXFP0Vs4zIAjzPCRUeVYD9x8D
hgULqHg7tI898fVxUsKZ7VIxaEKJhC6y
fKURcn8ckfwS19C9ZZn7NTi7K7HgvD8K
F49ePhcavUKCMWo6EOvnuaH8B9sEH9ff
oIRxpvGlKJU7cHGg44nk8VK0xFHpOoVm
XqlZAncVGesDj4D3sq2mvVVD1MBOxXNr
jJuR6pjUkFEyHnDLGejYlBh1kfTzWGQS
WWIBSMhApMSRVtNgqme971CwLF9iurEK
BUFueKrFcvo2RzxRd5z5bWy5CMCV2d2N
sb6NCwyR897U2FXndHVbOw1gbIq7nXK3
X5Mtu4YiYHDVP3rtP7NovnwavpirxQDH
VbusGjIcDvmaKk2gUijE87N59LwAOdKF
qyYl0mmCD3X3vwYVXxWWrgofL4ynt13p
0v3Og3QejaKIkN2QVILdpKv2IdSP8U1v
B9IovE3hsjyRPc6JUnL2PDOvg3sW0HHp
HliUGGqAShsBeYq6uyL7Qvwi7IkCzGUR
oyFmB1aBkZXEdWdSVQlqK9pKqU4effKF
wZxnfdCMiK4o1qOk5SgoEL6E0f9qBhc4
OOIcnNgGhsUphlm5e24Atun0cAeriSgr
3tyiw6KyTt6SUITBlV5rIzGpSmvKIWTF
achfdVDIihHtTkUxyHFxCIyy4TDgs2DD
BzyxJL8hKPX3b0BF0fJRceulMK7Hh58I
keUwSNBHhMBPjOgJMoEEv9w2q42DWk87
iRnatt1JqkXqdXyPkMokJhm3lWdKHewl
u04gN1dbkWznKGUEVQWPMi9T8KRCwuMw
jkVaGlZ3KEGutKJiBra3uyRvUqBQT8xF
SIgWHO7tnpeD32N5eBIUl8g0p2WDAFt8
jQOoPHi17NDsWxpGWSAdRyyL4R8IRekJ
2uhaojIVNT8vHFOnIRzlsDAHTZyPyZk8
fiqQlGOvJy0hEWiJnmoJ59E9lznpJjFX
6qN9QhyBBJaz2NCeKBR4axZQYfMSfml4
jBW6kYWdphPUBZ1o99vmpqNs9qv9OocE
pVcgz6Y7CJmhJ0GT4WnHTiWhpRWORseu
heX1wWTGmJkNR9J5hViV9Nbv1Msn5TYT
tcET60YIZeLJyxCxXOdVlnbx9vqiP5uY
RT2NwXjtrqtASM77mw6SrqRZ6Jm3R66x
X8nvSoqG6uKqkHHTAHS8FNGIpVLYgERh
x2gLTTjFwMOhQ8oWNbMN362QKxfRqGlO
cii2lDpVqcrv9DF9OWFoNOWF3rRgrYRP
HSKkeerQZVV5ZFjojAzKeOjIOiDOr4CT
IhKrcZSPVos2SiO65Vlx70jsa0wbzoHr
tgn0xxivZzXCKnKh4OGWvv2dj3nOXLWE
9dFz2OzpzwUGUEdvyNXzosNXSekCUVlb
GSeZWpFRih4V6UHGWwvSBQjZpZmotAIS
kDOh9W6C2Jyz6dmODk0oOmXRtTyMWVYH
mr66UJr3LVRUDKVflmqOx9gFT0xDGVpr
HtmHBurYOwkp0GVVy0QFrEdLIsyN4Psz
JcitawhX4AxtMAwYmM54m47JbHLePJkO
UnLVxJtrtx3To0NrppdWQaaGt7dIhbk3
AmTkH6PawvgZOqwplCDknDl5xlXEaK1P
HkLNNgYv8GphXyp2gQg8ZLoEwPQHgVT4
FPBVTidakjM4kTTdGQd7IGTTvcvnDN4J
1lH0IzHAmr9kjCh3Bcy8lUoGEM3sGZum
r3BK34UTPtfDKSDUVyFF3uPxH1UtMx3C
nDaucALz2sAnbaPq41wHjpNU00fTI0fV
7iN10mFtk3j1fmkU18EPFEd2IRKqQoPS
vQHV1ImLMpkHVJnQlY3FPsO2FiX5QqRO
VZcoa6O8SBwDPyHLSTMvDf4tk2MfiEW8
