[HTB] Zipper — Writeup (OSWE-Prep)

bigb0ss
6 min readApr 12, 2021

Zipper is a hard difficulty Linux box. Good learning path for:

  • Zabbix-cli Access
  • Zabbix RCE Exploit
  • SUID Binary Hijack

Initial Recon

Nmap

# nmap -Pn --open -T4 -sV -sC -p- 10.10.10.108Starting Nmap 7.80 ( https://nmap.org ) at 2021-04-11…

--

--

bigb0ss

OSWE | OSCE | OSCP | CREST | Lead Offensive Security Engineer — All about Penetration Test, Red Team, Cloud Security, Web Application Security