HackTheBox | Pandora 🥡(Linux | Easy) | Beginners Walkthrough

Опубликовано: 11 Июнь 2026
на канале: SecAura
716
13

Today we root Pandora 🥡(Linux | Easy) machine from HackTheBox! - Like and Subscribe :)
⏱️Timestamps/Steps:
➡️ 00:00 - Intro /link to Gitbook
https://secaura.gitbook.io/hackthebox/
➡️ 00:20 - Port scan
➡️ 01:50 - Web app enum
➡️ 03:50 - UDP enum
➡️ 05:00 - SNMP enum
➡️ 10:00 - Dumping creds via SNMP
➡️ 11:00 - SSH as Daniel with SNMP creds
➡️ 11:30 - Local system enum as daniel
➡️ 12:45 - Finding internal web server
➡️ 18:00 - Analysing web app and getting SQL injection
➡️ 22:30 - SQL injection to RCE
➡️ 26:00 - RCE to Reverse shell
➡️ 28:30 - Enumeration as Matt, finding a SUID binary
➡️ 42:20 - Explaining how binary lookups/environment varibles work
➡️ 47:00 - Demo of tar path interception
➡️ 50:20 - tar to RCE
➡️ 50:50 - Root :)
➡️ 54:30 - Outro

⭐️My gitbook:
🔗https://secaura.gitbook.io/hackthebox/

For more Cyber security/hacking/pentesting beginner based content, check out the rest of my channel covering:
⭐️Web application security:
🔗Web Fundamentals for Cyber Security Series https://youtube.com/playlist?list=PLw...
🔗HackTheBox | Web/OSWE    • HackTheBox | Web/OSWE  
🔗OSWE "Build and Break it" Guide (Offensive Security Web Expert)    • OSWE "Build and Break it" Guide (Offensive...  
SQL injection, Server Side template Injection, XSS, remote code execution/Injection(RCE) XXE(XML Enternal Entity Injection) etc.

⭐️Linux Hacking + Priv esc -    • HackTheBox | Linux  
⭐️Windows Hacking + Priv esc-    • HackTheBox | Windows  
⭐️Active Directory Hacking -    • HackTheBox | ActiveDirectory  
⭐️GitHub: https://github.com/SecAuraYT/HackTheB...
⭐️Link to box:
🔗 https://app.hackthebox.com/machines/423