Posts

Exploiting the Gaming Server on TryHackMe

Image
Summary This machine is quite simple that can be exploited by beginners with little effort. However, the attacker would have to look within the victim machine and identify the red flags. The method of privilege escalation in this machine is also out of the ordinary, and you might have to look this up on google on how to exploit it. However, turns out that this skill is very useful and would help you in your pentesting career. In order to exploit this machine, a user would have to know how to: • Be able to do a recon of the web directories and look for information that will be useful to exploit the machine. • Identify and crack SSH Private Keys. • Research upon exploits available publicly and use them to escalate your privileges Link to the machine: https://tryhackme.com/room/gamingserver Recon In order to begin exploiting this machine we do a basic nmap scan. I've used nmapautomator for this task (and used only the most relevant results to add to this writeup), however feel free to...