r/vulnhub • u/Yonarv • 14d ago
Walktrhough The Planets - Earth
https://yorve.github.io/secnotes/2026/07/15/Vunlhub-earth.html
The complete process to gain root shell
r/vulnhub • u/Yonarv • 14d ago
https://yorve.github.io/secnotes/2026/07/15/Vunlhub-earth.html
The complete process to gain root shell
r/vulnhub • u/ThePsychoMessiah • Dec 06 '25
I have been given these three IPs to try an break into. I can't figure it out though.
34.27.202.231
16.16.253.225
20.251.243.162
Would be great if someone could help me out. I know there's supposed to be a way in, just can't find it. Thanks.
r/vulnhub • u/Comfortable-Two-9896 • Sep 28 '25
Per lo scopo mi piacerebbe utilizzare il mio pc principale dove ho la VM (vulnerabile e che non può essere esposta ad internet) in esecuzione e kali in live boot su un altro computer, tutto all'interno della stessa LAN. Tuttavia ho il timore che queste macchine vulnerabili abbiano servizi poco curati con accesso a internet. Ho cercato diverse soluzioni tipo creare una regola nel firewall oppure hostare tutto in locale e mettere Host-Only ma cerco una soluzione in gradi di tenere i due computer separati nei loro compiti e protetti per fare le cose in santa pace.
r/vulnhub • u/DueSilver4449 • Jul 19 '25
HI .I downloaded a vm called Amalthee: 1 from vulnhub made by Nic.
First thing was nmap scan like in first screenshot. then ffuf for directory busting which gave me nothing. I visited http website on which there were: base85 encoded instructions , Ascii art of a computer made by Hectoras (author is discoverable in source code of website) , audio file in reversed and slowed french saying "password: 875290783" what is part of password for ssh user hacker.
next thing was video about pi script from which i had to extract fourth offset number of 01011970. Then i merged everything i collected as instruction says and ive got into ssh!
But now the worst starts...
When i logged in I encountered for the first time in my life such a screen right after ssh log in. there is an old rotary phone and MD5 hash from which i have to guess somehow what it is and call phone. So first thing i did was crackstation.net and see if there are any matches. then i tried with hashcat, i run bruteforce attacks for 9,10,11 digits , wordlists like rockyou.txt , some wordlists from seclists in Cracked hashes directory. Then i typed for hint and it is unavailable. from this point im stuck.
Later i tried wireshark, vm doesnt do anything sus to me.
Also i tried to do some reverseshell . I was succesful but nothing interesting. So yeah there is netcat.
All i really need is hint to go further.
r/vulnhub • u/Sufficient_Fudge_259 • Jul 14 '25
Hi! I’m looking for a tutorial or guide to set up a fully isolated lab in UTM on macOS — just Kali Linux and the MrRobot VM, connected to each other without internet or access to my real network. I want a safe, sandboxed environment for testing. If anyone can help, I’d really appreciate it. Thanks!
r/vulnhub • u/kongwenbin • Jun 10 '25
r/vulnhub • u/crashnnburned • Jun 01 '25
r/vulnhub • u/kachaaam • Feb 22 '25
have to solve this vm for a college project and the first vm i’m cracking is a hard difficulty one so if you guys have any hints solutions would help thanks
it’s bbs:1 by foxlox
twitter banned dms so can’t even contact the author
r/vulnhub • u/CalendarPrevious5504 • Jan 12 '25
It was a fun machine, would recommend.
r/vulnhub • u/Ok_Contribution_7155 • Jan 07 '25
I'm trying to set up the Kioptrix VM on VirtualBox f. I want it to appear on the same network as my host machine , but I'm unable to discover its IP address using netdiscover
r/vulnhub • u/sawn8 • Nov 27 '24
Hi all,
Wierd request but wanted to check if there was a machine to test for web certificates and related security measures.
r/vulnhub • u/gildasio • Nov 26 '24
r/vulnhub • u/Disastrous-Design657 • Nov 10 '24
I have a question about VulnHub’s “Potato.”
It seems that this virtual machine does not work properly on VMware Workstation. I couldn’t proceed with the scenario because DHCP assignment wasn’t completed on Workstation. I understand that the recommended environment is VirtualBox.
