Documentation Index
Fetch the complete documentation index at: https://rootea.es/llms.txt
Use this file to discover all available pages before exploring further.
Todas las máquinas
Catálogo completo: 203 máquinas retiradas con 615 writeups validados. Cmd+K / Ctrl+K.Linux (140)
| Máquina | Dificultad | Skills | Writeups |
|---|---|---|---|
| Admirer | 🟢 Fácil | Information Leakage Admirer Exploitation (Abusing LOAD DATA LOCAL Query) Abusin… | 3 |
| Antique | 🟢 Fácil | SNMP Enumeration Network Printer Abuse CUPS Administration Exploitation (ErrorL… | 3 |
| Backdoor | 🟢 Fácil | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Bank | 🟢 Fácil | Transferencia de zona DNS · SUID binaries · Remote Code Execution (RCE) | 3 |
| Bashed | 🟢 Fácil | Abuso de cron · Abuso de sudo · phpbash (web shell PHP) | 2 |
| Beep | 🟢 Fácil | Local File Inclusion (LFI) · Shellshock (CVE-2014-6271) · Elastix LFI · Remote Code Execution (RCE) | 3 |
| Blocky | 🟢 Fácil | WordPress Enumeration Information Leakage Analyzing a jar file - JD-Gui + SSH A… | 3 |
| Blunder | 🟢 Fácil | Bludit CMS Exploitation Bypassing IP Blocking (X-Forwarded-For Header) Director… | 3 |
| BountyHunter | 🟢 Fácil | XML External Entity | 3 |
| Delivery | 🟢 Fácil | Virtual Hosting Enumeration Abusing Support Ticket System Access to MatterMost… | 3 |
| Doctor | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Frolic | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| GoodGames | 🟢 Fácil | SQL Injection | 3 |
| Haystack | 🟢 Fácil | ElasticSearch Enumeration Information Leakage Kibana Enumeration Kibana Exploit… | 3 |
| Horizontall | 🟢 Fácil | Information Leakage Port Forwarding Strapi CMS Exploitation Laravel Exploitation | 3 |
| Knife | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Laboratory | 🟢 Fácil | SUID binaries · Remote Code Execution (RCE) | 3 |
| Lame | 🟢 Fácil | SMB (139/445) | 4 |
| Late | 🟢 Fácil | Virtual Hosting Enumeration Abusing Upload File - Image to Text Flask Utility S… | 3 |
| Mirai | 🟢 Fácil | Credenciales por defecto · USB forensics · Pi-hole credenciales por defecto | 2 |
| Nibbles | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| NodeBlog | 🟢 Fácil | SQL Injection · XML External Entity | 3 |
| NunChucks | 🟢 Fácil | NodeJS SSTI (Server Side Template Injection) AppArmor Profile Bypass (Privilege… | 3 |
| OpenSource | 🟢 Fácil | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Pandora | 🟢 Fácil | Remote Code Execution (RCE) · SQL Injection | 3 |
| Paper | 🟢 Fácil | Information Leakage Abussing WordPress - Unauthenticated View Private/Draft Pos… | 3 |
| Postman | 🟢 Fácil | Redis Enumeration Redis Exploitation - Write SSH Key Webmin Exploitation - Pyth… | 3 |
| RouterSpace | 🟢 Fácil | linPEAS · Remote Code Execution (RCE) | 3 |
| Safe | 🟢 Fácil | Information Leakage Buffer Overflow [x64] [ROP Attacks using PwnTools] [NX Bypa… | 3 |
| ScriptKiddie | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Secret | 🟢 Fácil | Code Analysis Abusing an API Json Web Tokens (JWT) Abusing/Leveraging Core Dump… | 3 |
| Sense | 🟢 Fácil | pfSense · Remote Code Execution (RCE) | 3 |
| Shocker | 🟢 Fácil | Shellshock (CVE-2014-6271) | 3 |
| SteamCloud | 🟢 Fácil | Kubernetes API Enumeration (kubectl) Kubelet API Enumeration (kubeletctl) Comma… | 3 |
| SwagShop | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Tabby | 🟢 Fácil | Local File Inclusion (LFI) | 3 |
