Posts

Showing posts from April, 2021

TryHackMe - Active Directory Basics - Walkthrough

Image
Introduction Today we're going to be doing a walkthrough for the Active Directory Basics room hosted at https://tryhackme.com/room/ activedirectorybasics . We'll be using one virtual machine (VM), the the deployed Windows 10 client. Task 1 - Introduction Questions I understand what Active Directory is and why it is used. No answer needed Task 2 - Physical Active Directory Questions What database does the AD DS contain? Answer contained within Task description Where is the NTDS.dit stored? Answer contained within Task description What type of machine can be a domain controller? Answer contained within Task description Task 3 - The Forest Questions What is the term for a hierarchy of domains in a network? Answer contained within Task description What is the term for the rules for object creation? Answer contained within Task description What is the term for containers for groups, computers, users, printers, and other OUs? Answer contained within Task description Task 4 - Users + ...

TryHackMe - Upload Vulnerabilities - Walkthrough

Image
Introduction Today we're going to be doing a walkthrough for the Upload Vulnerabilities room hosted at https://tryhackme.com/room/ uploadvulns . For this walkthrough, we'll be using two virtual machines (VMs), the TryHackMe AttackBox VM as our attacking machine, and the deployed vulnerable web host as the the victim machine. Task 1 - Getting Started Questions: Configure your hosts file for the task, as per the instructions above. No answer needed (unofficial) echo “10.10.21.116 overwrite.uploadvulns.thm shell.uploadvulns.thm java.uploadvulns.thm annex.uploadvulns.thm magic.uploadvulns.thm jewel.uploadvulns.thm” | sudo tee -a /etc/hosts Task 2 - Introduction Questions Read and understand the above information. No answer needed Task 3 - General Methodology Questions Read the General Methodology No answer needed Task 4 - Overwriting Existing Files Questions What is the name of the image file which can be overwritten? In Firefox , navigate to the following URL: http://o...