In this lab, you'll learn how to complete the "SimpleCTF" room on the TryHackMe platform, where we'll deploy a series of tactics and tools to overcome its security challenges. We'll begin with a thorough analysis of the attack surface using Nmap, followed by a thorough search for hidden directories and files using Gobuster. We'll then exploit a SQL injection vulnerability using a custom Python script. We'll then test the security of the SSH service using Hydra to perform brute-force attacks. Finally, we'll escalate privileges using GTFOBins to find binaries with the SUID bit set.
💪CLOCKWORKER SUPPORT: / @clockworkcomputerip
💡PATREON: / simple-ctf-ctf-101924221
📝BLOG: https://clockworkcomputerip.blogspot....
🌐WEB: https://www.clockworkcomputer.com
🖥️TRYHACKME: https://tryhackme.com/r/room/easyctf
🎬 MY PLAYLISTS 🎥
• LINUX 🐧UBUNTU SERVER & DESKTOP🐧
• 📢 WINDOWS SERVER 2022
• 🔐TRYHACKME 🏴☠️ CTF 🐲 CIBERSEGURIDAD & PE...
• 🔐VULNHUB🏴☠️CTF🐲CIBERSEGURIDAD & PENTESTING
https: // • LINUX 🖥️ SAMBA 🔒 ACTIVE DIRECTORY DOMAIN C...
• 🐘 PostgreSQL 🐘
• ⚡POWERSHELL⚡ WINDOWS SERVER 2022
• ☁ AZURE & UBUNTU SERVER 🐧