Mission
Hijack a sudo command by abusing a permissive environment-variable allow-list in sudoers.
Why this matters in 2026
Environment-variable injection through sudo is the canonical loader-abuse pattern. RPATH and PATH siblings appear later in Venom and Flux.
Mitigation era: 2026-04 · rotation policy: levels may be refreshed as CVEs are patched out of distro defaults.
Connection Terminal
Use the password forphantom3 that you captured on the previous level, then:ssh [email protected] -p 2223SSH command copied to clipboard!
Flag Submission
Log in to submit flags and track progress.
🩸
ACTIVE RECORDFirst Blood captured by