| Teacher | 🟢 Fácil | Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| Traverxec | 🟢 Fácil | Nostromo Exploitation Abusing Nostromo HomeDirs Configuration Exploiting Journa… | 3 |
| Valentine | 🟢 Fácil | SSL Heartbleed Exploitation Cracking Hashes Tmux Socket File Session [Privilege… | 3 |
| Validation | 🟢 Fácil | SQL Injection · Remote Code Execution (RCE) | 3 |
| Apocalyst | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Aragog | 🟡 Medio | XML External Entity | 3 |
| Backend | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| BackendTwo | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Bolt | 🟡 Medio | Information Leakage Subdomain Enumeration SSTI (Server Side Template Injection)… | 3 |
| Book | 🟡 Medio | Cross-Site Scripting (XSS) | 3 |
| Cache | 🟡 Medio | SQL Injection · Remote Code Execution (RCE) | 3 |
| Catch | 🟡 Medio | SQL Injection · Remote Code Execution (RCE) | 3 |
| Celestial | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Chaos | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Cronos | 🟡 Medio | Transferencia de zona DNS · SQL Injection | 3 |
| DevOops | 🟡 Medio | XML External Entity | 3 |
| Devzat | 🟡 Medio | Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| Enterprise | 🟡 Medio | SQL Injection | 3 |
| Epsilon | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Europa | 🟡 Medio | SQL Injection · Remote Code Execution (RCE) | 3 |
| Flustered | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| FluxCapacitor | 🟡 Medio | Fuzzing de directorios | 3 |
| Forge | 🟡 Medio | Server-Side Request Forgery | 3 |
| Haircut | 🟡 Medio | Server-Side Request Forgery | 3 |
| Hawk | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Inception | 🟡 Medio | Local File Inclusion (LFI) · WebDAV · Fuzzing de directorios | 3 |
| Jewel | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Lazy | 🟡 Medio | SUID binaries | 3 |
| Luke | 🟡 Medio | FTP Enumeration Information Leakage Abusing NodeJS Application API Enumeration… | 3 |
| Mango | 🟡 Medio | SQL Injection · SUID binaries | 3 |
| Meta | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Nineveh | 🟡 Medio | Remote Code Execution (RCE) · Local File Inclusion (LFI) | 3 |
| Node | 🟡 Medio | SUID binaries | 3 |
| Noter | 🟡 Medio | Fuzzing de directorios · Remote Code Execution (RCE) | 4 |
| Obscurity | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| October | 🟡 Medio | Abusing October CMS (Upload File Vulnerability) Buffer Overflow - Bypassing ASL… | 3 |
| Passage | 🟡 Medio | CuteNews Exploitation Code Analysis USBCreator D-Bus Privilege Escalation Pytho… | 3 |
| Pit | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Poison | 🟡 Medio | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Ransom | 🟡 Medio | Login Bypass (Type Juggling Attack) Decrypting a ZIP file (PlainText Attack - B… | 3 |
| RedCross | 🟡 Medio | Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Retired | 🟡 Medio | Local File Inclusion (LFI) | 3 |
| Schooled | 🟡 Medio | Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Seal | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Shibboleth | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| SneakyMailer | 🟡 Medio | Information Leakage Mass Emailing Attack with SWAKS Password Theft Abusing Pypi… | 3 |
| SolidState | 🟡 Medio | Abuso de cron | 3 |
