← All Challenges
Nginx in the Dark
Forensics
200 pts
standard
Challenge Description
A public-facing Nginx server was compromised and used as an internal pivot. Some logs were tampered with. Reconstruct what happened.
Find :
- Real webshell URI path used for command execution.
- Persistence mechanism.
- Effective compromised service user.
- Remote beacon host in persistence command.
Flag format: HackCTF{...}
Files
Hints
Submit Flag
Login to submit a flag.