Writeups

Write ups and Walkthroughs about vulnerable machines

View on GitHub

Brooklyn Nine Nine

Back to Tryhackme page


Enumeration

Started nmap service scan on given ip

nmap output

3 services found: ftp , ssh and http


http

opened website

http output

Hint was given about stenography in html content! Also tried to dirb to find subdirectories but nothing special found.


ftp

anonymous login to ftp server.

ftp output

3 usernames were revealed. Jake , Amy and Holt. Jake has weak password and holt will be angry suggests holt has important position.


ssh

Searched about how to bruteforce ssh password ssh bruteforce using hydra article

ssh password brute force


flag finding

By login into ssh , found user flag

user flag

Didn’t understood how to find root access go googled about room Room walkthrough

Got it how to do privilege escalation with cheatsheet

root flag


Done with my first machine!