| Stratosphere | 🟡 Medio | Apache Struts Exploitation (CVE-2017-5638) Python Library Hijacking (Privilege… | 3 |
| TartarSauce | 🟡 Medio | Remote File Inclusion (RFI) · Remote Code Execution (RCE) | 4 |
| Tenet | 🟡 Medio | PHP Deserialization Attack Abusing Race Condition | 3 |
| Tenten | 🟡 Medio | Wordpress Enumeration CV filename disclosure on Job-Manager Wordpress Plugin [C… | 3 |
| TheNotebook | 🟡 Medio | Abusing JWT (Gaining privileges) Abusing Upload File Docker Breakout [CVE-2019-… | 3 |
| Time | 🟡 Medio | Server-Side Request Forgery · Remote Code Execution (RCE) | 3 |
| Timing | 🟡 Medio | Local File Inclusion (LFI) | 3 |
| Undetected | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Unicode | 🟡 Medio | Local File Inclusion (LFI) | 3 |
| Union | 🟡 Medio | SQL Injection · Remote Code Execution (RCE) | 3 |
| Waldo | 🟡 Medio | Local File Inclusion (LFI) | 3 |
| Wall | 🟡 Medio | SUID binaries · Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| Writer | 🟡 Medio | SQL Injection | 3 |
| AdmirerToo | 🟠 Difícil | Remote Code Execution (RCE) · Server-Side Request Forgery | 3 |
| Altered | 🟠 Difícil | SQL Injection · Remote Code Execution (RCE) | 3 |
| Charon | 🟠 Difícil | SQL Injection · SUID binaries | 3 |
| CrimeStoppers | 🟠 Difícil | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Dab | 🟠 Difícil | Server-Side Request Forgery · SUID binaries · Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| EarlyAccess | 🟠 Difícil | SQL Injection · Local File Inclusion (LFI) · Cross-Site Scripting (XSS) | 3 |
| Ellingson | 🟠 Difícil | SUID binaries · Remote Code Execution (RCE) | 3 |
| Falafel | 🟠 Difícil | SQL Injection | 3 |
| Feline | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Flujab | 🟠 Difícil | SQL Injection · SUID binaries · Remote Code Execution (RCE) | 3 |
| Holiday | 🟠 Difícil | SQL Injection · Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Joker | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Kotarak | 🟠 Difícil | Server-Side Request Forgery | 3 |
| Mischief | 🟠 Difícil | SNMP Enumeration Information Leakage IPV6 ICMP Data Exfiltration (Python Scapy) | 4 |
| Monitors | 🟠 Difícil | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Oouch | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Overflow | 🟠 Difícil | SQL Injection · Remote Code Execution (RCE) | 3 |
| OverGraph | 🟠 Difícil | Cross-Site Scripting (XSS) · SQL Injection · Fuzzing de directorios · Server-Side Request Forgery · SUID binaries · Remote Code Execution (RCE) | 3 |
| Oz | 🟠 Difícil | SQL Injection · Remote Code Execution (RCE) | 3 |
| Phoenix | 🟠 Difícil | SQL Injection | 3 |
| Player | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Pressed | 🟠 Difícil | Password Guessing WordPress Abusing RPC Calls WordPress XML-RPC Create WebShell… | 3 |
| Quick | 🟠 Difícil | Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Scavenger | 🟠 Difícil | Transferencia de zona DNS · SQL Injection | 3 |
| Shrek | 🟠 Difícil | Information Leakage Steganography Challenge - Hidden message in the spectrogram… | 3 |
| Static | 🟠 Difícil | SUID binaries · Remote Code Execution (RCE) | 3 |
| Talkative | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Tentacle | 🟠 Difícil | Active Directory | 3 |
| Travel | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Unbalanced | 🟠 Difícil | Pi-hole credenciales por defecto · Remote Code Execution (RCE) | 3 |
