[HTB] Celestial — Writeup (OSWE-Prep)

bigb0ss
5 min readApr 10, 2021

Celestial is a medium difficulty Linux box. Good learning path for:

  • NodeJS Deserialization Attack
  • CronJob Hijack for Privilege Escalation

Initial Recon

Nmap

# nmap -Pn --open -p- -T4 -sV -sC 10.10.10.85Starting Nmap 7.80 ( https://nmap.org ) at 2021-04-10…

--

--

bigb0ss

OSWE | OSCE | OSCP | CREST | Lead Offensive Security Engineer — All about Penetration Test, Red Team, Cloud Security, Web Application Security