Grey Hack

Grey Hack

lucas Jun 25, 2021 @ 8:12am
no open ports,
i have an issue,i have a target machine whit no open ports i dont now how to hack it.
< >
Showing 1-15 of 19 comments
Xephael Jun 25, 2021 @ 12:37pm 
Networks like this need to be hacked through the router, you can use scanrouter to get the router's lib version and then look for exploits in the hackshop. If you can't find a way in still you may want to skip that mission.
lucas Jun 26, 2021 @ 6:41am 
i try to open a port trough the router on the target machine and i save the change on the router set up,but nothing happens,the router shows and open port the nmap on the target machine doesnt..
Xephael Jun 26, 2021 @ 7:44am 
Ah, if the computer itself has no running services your options are more limited, if you need a shell what you'll need to do is use a router exploit that accesses a computer at a given IP address and use that to grab the Mail.txt files. (This may require exploit modification and/or a custom tool because the hackshop won't always have what you need here). After that you need to set up an rshell server on a rental, and on that rental run the rshell interface program, then you'll need to login to one of those npc emails you hacked, and from that npc email send the funny game email to another one of the npcs on that computer, indicating the ip and port of your rshell server in the options for the binary you're sending them. If successful your rshell interface program will get a shell.

If all you need is any password you can grab the root pass from somewhere else on the network, because it's shared. If you need a specific user's password you can email the admin and ask for it.
lucas Jun 26, 2021 @ 2:48pm 
ok tx i will need to watch a tutorial about rshell,to figure out where to install the rshell server and rshell_interface and how to run it
DI_G7 Jan 14, 2023 @ 10:41am 
How are we supposed to get the email for the user who is inside the machine that has no open ports?
I cannot use the exploit that gets the /Mail.txt ... because no ports are open >:(
Xephael Jan 14, 2023 @ 11:06am 
Originally posted by DI_G7:
How are we supposed to get the email for the user who is inside the machine that has no open ports?
I cannot use the exploit that gets the /Mail.txt ... because no ports are open >:(
Certain router exploits get things like mails from target LAN ips, there are other ways as well. It always depends on the specific network but this is something you probably won't get a ton of assistance with. You should avoid threads that are super old like this one though, as the game changes a lot over the years.
DI_G7 Jan 15, 2023 @ 8:31am 
I have tried to read the routers email but it says

root@Nosei:/root# routermailv1 192.168.0.1

Starting attack...success!
Privileges obtained from user: guest
Error: can't access to /lib. Permission denied.

So I couldn't get the emails.
Xephael Jan 15, 2023 @ 11:49am 
Originally posted by DI_G7:
I have tried to read the routers email but it says

root@Nosei:/root# routermailv1 192.168.0.1

Starting attack...success!
Privileges obtained from user: guest
Error: can't access to /lib. Permission denied.

So I couldn't get the emails.
I cannot assist you further with this, as it can start to get into pvp methods which I don't assist with.
marcus.z Apr 1, 2023 @ 2:53pm 
I managed to get into a target-host with no open ports. This is how I did it:
  • find out a user name for the target host. In my case it was given in the mission (path of the file to be obtained)
  • find the email-adress of the victim with either:
    a) find a server with StudentsViewer.exe. This is likely one with a service "students" or "employees" and hack into it. Launch StudentsViewer.exe and search for the user with the given name. Copy the email adress
    b) or alternatively hack into cameras (cctv) and change or aquire the password and view it with Browser.exe IP. Zoom into Postits and hope to see the victims adress
  • setup a rshell-server at your rented server (look in the manual) and start rshell_interface
  • obtain another email-adress of the network (see above), start Mail.exe and log into that second account. Maybe you can simply use your own, but i did not try.
  • choose "Funny game" as mail template and configure the attachment to use your rented server. The default port is 1222. Double check that you have forwarded this port from your router to your server. Send this mail to your victim
  • you should get an email saying "i ran it, hopefully its gore...". Now you should see a shell choice in your rshell_interface and you have the wanted access!
Macha Dec 17, 2023 @ 5:56pm 
Originally posted by marcus.z:
I managed to get into a target-host with no open ports. This is how I did it:
  • find out a user name for the target host. In my case it was given in the mission (path of the file to be obtained)
  • find the email-adress of the victim with either:
    a) find a server with StudentsViewer.exe. This is likely one with a service "students" or "employees" and hack into it. Launch StudentsViewer.exe and search for the user with the given name. Copy the email adress
    b) or alternatively hack into cameras (cctv) and change or aquire the password and view it with Browser.exe IP. Zoom into Postits and hope to see the victims adress
  • setup a rshell-server at your rented server (look in the manual) and start rshell_interface
  • obtain another email-adress of the network (see above), start Mail.exe and log into that second account. Maybe you can simply use your own, but i did not try.
  • choose "Funny game" as mail template and configure the attachment to use your rented server. The default port is 1222. Double check that you have forwarded this port from your router to your server. Send this mail to your victim
  • you should get an email saying "i ran it, hopefully its gore...". Now you should see a shell choice in your rshell_interface and you have the wanted access!
Or you can just send the email to the person your trying to gain access to from their own email address XD
yes this works.
No I don't think its supposed to.
you wont get a reply email but the rshell_interface still returns a result after that so you can get the shell
I had an instance where the pc i was trying to access only had one user so they didnt have any trusted email addresses so i tried this method for giggles and it worked
Last edited by Macha; Dec 17, 2023 @ 5:57pm
xjulep Dec 17, 2023 @ 7:25pm 
Attacking the router on port 0 with the target IP as an optional argument can open the path to getting Mail.txt from the target as well
saltyember Dec 18, 2023 @ 3:52am 
(for some reason) rent a server and have it set to catch a rshell then make the target email themselv
Raydric1092 Dec 18, 2023 @ 4:10am 
Hi Guys, i'm new to this game, and i've encountered the same problem, as i've managed to get to the router, however, when i tried to nmap the target computer, there are no open port on the target.. i've tried to do funny game method, but the only known user is the sysadmin, so he/she won't open the file... kinda confused, perhaps anyone can help for different approach
Xephael Dec 18, 2023 @ 8:14am 
Originally posted by Raydric1092:
Hi Guys, i'm new to this game, and i've encountered the same problem, as i've managed to get to the router, however, when i tried to nmap the target computer, there are no open port on the target.. i've tried to do funny game method, but the only known user is the sysadmin, so he/she won't open the file... kinda confused, perhaps anyone can help for different approach
Computers will always have non-root users, you need to target one of them with Funny Game.
schm2616 Jan 3 @ 12:04pm 
Originally posted by xjulep:
Attacking the router on port 0 with the target IP as an optional argument can open the path to getting Mail.txt from the target as well

Any chance you can help me understand how to do this? I have been trying to add the optional port to it to the splick file, but have no idea where to insert it.
< >
Showing 1-15 of 19 comments
Per page: 1530 50