| Unobtainium | 🟠 Difícil | Local File Inclusion (LFI) · Remote Code Execution (RCE) | 3 |
| Zetta | 🟠 Difícil | SQL Injection · Remote Code Execution (RCE) | 3 |
| Ariekei | 🔴 Insano | Shellshock (CVE-2014-6271) | 3 |
| Brainfuck | 🔴 Insano | TLS Certificate Inspection WordPress Enumeration WordPress WP Support Plus Resp… | 3 |
| CrossFit | 🔴 Insano | Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| CTF | 🔴 Insano | Remote Code Execution (RCE) | 3 |
| Fortune | 🔴 Insano | Command Injection OpenSSL - Creating a new key OpenSSL - Creating a CSR file (C… | 3 |
| Fulcrum | 🔴 Insano | Remote File Inclusion (RFI) · XML External Entity · Active Directory · Server-Side Request Forgery · Remote Code Execution (RCE) | 3 |
| Jail | 🔴 Insano | Code Analysis Binary Exploitation Buffer Overflow x32 - Socket Re-Use Shellcode… | 3 |
| Nightmare | 🔴 Insano | SQL Injection · Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 2 |
| Reddish | 🔴 Insano | Abusing Node-Red Chisel & Socat Usage Redis-Cli Exploitation Rsync Abusing Cron… | 3 |
| Sink | 🔴 Insano | HTTP Request Smuggling Exploitation (Leak Admin Cookie) Cookie Hijacking Inform… | 3 |
| Stacked | 🔴 Insano | Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Toby | 🔴 Insano | Abusing GOGS (Project Enumeration) Static Code Analysis (Finding a backdoor wit… | 3 |
Windows (63)
| Máquina | Dificultad | Skills | Writeups |
|---|---|---|---|
| Active | 🟢 Fácil | Kerberoasting · SMB (139/445) · Group Policy Preferences (GPP) | 3 |
| Arctic | 🟢 Fácil | Adobe ColdFusion 8 Exploitation Directory Traversal Vulnerability Cracking Hash… | 3 |
| Blue | 🟢 Fácil | EternalBlue (MS17-010) | 3 |
| Bounty | 🟢 Fácil | Fuzzing de directorios · IIS (Microsoft Web Server) | 3 |
| Buff | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Curling | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Devel | 🟢 Fácil | IIS (Microsoft Web Server) | 3 |
| Driver | 🟢 Fácil | Password Guessing SCF Malicious File Print Spooler Local Privilege Escalation (… | 3 |
| Forest | 🟢 Fácil | Transferencia de zona DNS · BloodHound · DCSync | 3 |
| Grandpa | 🟢 Fácil | WebDAV · IIS (Microsoft Web Server) · Remote Code Execution (RCE) | 3 |
| Granny | 🟢 Fácil | WebDAV · IIS (Microsoft Web Server) · Remote Code Execution (RCE) | 3 |
| Heist | 🟢 Fácil | SMB (139/445) | 3 |
| Jerry | 🟢 Fácil | Information Leakage Abusing Tomcat [Intrusion & Privilege Escalation] | 3 |
| Legacy | 🟢 Fácil | EternalBlue (MS17-010) | 3 |
| Love | 🟢 Fácil | Server-Side Request Forgery | 3 |
| Netmon | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Optimum | 🟢 Fácil | HttpFileServer (CVE-2014-6287) · Remote Code Execution (RCE) | 3 |
| Remote | 🟢 Fácil | Remote Code Execution (RCE) | 3 |
| Return | 🟢 Fácil | Abusing Printer Abusing Server Operators Group Service Configuration Manipulati… | 3 |
| Sauna | 🟢 Fácil | BloodHound · GetNPUsers (Impacket) · AutoLogon credentials · winPEAS · DCSync | 3 |
| ServMon | 🟢 Fácil | Local File Inclusion (LFI) | 3 |
| TimeLapse | 🟢 Fácil | SMB (139/445) | 3 |
| Toolbox | 🟢 Fácil | SQL Injection · Remote Code Execution (RCE) | 3 |
| Atom | 🟡 Medio | SMB (139/445) · Remote Code Execution (RCE) | 3 |
| Bart | 🟡 Medio | Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| Bastard | 🟡 Medio | Remote Code Execution (RCE) · SQL Injection | 3 |
