logo

Rope HacktheBox Writeup

ID: 878ec911-282e-56ca-ab50-15867752ea09

STIX ID: report--878ec911-282e-56ca-ab50-15867752ea09

Feed Name: Will's Root

Threat Score
50/100

Date Published: 2020-05-23

Date Updated: 2026-04-19

Author: Unknown

...
...

This writeup documents full exploitation of the HackTheBox "Rope" machine: initial reconnaissance revealed an LFI and a 32-bit httpserver binary; the author leaked /proc/self/maps and libc, performed a format-string GOT overwrite (puts -> system) to trigger a base64-encoded reverse shell as user 'john', escalated to r4j by overwriting a privileged library (liblog.so) to execute system() via sudo, and finally rooted the box by exploiting a 64-bit forking socket server with a stack buffer overflow and ROP (including canary and address brute-forcing). The report includes PoC Python exploits, build commands, and detailed exploitation steps.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.