Kioptrix: Level 1.1 (#2)

  • Name: Kioptrix: Level 1.1 (#2)
  • Date release: 11 Feb 2011

Please remember that VulnHub is a free community resource so we are unable to check the machines that are provided to us. Before you download, please read our FAQs sections dealing with the dangers of running unknown VMs and our suggestions for "protecting yourself and your network. If you understand the risks, please download!


(Size: 404 MB)


(Size: 406 MB)

Kioptrix VM Image Challenges:

This Kioptrix VM Image are easy challenges. The object of the game is to acquire root access via any means possible (except actually hacking the VM server or player). The purpose of these games are to learn the basic tools and techniques in vulnerability assessment and exploitation. There are more ways then one to successfully complete the challenges.



This is the second release of #2. First release had a bug in it with the web application

2012/Feb/09: Re-releases

2011/Feb/11: Original Release


  • Original MD5: 987FFB98117BDEB6CA0AAC6EA22E755D
  • Original SHA1: 7A0EA0F414DFA0E05B7DF504F21B325C6D3CC53B
  • Re-release MD5: 987FFB98117BDEB6CA0AAC6EA22E755D
  • Re-release SHA1: 7A0EA0F414DFA0E05B7DF504F21B325C6D3CC53B

  • Filename: Kioptrix_Level_2-original.rar
  • File size: 404 MB
  • MD5: 1CCC14189E530F9231ACF62E6FC8AF2D
  • SHA1: 8E767C68D3884DB13F84A607E5366434E3FA0858

  • Filename: Kioptrix_Level_2-update.rar
  • File size: 406 MB
  • MD5: 987FFB98117BDEB6CA0AAC6EA22E755D
  • SHA1: 7A0EA0F414DFA0E05B7DF504F21B325C6D3CC53B

  • Format: Virtual Machine (VMware)
  • Operating System: Linux

  • DHCP service: Enabled
  • IP address: Automatically assign

  • Apache
  • CUPS
  • MySQL
  • OpenSSH
  • PHP
  • RPC

Text flag

  • Local Vulnerability
  • Remote Vulnerability
  • Web Application

  • OS Command Injection
  • Privilege Escalation
  • SQL Injection