bCZFu2CUp2echLy6jppkhOU2vmKvULIX
wqFWDALutoPCDdyEhGd1p9QS1toFrTtg
qq3OaIICIxAggYHLzbi3BqRZgbflp7gv
NLPmI3Q2uWxPFe3fMVm4zKSeEbeOmJUJ
MBUx0HkXu7IQubP32RlgK3PlVJol11D9
T7grBpeSeBlaxz2BaUTBMKjMr19X2Cuc
YEmGEHeiRQwSDeyXY3CzdpWjePZCrqwX
n00NiriHXFH1DgJxVc2a8nbz9OnEP6Di
RO1D1mdqJIDT8crI21A92kWtDhsUl2fc
Q69PP03YYsn4rPG44t2vBJEiEtPW89FM
oSJmaGgWD2wVbWAmSxcqOj7QhiXZNPaE
w3PXJHZx2QqbbPYdeqVePoIgtFTZfUSO
9dZPfMTOIWYAYJmDF2kXdgzTpbznEPhZ
rMq4JD5fZZ6MCOx1U2vS7mXJXwiUCAGw
Q4UxZMNf2iTr9luaaYjCyxE3U8Vgw95x
uM1gCw1YJeojeiYM77FhK9EviDfLcyaS
fcbp92PS4KbHAanQOoU2FaFpfuVHDkGb
6W1NBWMRiluVxcmB7YNXqa6D9pPV8QPL
jysQpA0Zy432kNCrbUp93nOyp4O1iP9C
QmbhC2kOj0HAFqvbuuE33peygvLEHOtg
wqS5qN3goKqIREOvJHXdjlpNmQpAiPbJ
wCLg6bLcCtufiHlJuhfdOgolsHaRsYCi
yKUP8oVx4PH1x2EzDWhUKcoBDRKDOfUp
o5VMUcrTaATmFGBnxdcYlFtfSNRbGfOo
5Co2oxOY5ZGMll8p2puLckWe5jKyn72n
BLxtxxzqdW7F1lKx7cahhwdvo2FmZmvQ
Z5S2HraoNTTmUteQtmfMiOuG33khbZdw
36ZKA01yGpk98waOJ7Dd1kNrpuaHksWW
EgcUnTdUmJVHEGBuyE8pLfUSG8EYHRCd
iaudopgXRLKlfOyWj8W6N0FEJXvW54tC
ACh0PiwK78hMnsGYR4iE4G22wMIZm6Ra
Pbrr4NFceI6K6EF3H6vHN5FFPRFmwhZg
pvbS8STo3cf6SKXlc1hsjZfonv33GP6f
y69YEF32I68GmH9dtokQP6hFkENZt7IP
NYriT3AXAQdJ3wAD0jerpfz6kwPHwolK
BANrwyrP1jqbamNb4NK9YbhzFdThdc94
0PGEgdDKBp4k2r5PZkdJqBKran8WDc8Q
fcB6dV2hg5BmZLUr0Ts3HVzm7KKOGIjf
PASSWORD_NEW
cat <<'PASSWORD_OLD' > /home/bandit17/passwords.old
9Fkwc9ZTtY6ywYuxlo58JKdkDsiIwLBH
1wi80wDbIRmpVkKpQwXxMtuSZ0EX8GzY
EyzMmKwzfyhbcBjPbjR3mmvRqDnIkWCY
NJorV9d6p084qPoW7NrQGxHLbMFSeJVd
yL8GyaKlXFP0Vs4zIAjzPCRUeVYD9x8D
hgULqHg7tI898fVxUsKZ7VIxaEKJhC6y
fKURcn8ckfwS19C9ZZn7NTi7K7HgvD8K
F49ePhcavUKCMWo6EOvnuaH8B9sEH9ff
oIRxpvGlKJU7cHGg44nk8VK0xFHpOoVm
XqlZAncVGesDj4D3sq2mvVVD1MBOxXNr
jJuR6pjUkFEyHnDLGejYlBh1kfTzWGQS
WWIBSMhApMSRVtNgqme971CwLF9iurEK
BUFueKrFcvo2RzxRd5z5bWy5CMCV2d2N
sb6NCwyR897U2FXndHVbOw1gbIq7nXK3
X5Mtu4YiYHDVP3rtP7NovnwavpirxQDH
VbusGjIcDvmaKk2gUijE87N59LwAOdKF
qyYl0mmCD3X3vwYVXxWWrgofL4ynt13p
0v3Og3QejaKIkN2QVILdpKv2IdSP8U1v