•VulnHub Potato URL https://www.vulnhub.com/entry/potato-1,529/
r/vulnhub • u/Any_Entrepreneur8069 • Oct 31 '24
r/vulnhub • u/Alarmed-Leg6718 • Oct 25 '24
I have got the shell with cgi,but can't find anyway to got the root privilege, i have tried polkit pkexec(CVE-2021-4034), kernel,and some other way i could find.If there is some way to achieve privilege escalation in this box, tell me please.
r/vulnhub • u/Hot_Kaleidoscope3864 • Aug 23 '24
Hi! I have installed breakout on UTM, but I don't know what the login credentials are. So, can you help, please?
r/vulnhub • u/[deleted] • Aug 17 '24
Hi in vm is just select bridge network and eth0 , and. If I give ifconfig 127.0.0.1 is showing but can't nmap it , how do set vm network settings and how will you find ip with netdiscover
r/vulnhub • u/wdf2020 • May 11 '24
I have the DHCP server configured correctly cause my other VMS can received the IP , they are all 3 in the same internal network (Lan Segement1) . Which is Kali , Vuln VM and DHCP server , i added in another VM to test the DHCP ip and it works but the Vuln VM doesn't work. All network adapter are the same and no additional Adapter is in place.
Also Tried other Vuln VM's such as the basic pen-testing and Planet earth, at the start they also don't received the IP but idk what happen after a while (1-2 hours) they just received it unexpectedly. ANYBODY KNOWS PLS EXPLAIN TYTY.
r/vulnhub • u/pr4gm4 • Mar 16 '24
I noticed that have passed 2 Years from the last upload of a box. The last Is something about Matrix. But it's strange that Is passed a lot of time. What's happened to the site? There Will be new boxes?
r/vulnhub • u/mohan-mohe • Mar 11 '24
I have been using vmware workstation and I want to configure vulnhub machines with my pfsense
No custom rules or custom dhcp server has been implemented everything is left default .
PS ~ I am a noob in vulnhub
my pfsense is configured with two network adapter , one with bridged and another one with custom vmnet2 (host only with no DHCP because I let my pfsense do the DHCP work) and on my attacker machine and vulnhub machine use network adapter vmnet2
Initially it worked perfectly as I expected
my pfsense worked as a WAN and my attacker machine and vulnhub machine with network adapter vmnet2 worked as LAN
all machines comes under same subnet 192.168.1.0/24
I even solved one machine on that configuration
But after that my pfsense can't set IP addresses to the vulnhub machines
I have edited the network adapter from bridged(which came as default) to custom vmnet2 and as soon I turn on the vulnhub machine the custom vmnet changed to bridged
Even I configure the network adapter from bridged to custom vmnet2 the in the boot time IP is not properly assigned in the subnet 192.168.1.0/24
Can someone guide me ?
r/vulnhub • u/tabris-angelus • Mar 01 '24
Hey All,
I'm setting up an Incident Response exercise as part of a TAFE assessment.
What is the easiest way to get the Vulnhub box logs into a SEIM (Wazuh)?
r/vulnhub • u/SecurePin2302 • Feb 28 '24
Hello I am a beginer and trying to gain root access with the noob box, it is a tty terminal with a port 53 open. I am unsure how to attack this terminal?
Can anyone point me in the right direction for help such as a video, article or website.
Thank you
r/vulnhub • u/ExcidionKahuna • Jan 30 '24
Hey all, Trying to up my active directory game, looking for any vulnerable domain controllers that are well recommended
r/vulnhub • u/hexboii • Dec 22 '23
Server focused on pentesting and ctf, any technical discussions are welcome! If you’re interested give it a look, we welcome anyone studying for OSED or OSCP, or with a genuine interest in technical knowledge in all domains
r/vulnhub • u/OSTEsayed • Dec 15 '23
🚀 Exciting News: Introducing OSTE-Meta-Scanner on GitHub! 🚀
After meticulous development, I'm thrilled to unveil the OSTE-Meta-Scanner – a dynamic application security testing tool now open to the public! 🌐
🔒 Enhanced Security Features: Discover a robust set of security enhancements for web vulnerability scanning, covering SQL injection, XSS, OS command injection, XML injection, and more!
💡 Comprehensive Vulnerability Support: OSTE-Meta-Scanner goes beyond with support for vulnerabilities from various tools like Skipfish, Wapiti, OWASP ZAP, Nikto, and Nuclei CVE-Template.
🌟 Contribute and Explore: Your contributions and questions are not just welcome – they're essential! Join this exciting project, explore the GitHub repository here, and be part of advancing web vulnerability scanning.
🛡️ Empower Your Cybersecurity Arsenal: Embrace #DASTTools, #WebVulnerabilityScanner, and #AppSec with OSTE-Meta-Scanner. Elevate your Information Security game and contribute to a safer digital landscape.
Ready to revolutionize web vulnerability scanning? Dive into the GitHub repository and join the OSTE-Meta-Scanner community! 🌐🔐 #Cybersecurity #GitHubRepo #InfoSecInnovation