Looking Glass
Room Link: https://tryhackme.com/room/lookingglass
Initial Scan
Kali
nmap -A $VICTIM



Scan all ports
Same as the first scan, a lot of ssh ports open
Kali
TCP/22 - SSH
Kali

Kali

Kali

Kali

Kali



Kali

Initial Access
Kali
Victim

Victim

Victim
twasBrillig.sh

Kali
Victim

Get autocomplete
Victim(tweedledee)


Victim(tweedledee)

Victim(tweedledum)


Victim(tweedledum)
I can get into alice's folder but I can't actually ls and see files, but I tried looking at files that are usually there and I found her id_rsa key.
Victim(humptydumpty)

Copy key to Kali
Kali

Privilege Escalation
LinPeas
Kali
Victim(alice)

Victim(alice)

Last updated