0
0

Delete article

Deleted articles cannot be recovered.

Draft of this article would be also deleted.

Are you sure you want to delete this article?

【TryHackMe】Getting Started:Walkthrough

Posted at

概要

TryHackMe「Getting Started」のWalkthroughです。

Task1

Q1.What is the name of the hidden admin page?

Hint.Don't forget to include the "/" character in your answer.

nmapでポートスキャンを実行します。

$ nmap -sC -A -T4 -sV 10.10.88.136        
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-06-07 01:50 EDT
Nmap scan report for 10.10.88.136
Host is up (0.24s latency).
Not shown: 996 closed tcp ports (conn-refused)
PORT     STATE    SERVICE        VERSION
22/tcp   open     ssh            OpenSSH 8.2p1 Ubuntu 4ubuntu0.1 (Ubuntu Linux; protocol 2.0)
| ssh-hostkey: 
|   3072 42:6c:06:53:f1:c0:41:8d:50:81:c5:3b:46:1e:c4:22 (RSA)
|   256 87:0b:64:ae:2c:a8:0f:ae:94:c3:0e:a1:8a:a3:1d:14 (ECDSA)
|_  256 d3:e5:aa:a2:43:90:3d:95:43:24:46:f4:aa:58:33:a1 (ED25519)
80/tcp   open     http           Node.js (Express middleware)
|_http-title: BFFs
3000/tcp open     http           Node.js (Express middleware)
|_http-title: BFFs
3017/tcp filtered event_listener
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 48.44 seconds

Webページを開きます。

web home.png

開発者ツールでソースコードを見るとコメントアウトでパスを発見しました。

<!--  don't forget to remove admin page on /test-admin -->

アクセスするとテスト用の管理者ページが表示されました。

test admin form.png

A./test-admin

Task2

Q1.What is the username and password in the form username:password?

Username: admin,Password: adminでログインすることができました。

admin portal.png

A.admin:admin

Q2.How many user are signed up to the application?

ポータル画面の右側にサインアップしているユーザーが表示されています。

sign up user.png

A.3

0
0
0

Register as a new user and use Qiita more conveniently

  1. You get articles that match your needs
  2. You can efficiently read back useful information
  3. You can use dark theme
What you can do with signing up
0
0

Delete article

Deleted articles cannot be recovered.

Draft of this article would be also deleted.

Are you sure you want to delete this article?