Agent Sudo

Room Link: https://tryhackme.com/room/agentsudoctf

Enumerate

nmap -A $VICTIM

TCP/80 - HTTP

Burp

Change the user-agent to C

From

To

Hash cracking and brute-force

TCP/21 - FTP

Kali

Kali

Kali

Kali

Kali

Cyber Chef

Link: https://gchq.github.io/CyberChef/

Kali

Kali

Victim

Kali

LinPeas

Linpeas found that sudo is vulnerable, so I looked at the version online and found a way to escalate my privilege's.

Kali

Victim

Privilege Escalation

Link: https://www.exploit-db.com/exploits/47502

Victim

Last updated