One Piece

Room Link: https://tryhackme.com/r/room/ctfonepiece65arrow-up-right

Scans

Initial scan

Kali

nmap -A $VICTIM

Longer scan

Kali

TCP/21 - FTP

Kali

Kali(ftp)

Kali

Kali

1st Road Poneglyph

TCP/80 - HTTP

Kali

Kali

CSS

Kali

Kali

Just deleted the No from the cookie

2nd Road Poneglyph

Kali

Kali

Kali

3rd Road Poneglyph

4th Road Poneglyph

TCP/21 - FTP

Kali

Lateral Movement - 7uffy_vs_T3@ch

Victim

Exploit: https://gtfobins.github.io/gtfobins/python/arrow-up-right

Victim

Victim(python)

Victim(python)

Kali

Privilege Escalation

Victim

I can't write to the file or read it but I could append to it

Kali

Victim

Last updated