Bookstore
Room Link: https://tryhackme.com/room/bookstoreoc
Initial Scan
Kali
nmap -A $VICTIM
Scan all ports
Kali

TCP/80 - HTTP
Kali

TCP/5000 - HTTP
Kali

console is locked by a pin, we will have to come back to it.



Kali
Initial Shell
We bow have the pin for console 123-321-135


Kali
Console

Get autocomplete
Privilege Escalation


Netcat
Kali(receiving)
Victim(sending)
Ghidra
We find how the magic number is made.
Kali

We can just quickly use python to solve the answer
Kali

Victim

Last updated