Enumeration Nmap result Check FTP, SMB, and web server are open. FTP Since it allows anonymous FTP login, let’s get into the service. I enumerated directories and found the user.txt from /Users/Public/Desktop. Also, I found other files as well. I don’t know what PRTG is. But I will get these files for later use. HTTP … Read More “Hack the box – machine – Netmon (CVE-2018-9276)” »
Category: Machines
Blue is one of the super easy machines. Enumeration Let’s nmap the target machine. Ok, the nmap result told me some useful information. First, we can see the target machine is open for SMB service. Second, the computer’s name is haris-PC. So let’s remember the computer’s name. As a next step, I googled to find … Read More “Hack the box – machine – Blue” »
Enumeration Nmap the target machine. web server on port 8080. Apache Tomcat home page with the version info. I found buttons for the manager app and host manager. I tried to log in, but when I failed, the page with credentials was displayed. ID: tomcat PW: s3cret Managed to log in as Jerry! Also, I … Read More “Hack the box – Jerry simple write-up” »
I’ve pwned Keeper challenge. I will share how I solved the challenge. To sum up, before writing about the solution, I felt the user flag was easy to find but the privilege escalation was a bit tricky. OK, let’s start it. Enumerate First of all, I found ports 80 and 22 are open, So I … Read More “CVE-2023-32784 Hack the box – keeper writeup” »
In this post, I will walk through Analytics machine in Hack the box. Information gathering First of all, when nmap the machine, you can find 2 ports are open which are 22 and 80. So, let’s check the web page first. Before check the web page, you need to add the domain to /etc/hosts file. … Read More “Hack The Box – Analytics write-up [Easy]” »
OK, let’s solve the codify machine from Hack the box this time. It is officially marked as easy, but personally, I felt it was not so easy. Enumeration First, let’s see the result of nmap. It has web servers called Codify on port 80 and 3000. Before looking into the web page, let’s add it … Read More “Hack the box : Codify[easy] write up” »