B9IovE3hsjyRPc6JUnL2PDOvg3sW0HHp
HliUGGqAShsBeYq6uyL7Qvwi7IkCzGUR
oyFmB1aBkZXEdWdSVQlqK9pKqU4effKF
wZxnfdCMiK4o1qOk5SgoEL6E0f9qBhc4
OOIcnNgGhsUphlm5e24Atun0cAeriSgr
3tyiw6KyTt6SUITBlV5rIzGpSmvKIWTF
achfdVDIihHtTkUxyHFxCIyy4TDgs2DD
BzyxJL8hKPX3b0BF0fJRceulMK7Hh58I
keUwSNBHhMBPjOgJMoEEv9w2q42DWk87
iRnatt1JqkXqdXyPkMokJhm3lWdKHewl
u04gN1dbkWznKGUEVQWPMi9T8KRCwuMw
jkVaGlZ3KEGutKJiBra3uyRvUqBQT8xF
SIgWHO7tnpeD32N5eBIUl8g0p2WDAFt8
jQOoPHi17NDsWxpGWSAdRyyL4R8IRekJ
2uhaojIVNT8vHFOnIRzlsDAHTZyPyZk8
fiqQlGOvJy0hEWiJnmoJ59E9lznpJjFX
6qN9QhyBBJaz2NCeKBR4axZQYfMSfml4
jBW6kYWdphPUBZ1o99vmpqNs9qv9OocE
pVcgz6Y7CJmhJ0GT4WnHTiWhpRWORseu
heX1wWTGmJkNR9J5hViV9Nbv1Msn5TYT
tcET60YIZeLJyxCxXOdVlnbx9vqiP5uY
RT2NwXjtrqtASM77mw6SrqRZ6Jm3R66x
X8nvSoqG6uKqkHHTAHS8FNGIpVLYgERh
znK19XRJuZTd8BvCEVW4NQjtNJbdFLNC
cii2lDpVqcrv9DF9OWFoNOWF3rRgrYRP
HSKkeerQZVV5ZFjojAzKeOjIOiDOr4CT
IhKrcZSPVos2SiO65Vlx70jsa0wbzoHr
tgn0xxivZzXCKnKh4OGWvv2dj3nOXLWE
9dFz2OzpzwUGUEdvyNXzosNXSekCUVlb
GSeZWpFRih4V6UHGWwvSBQjZpZmotAIS
kDOh9W6C2Jyz6dmODk0oOmXRtTyMWVYH
mr66UJr3LVRUDKVflmqOx9gFT0xDGVpr
HtmHBurYOwkp0GVVy0QFrEdLIsyN4Psz
JcitawhX4AxtMAwYmM54m47JbHLePJkO
UnLVxJtrtx3To0NrppdWQaaGt7dIhbk3
AmTkH6PawvgZOqwplCDknDl5xlXEaK1P
HkLNNgYv8GphXyp2gQg8ZLoEwPQHgVT4
FPBVTidakjM4kTTdGQd7IGTTvcvnDN4J
1lH0IzHAmr9kjCh3Bcy8lUoGEM3sGZum
r3BK34UTPtfDKSDUVyFF3uPxH1UtMx3C
nDaucALz2sAnbaPq41wHjpNU00fTI0fV
7iN10mFtk3j1fmkU18EPFEd2IRKqQoPS
vQHV1ImLMpkHVJnQlY3FPsO2FiX5QqRO
VZcoa6O8SBwDPyHLSTMvDf4tk2MfiEW8
bCZFu2CUp2echLy6jppkhOU2vmKvULIX
wqFWDALutoPCDdyEhGd1p9QS1toFrTtg
qq3OaIICIxAggYHLzbi3BqRZgbflp7gv
NLPmI3Q2uWxPFe3fMVm4zKSeEbeOmJUJ
MBUx0HkXu7IQubP32RlgK3PlVJol11D9
T7grBpeSeBlaxz2BaUTBMKjMr19X2Cuc
YEmGEHeiRQwSDeyXY3CzdpWjePZCrqwX
n00NiriHXFH1DgJxVc2a8nbz9OnEP6Di
RO1D1mdqJIDT8crI21A92kWtDhsUl2fc
Q69PP03YYsn4rPG44t2vBJEiEtPW89FM
oSJmaGgWD2wVbWAmSxcqOj7QhiXZNPaE
w3PXJHZx2QqbbPYdeqVePoIgtFTZfUSO
9dZPfMTOIWYAYJmDF2kXdgzTpbznEPhZ
rMq4JD5fZZ6MCOx1U2vS7mXJXwiUCAGw
