Bookstore

Room Link: https://tryhackme.com/room/bookstoreoc

Initial Scan

Kali

nmap -A $VICTIM

Scan all ports

Kali

TCP/80 - HTTP

Kali

TCP/5000 - HTTP

Kali

console is locked by a pin, we will have to come back to it.

Kali

Initial Shell

We bow have the pin for console 123-321-135

Kali

Console

Get autocomplete

Privilege Escalation

Netcat

Kali(receiving)

Victim(sending)

Ghidra

We find how the magic number is made.

Kali

We can just quickly use python to solve the answer

Kali

Victim

Last updated