Skip to main content

Training Update v0.86

blank
blank

The 1st of April is and it’s Tuesday my dudes.

It’s time for more THM!

Today we start off on the room Basic Pentesting!

The Aim of today is to try and finish off the last remaining room’s on the ‘Complete Beginner’ pathway which includes Basic Pentesting, Kenobi and Steel Mountain and then we will be done with this old content.

‘Basic Pentesting’

blank

‘Kenobi’

blank

‘Steel Mountain’

blank

Right, on to Basic Pentesting!

blank
blank
blank
blank

http://10.10.100.226/

blank

http://10.10.100.226:8080/

blank
blank
blank

http://10.10.100.226/development/

blank

http://10.10.100.226/development/j.txt

blank

http://10.10.100.226/development/dev.txt

blank

Apache Struts 2.5.12 – https://www.exploit-db.com/exploits/42627 ??

msfconsole didn’t find alot need to try something different.

blank
blank
blank
blank

Users – Jan & Kay

blank

Password – armando

blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank

Kay’s Password – beeswax

blank
blank
blank
blank

Password/Flag – heresareallystrongpasswordthatfollowsthepasswordpolicy$$

blank
blank

Quite a good room, I was over thinking alot and trying to do more than was required whereas I just needed to keep it simple however I was in the right place (most of the time) when It came to getting the right vectors of attack etc.

Next, we move on to the Kenobi module on THM!

blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank
blank

User Flag – d0b0f3f53b6caa532a83915e19224899

blank
blank
blank
blank
blank

Root Flag – 177b3cd8562289f37382721c28381f02

blank
blank
blank
blank
blank
blank
blank

Lastly, we move on to Steel Mountain (Mr Robot) module!

blank

http://10.10.151.191/

blank
blank

http://10.10.151.191:8080/

blank
blank
blank
blank
blank
blank
blank

User Flag – b04763b6fcf51fcd7c13abc7db4fd365

https://raw.githubusercontent.com/PowerShellMafia/PowerSploit/master/Privesc/PowerUp.ps1

blank
blank
blank
blank
blank
blank
blank

This didn’t work so nc

blank
blank
blank

Root Flag – 9af5f314f57607c00fd09803a587db80

blank
blank
blank
blank

Until next time & don’t sleepwalk through life!

Arrivederci