Knowledge Hub

OSINT and Recon Labs

Available entries

  • Cyber Kill Chain
    --- The Cyber Kill Chain framework is designed for identification and prevention of the network intrusions. You will learn what the...
  • Deja Vu
    --- Exploit a recent code injection vulnerability to take over a website full of cute dog pictures! ---...
  • HipFlask
    ``` Hip Flask is a beginner to intermediate level walkthrough. It aims to provide an in-depth analysis of the thought-processes involved...
  • Passive Reconnaissance
    TryHackMe room
  • Python for Pentesters
    --- Python is probably the most widely used and most convenient scripting language in cybersecurity. This room covers real examples of...
  • Subdomain Enumeration
    --- Learn the various ways of discovering subdomains to expand your attack surface of a target. --- Subdomain enumeration is the process...
  • The Hacker Methodology
    TryHackMe room
  • Advent of Cyber 2022
    --- Get started with Cyber Security in 24 Days - learn the basics by doing a new, beginner-friendly security challenge every day leading...
  • Badbyte
    --- Infiltrate BadByte and help us to take over root. --- ### Reconnaissance ![](https://i.imgur.com/gZqOO8D.png) Nmap is a free open...
  • Gobuster: The Basics
    TryHackMe room
  • Grep
    ---- A challenge that tests your reconnaissance and OSINT skills. ---- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/645b19f...
  • hackerNote
    ---- A custom webapp, introducing username enumeration, custom wordlists and a basic privilege escalation exploit. ---...
  • Incident handling with Splunk
    --- Learn to use Splunk for incident handling through interactive scenarios. --- ### Introduction: Incident Handling This room covers an...
  • Intro to Cyber Threat Intel
    --- Introducing cyber threat intelligence and related topics, such as relevant standards and frameworks. ---...
  • Living Off the Land
    --- Learn the essential concept of "Living Off the Land" in Red Team engagements. ---...
  • NahamStore
    ----- In this room you will learn the basics of bug bounty hunting and web application hacking ---...
  • NetworkMiner
    --- Learn how to use NetworkMiner to analyse recorded traffic files and practice network forensics activities. --- ### Room Introduction...
  • Phishing1
    ``` ┌──(kali㉿kali)-[~/Downloads/PHishing] └─$ wget http://0.0.0.0:8000/Email1.eml --2022-08-02 17:10:23-- http://0.0.0.0:8000/Email1.eml...
  • Sea Surfer
    ---- Ride the Wave! ---- ![](https://i.imgur.com/yvuFbNQ.jpeg) ![](https://tryhackme-images.s3.amazonaws.com/room-icons/137a8e8a8cdc4ba57...
  • The Lay of the Land
    --- Learn about and get hands-on with common technologies and security products used in corporate environments; both host and...
  • Active Reconnaissance
    TryHackMe room
  • Appointment
    ``` blob:https://app.hackthebox.com/5be081bc-9048-421a-a11f-090c3e6d5944 ┌──(kali㉿kali)-[~] └─$ ping 10.129.221.123 PING 10.129.221.123...
  • Appointment
    ``` blob:https://app.hackthebox.com/5be081bc-9048-421a-a11f-090c3e6d5944 ┌──(kali㉿kali)-[~] └─$ ping 10.129.221.123 PING 10.129.221.123...
  • Aurora EDR
    TryHackMe room
  • Avengers Blog
    --- Learn to hack into Tony Stark's machine! You will enumerate the machine, bypass a login portal via SQL injection and gain root...
  • AWS S3 - Attack and Defense
    TryHackMe room
  • Brim
    --- Learn and practice log investigation, pcap analysis and threat hunting with Brim. ---...
  • CyberCrafted
    ---- Pwn this pay-to-win Minecraft server! --- ![](https://m4dr1nch.github.io/writeups/cybercrafted/assets/img/cc-banner.png)...
  • Diamond Model
    --- Learn about the four core features of the Diamond Model of Intrusion Analysis: adversary, infrastructure, capability, and victim....
  • Empline
    ---- Are you good enough to apply for this job? ---- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/189112ffef41c0fa813d7d5b...
  • Erit Securus I
    --- Learn to exploit the BoltCMS software by researching exploit-db. --- ### Reconnaissance ``` ┌──(kali㉿kali)-[~] └─$ sudo nmap -sC -sV...
  • Gatekeeper
    --- Can you get past the gate and through the fire? --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/8979e58d84147f072077...
  • Generic University
