Public recordings
Sort by
#1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: sudo: a password is required admin@i-0883f8551b33b395b:~$ ^C admin@i-0883f8551b33b395b:~$ ^C admin@i-0883f8551b33b395b:~$ sudo usage: sudo -h | -K | -k | -V usage: sudo -v [-AknS] [-g group] [-h host] [-p prompt] [-u user] usage: sudo -l [-AknS] [-g group] [-h host] [-p prompt] [-U user] [-u user] [comusage: sudo [-AbEHknPS] [-r role] [-t type] [-C num] [-D directory] [-g group] [usage: sudo -e [-AknS] [-r role] [-t type] [-C num] [-D directory] [-g group] [-admin@i-0883f8551b33b395b:~$
paris/i-0883f8551b33b395b 04:40
by SadServers[pid 738] write(2, ")\n", 2) ) = 2 [pid 738] write(2, "\t", 1 ) = 1 [pid 738] write(2, "./main.go", 9./main.go) = 9 [pid 738] write(2, ":", 1 <unfinished ...> [pid 739] <... nanosleep resumed>NULL) = 0 :[pid 738] <... write resumed>) = 1 [pid 739] futex(0x56b498, FUTEX_WAIT_PRIVATE, 0, {tv_sec=60, tv_nsec=0} <unfin[pid 738] write(2, "64", 264) = 2 [pid 738] write(2, " +", 2 +) = 2 [pid 738] write(2, "0x47d", 50x47d) = 5 [pid 738] write(2, "\n", 1 ) = 1 [pid 738] exit_group(2) = ? :
kihei/i-0085f9061f68a54dd 01:44
by SadServerswrite(2, "main.main", 9main.main) = 9 write(2, "(", 1() = 1 write(2, ")\n", 2) ) = 2 write(2, "\t", 1 ) = 1 write(2, "./main.go", 9./main.go) = 9 write(2, ":", 1:) = 1 write(2, "64", 264) = 2 write(2, " +", 2 +) = 2 write(2, "0x47d", 50x47d) = 5 write(2, "\n", 1 ) = 1 exit_group(2) = ? +++ exited with 2 +++ admin@i-09f91d8d7987d8a61:~$
kihei/i-09f91d8d7987d8a61 07:43
by SadServersroot 590 0.0 0.4 4396 2140 ttyS0 Ss+ 14:50 0:00 /sbin/agetty 15200,57600,38400,9600 ttyS0 vt220 root 591 0.0 1.5 13352 7152 ? Ss 14:50 0:00 sshd: /usr/sbf 10-100 startups _chrony 593 0.0 0.7 10852 3600 ? S 14:50 0:00 /usr/sbin/chr_chrony 594 0.0 0.1 10724 548 ? S 14:50 0:00 \_ /usr/sbinroot 606 0.1 3.7 26612 17420 ? Ss 14:50 0:00 /usr/bin/pyth-upgrades/unattended-upgrade-shutdown --wait-for-signal admin@i-06fb99aa236dc5e81:~$ python -m http.server bash: python: command not found admin@i-06fb99aa236dc5e81:~$ python3 -m http.server Serving HTTP on 0.0.0.0 port 8000 (http://0.0.0.0:8000/) ... ^C Keyboard interrupt received, exiting. admin@i-06fb99aa236dc5e81:~$ ls INPUT -p tcp -m tcp --dport 80 -j DROP
paris/i-06fb99aa236dc5e81 01:25
by SadServers<h1>Not Found</h1> <p>The requested URL was not found on the server. If you entered the URL manualladmin@i-051a73ad0a2105cdd:~$ curl localhost:5000/robotx.txt <!doctype html> <html lang=en> <title>404 Not Found</title> <h1>Not Found</h1> <p>The requested URL was not found on the server. If you entered the URL manualladmin@i-051a73ad0a2105cdd:~$ curl localhost:5000/robots.txt <!doctype html> <html lang=en> <title>404 Not Found</title> <h1>Not Found</h1> <p>The requested URL was not found on the server. If you entered the URL manualladmin@i-051a73ad0a2105cdd:~$ curl localhost:5000
paris/i-051a73ad0a2105cdd 02:01
by SadServersnvme1n1 259:4 0 1G 0 disk nvme2n1 259:5 0 1G 0 disk root@i-038652727ef9bbf76:~# vgdisplay root@i-038652727ef9bbf76:~# sudo mkdir /nvme1n1/mydisk mkdir: cannot create directory ‘/nvme1n1/mydisk’: No such file or directory root@i-038652727ef9bbf76:~# sudo mount /dev/nvme0n1p1 /dev/nv nvme0 nvme0n1p1 nvme0n1p15 nvme1n1 nvme2n1 nvme0n1 nvme0n1p14 nvme1 nvme2 nvram root@i-038652727ef9bbf76:~# sudo mount /dev/nvme0n1p1 /dev/nvme1 nvme1 nvme1n1 root@i-038652727ef9bbf76:~# sudo mount /dev/nvme0n1p1 /dev/nvme1 nvme1 nvme1n1 root@i-038652727ef9bbf76:~# sudo mount /dev/nvme0n1p1 /dev/nvme1n1 mount: /dev/nvme1n1: mount point is not a directory. root@i-038652727ef9bbf76:~# sudo mkdir /dev/
kihei/i-038652727ef9bbf76 04:29