Q4UxZMNf2iTr9luaaYjCyxE3U8Vgw95x
uM1gCw1YJeojeiYM77FhK9EviDfLcyaS
fcbp92PS4KbHAanQOoU2FaFpfuVHDkGb
6W1NBWMRiluVxcmB7YNXqa6D9pPV8QPL
jysQpA0Zy432kNCrbUp93nOyp4O1iP9C
QmbhC2kOj0HAFqvbuuE33peygvLEHOtg
wqS5qN3goKqIREOvJHXdjlpNmQpAiPbJ
wCLg6bLcCtufiHlJuhfdOgolsHaRsYCi
yKUP8oVx4PH1x2EzDWhUKcoBDRKDOfUp
o5VMUcrTaATmFGBnxdcYlFtfSNRbGfOo
5Co2oxOY5ZGMll8p2puLckWe5jKyn72n
BLxtxxzqdW7F1lKx7cahhwdvo2FmZmvQ
Z5S2HraoNTTmUteQtmfMiOuG33khbZdw
36ZKA01yGpk98waOJ7Dd1kNrpuaHksWW
EgcUnTdUmJVHEGBuyE8pLfUSG8EYHRCd
iaudopgXRLKlfOyWj8W6N0FEJXvW54tC
ACh0PiwK78hMnsGYR4iE4G22wMIZm6Ra
Pbrr4NFceI6K6EF3H6vHN5FFPRFmwhZg
pvbS8STo3cf6SKXlc1hsjZfonv33GP6f
y69YEF32I68GmH9dtokQP6hFkENZt7IP
NYriT3AXAQdJ3wAD0jerpfz6kwPHwolK
BANrwyrP1jqbamNb4NK9YbhzFdThdc94
0PGEgdDKBp4k2r5PZkdJqBKran8WDc8Q
fcB6dV2hg5BmZLUr0Ts3HVzm7KKOGIjf
PASSWORD_OLD
useradd bandit18 && echo -e "x2gLTTjFwMOhQ8oWNbMN362QKxfRqGlO\nx2gLTTjFwMOhQ8oWNbMN362QKxfRqGlO" | passwd bandit18
chmod 640 /home/bandit17/password*
chown bandit18:bandit17 /home/bandit17/password*
chmod 755 /home/bandit18
chown root:root /home/bandit18
3. Bandit17 문제풀의
# bandit17 로 설정한 패스워드를 입력하여 접속한다.
# xLYVMN9WE5zQ5vHacb0sZEVqbrp7nBTn
ssh -oStrictHostKeyChecking=no bandit17@localhost -p 2220
# 42c42
# < x2gLTTjFwMOhQ8oWNbMN362QKxfRqGlO
# ---
# > znK19XRJuZTd8BvCEVW4NQjtNJbdFLNC
# 42번째 change 42번째
# 42번째 값이 <에서 >로 변경을 의미.
diff passwords.new passwords.old
# passwords.new 의 변경점만 출력
diff passwords.new passwords.old | awk '/^</ {print substr($0, 3)} /^>/ {print substr($0, 3)}' | head -n 1
'Wargame > Bandit' 카테고리의 다른 글
[ Docker ] Bandit Wargame 만들기 - 19번 문제 ( 20 / 33 ) (0) | 2024.06.19 |
---|---|
[ Docker ] Bandit Wargame 만들기 - 18번 문제 ( 19 / 33 ) (0) | 2024.06.18 |
[ Docker ] Bandit Wargame 만들기 - 16번 문제 ( 17 / 33 ) (0) | 2024.06.13 |
[ Docker ] Bandit Wargame 만들기 - 15번 문제 ( 16 / 33 ) (0) | 2024.06.13 |
[ Docker ] Bandit Wargame 만들기 - 14번 문제 ( 15 / 33 ) (1) | 2024.06.13 |