ContainMe
Room Link: https://tryhackme.com/room/containme1
Initial Scan
Kali
nmap -A $VICTIM
Scan all ports
Kali

TCP/80 - HTTP
Kali



Burp Request

Initial Shell
Kali
Burp Request

Get autocomplete
Victim


Kali
Victim

Mike has a ssh key so I tried logging into the other server with that and it worked.
Victim

Privilege Escalation
Victim

Password was password, just guessed it.
Victim(mysql)

Victim

Victim
Last updated