by SadServersadmin@i-04a78007c8911daa8:~$ sudo cp /home/admin/kihei /dev/nvme0n1p15 admin@i-04a78007c8911daa8:~$ cd /dev/ block/ disk/ hugepages/ mapper/ net/ shm/ char/ fd/ input/ mqueue/ pts/ vfio/ admin@i-04a78007c8911daa8:~$ cd /dev/ block/ disk/ hugepages/ mapper/ net/ shm/ char/ fd/ input/ mqueue/ pts/ vfio/ admin@i-04a78007c8911daa8:~$ cd /dev/ block/ disk/ hugepages/ mapper/ net/ shm/ char/ fd/ input/ mqueue/ pts/ vfio/ admin@i-04a78007c8911daa8:~$ cd /dev/disk/by- by-id/ by-partuuid/ by-path/ by-uuid/ admin@i-04a78007c8911daa8:~$ cd /dev/disk/by- by-id/ by-partuuid/ by-path/ by-uuid/ admin@i-04a78007c8911daa8:~$ cd /dev/pts/
kihei/i-04a78007c8911daa8 01:55
by SadServersbash: start: command not found admin@i-0f1e5ff82074e1a48:~$ runs /home/admin/kihei bash: runs: command not found admin@i-0f1e5ff82074e1a48:~$ /home/admin/kihei panic: exit status 1 goroutine 1 [running]: main.main() ./main.go:64 +0x47d admin@i-0f1e5ff82074e1a48:~$ ls -l /home/admin/kihei -rwxr-xr-x 1 admin root 2207109 Sep 17 17:28 /home/admin/kihei admin@i-0f1e5ff82074e1a48:~$ chown -R root:root /home/admin/kihei chown: changing ownership of '/home/admin/kihei': Operation not permitted admin@i-0f1e5ff82074e1a48:~$ sudo chown -R root:root /home/admin/kihei admin@i-0f1e5ff82074e1a48:~$
kihei/i-0f1e5ff82074e1a48 03:23
by SadServersmserver="http://storage.sadservers.com:9000" if curl --output /dev/null --silent --head --fail --max-time "$timeout" "$mser : else echo "ERROR: cannot reach storage server." exit fi fi /usr/bin/mc alias set sss $mserver v3QHHA7ARsKZLRycPrBf 6z1bawB9AnFyN0LMGJMagdPdrror --overwrite $castdir sss/screencasts --limit-upload 5M echo $? root@i-0e0312d6c2077de16:~# ls mc.sh root@i-0e0312d6c2077de16:~#
kihei/i-0e0312d6c2077de16 07:44
by SadServersContent-Type: text/plain; charset=utf-8 Connection: close cannot decode into nil map[int32]float64 given stream length: %vcannot decode ingiven stream length: %vcannot decode into nil map[string]string given stream lennil map[string]uint64 given stream length: %vcannot decode into nil map[uint64][: %vcannot decode into nil map[uint64]string given stream length: %vcannot decod64 given stream length: %vcannot decode into nil map[uint8]float64 given stream control frames in send queue, closing connectionhttp: request method or responsow bodyinternal error; sent too many window updates without decrements?json: invng to unmarshal %q into Numberbytes/string in stream can decode into array of byde into nil map[string]float64 given stream length: %vcannot decode into nil map@@@ 1641,157 60%
paris/i-082629608dd4c7a0b 08:36
by SadServers-L possibly with LWP and NLWP columns -m, m after processes -T possibly with SPID column For more details see ps(1). admin@i-06321e2dae7759c94:~$ sudo lsof -i -P -n | grep LISTEN We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin:
paris/i-06321e2dae7759c94 04:30
by SadServerscloud gdb ld.so.conf mtab rc2.d skel vim cloud-release groff ld.so.conf.d nanorc rc3.d ssh wgetrc cron.d group ldap netconfig rc4.d ssl xattr.conf cron.daily group- libaudit.conf network rc5.d subgid xdg cron.hourly grub.d lighttpd networks rc6.d subgid- xml cron.monthly gshadow locale.alias nsswitch.conf rcS.d subuid cron.weekly gshadow- locale.gen opt reportbug.conf subuid- admin@i-0ff8d9a1ece0ff594:/etc$ cd /var/w
paris/i-0ff8d9a1ece0ff594 02:14
by SadServersa.out agent webserver.py $ admin@i-072b43453825ba99a:~$ find / -perm -u=s -type f 2>/dev/null /usr/lib/openssh/ssh-keysign /usr/lib/dbus-1.0/dbus-daemon-launch-helper /usr/bin/chsh /usr/bin/umount /usr/bin/mount /usr/bin/passwd /usr/bin/newgrp /usr/bin/sudo /usr/bin/chfn /usr/bin/su /usr/bin/gpasswd admin@i-072b43453825ba99a:~$ ./a.out /usr/bin/su