HackTheBox Squashed Walkthrough | Linux Privilege Escalation Through X11 Authorization |CREST CRT Track

Squashed uses a few NFS shares improperly as part of an excellent introduction to NFS. We’ll first gain access to a web directory, then, after changing my local userid to comply with the system’s requirements, upload a webshell and obtain execution. Then, using an X11 magic cookie We obtained from a different NFS share, We will take a screenshot of the desktop of the current user, revealing the root password hidden in a password manager.

