ContainMe

Room Link: https://tryhackme.com/room/containme1

Initial Scan

Kali

nmap -A $VICTIM

Scan all ports

Kali

TCP/80 - HTTP

Kali

Burp Request

Initial Shell

Kali

Burp Request

Get autocomplete

Victim

Kali

Victim

Mike has a ssh key so I tried logging into the other server with that and it worked.

Victim

Privilege Escalation

Victim

Password was password, just guessed it.

Victim(mysql)

Victim

Victim

Last updated