| Cascade | 🟡 Medio | Active Directory · Kerberoasting · GetNPUsers (Impacket) · SQL Injection · SMB (139/445) | 3 |
| Chatterbox | 🟡 Medio | Achat 0.150 beta7 - Buffer Overflow (Windows 7 32 bits) Generating a Shellcode… | 3 |
| Giddy | 🟡 Medio | SQL Injection | 3 |
| Intelligence | 🟡 Medio | Active Directory · BloodHound · Remote Code Execution (RCE) | 3 |
| Jeeves | 🟡 Medio | Jenkins Exploitation (Groovy Script Console) RottenPotato (SeImpersonatePrivile… | 3 |
| Json | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Monteverde | 🟡 Medio | Remote Code Execution (RCE) | 3 |
| Querier | 🟡 Medio | Active Directory | 3 |
| Resolute | 🟡 Medio | SMB (139/445) | 2 |
| Scrambled | 🟡 Medio | Kerberoasting · GetNPUsers (Impacket) · SMB (139/445) · Remote Code Execution (RCE) | 6 |
| SecNotes | 🟡 Medio | SQL Injection · Fuzzing de directorios · IIS (Microsoft Web Server) · Cross-Site Scripting (XSS) | 3 |
| Silo | 🟡 Medio | Abusing Oracle Database Oracle Database Attacking Tool (ODAT) Installation Orac… | 3 |
| Sniper | 🟡 Medio | Remote File Inclusion (RFI) · Local File Inclusion (LFI) · SMB (139/445) · Remote Code Execution (RCE) | 4 |
| StreamIO | 🟡 Medio | Remote File Inclusion (RFI) · Local File Inclusion (LFI) · SQL Injection · BloodHound · AS-REP Roasting · SMB (139/445) · Remote Code Execution (RCE) | 3 |
| Worker | 🟡 Medio | Fuzzing de directorios · IIS (Microsoft Web Server) · Remote Code Execution (RCE) | 3 |
| Acute | 🟠 Difícil | Virtual Hosting Information Leakage Abusing Windows PowerShell Web Access Real-… | 3 |
| Blackfield | 🟠 Difícil | Active Directory · BloodHound · GetNPUsers (Impacket) · SMB (139/445) · Remote Code Execution (RCE) | 3 |
| Breadcrumbs | 🟠 Difícil | Local File Inclusion (LFI) · SQL Injection | 3 |
| Conceal | 🟠 Difícil | IIS (Microsoft Web Server) · Remote Code Execution (RCE) | 3 |
| Control | 🟠 Difícil | SQL Injection · winPEAS · Remote Code Execution (RCE) | 3 |
| Hancliffe | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Helpline | 🟠 Difícil | Remote Code Execution (RCE) | 5 |
| Mantis | 🟠 Difícil | Active Directory · BloodHound | 3 |
| Object | 🟠 Difícil | Active Directory · BloodHound · Remote Code Execution (RCE) | 3 |
| RE | 🟠 Difícil | XML External Entity · IIS (Microsoft Web Server) · Remote Code Execution (RCE) | 3 |
| Reel | 🟠 Difícil | Active Directory · Remote Code Execution (RCE) | 3 |
| Reel2 | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Search | 🟠 Difícil | Active Directory · Kerberoasting · BloodHound · SMB (139/445) | 3 |
| Tally | 🟠 Difícil | Remote Code Execution (RCE) | 3 |
| Anubis | 🔴 Insano | Cross-Site Scripting (XSS) · SMB (139/445) · Remote Code Execution (RCE) | 3 |
| APT | 🔴 Insano | winPEAS · SMB (139/445) | 3 |
| Bankrobber | 🔴 Insano | SQL Injection · SMB (139/445) · Remote Code Execution (RCE) · Cross-Site Scripting (XSS) | 3 |
| Fighter | 🔴 Insano | SQL Injection · Abuso de cron · Remote Code Execution (RCE) | 3 |
| Hackback | 🔴 Insano | Fuzzing de directorios · Remote Code Execution (RCE) | 3 |
| Minion | 🔴 Insano | Server-Side Request Forgery | 3 |
| MultiMaster | 🔴 Insano | Active Directory · SQL Injection · BloodHound · AS-REP Roasting · SMB (139/445) · Remote Code Execution (RCE) | 3 |
| Sizzle | 🔴 Insano | Active Directory · Kerberoasting · BloodHound · DCSync · SMB (139/445) | 3 |