    ---- API and Web testing room --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/6a9730b73744a7e6af162994e74b2191.jpeg) ###...
  • Holo
    --- Holo is an Active Directory (AD) and Web-App attack lab that aims to teach core web attack vectors and more advanced AD attack...
  • Hunt Me I: Payment Collectors
    TryHackMe room
  • Intro to Threat Emulation
    ---- A look into threat emulation practices as a means of cyber security assessment. ----...
  • Iron Corp
    ---- Can you get access to Iron Corp's system? ---- ![](https://i.imgur.com/jemtUtJ.jpg)...
  • Lumberjack Turtle
    ---- No logs, no crime... so says the lumberjack. ---- ![](https://www.honeytokens.io/img/LumberjackTurtle.png)...
  • Metasploit
    --- Learn to use Metasploit, a tool to probe and exploit vulnerabilities on networks and servers. ---...
  • Network Security
    --- Learn about network security, understand attack methodology, and practice hacking into a target server. --- ### Introduction A...
  • Nmap Post Port Scans
    --- Learn how to leverage Nmap for service and OS detection, use Nmap Scripting Engine (NSE), and save the results. ---...
  • OWASP API Security Top 10 - 2
    --- Learn the basic concepts for secure API development (Part 2). --- ![](https://i.imgur.com/sP6d0iZ.png)...
  • RazorBlack
    ``` RazorBlack These guys call themselves hackers. Can you show them who's the boss ?? Throw something like a rock on the big green...
  • Red Team Recon
    TryHackMe room
  • Red Team Threat Intel
    --- Apply threat intelligence to red team engagements and adversary emulation. ---...
  • Shoppy
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.180 PING...
  • Shoppy
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.180 PING...
  • SSRF
    --- Learn how to exploit Server-Side Request Forgery (SSRF) vulnerabilities, allowing you to access internal server resources. --- ###...
  • TakeOver
    --- This challenge revolves around subdomain enumeration. --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/e11be3e91db093a...
  • The Server From Hell
    ---- Face a server that feels as if it was configured and deployed by Satan himself. Can you escalate to root? ----...
  • Tony the Tiger
    --- Learn how to use a Java Serialisation attack in this boot-to-root --- ### Deploy! Start Machine Firstly, ensure you are connected to...
  • Unified Kill Chain
    --- The Unified Kill Chain is a framework which establishes the phases of an attack, and a means of identifying and mitigating risk to...
  • Upload Vulnerabilities
    --- Tutorial room exploring some basic file-upload vulnerabilities in websites --- ### Getting Started First up, let's deploy the...
  • VulnNet: Endgame
    ---- Hack your way into this simulated vulnerable infrastructure. No puzzles. Enumeration is the key. ----...
  • Web Enumeration
    --- Learn the methodology of enumerating websites by using tools such as Gobuster, Nikto and WPScan ---...
  • 0day
    --- Exploit Ubuntu, like a Turtle in a Hurricane --- Flags Start Machine Root my secure Website, take a step into the history of...
  • 25 Days of Cyber Security
    TryHackMe room
  • Active Directory Basics
    --- Learn the basics of Active Directory and how it is used in the real world today --- ### Introduction Active Directory is the...
  • AD Certificate Templates
    ---- Walkthrough on the exploitation of misconfigured AD certificate templates ---...
  • AD: Authenticated Enumeration
    TryHackMe room
  • AD: Basic Enumeration
    TryHackMe room
  • Advent of Cyber 1 [2019]
    TryHackMe room
  • Advent of Cyber 2 [2020]
    TryHackMe room
  • Advent of Cyber 3 (2021)
    TryHackMe room
  • Alfred
    --- Exploit Jenkins to gain an initial shell, then escalate your privileges by exploiting Windows authentication tokens. ---...
  • All in One
    --- This is a fun box where you will get to exploit the system in several ways. Few intended and unintended paths to getting user and...
  • AllSignsPoint2Pwnage
    --- A room that contains a rushed Windows based Digital Sign system. Can you breach it? ---...
  • Amazon EC2 - Attack & Defense
    TryHackMe room
  • Annie
    ---- Remote access comes in different flavors. ---- ### Task 1 Recon - Research - Exploit...
  • Anonymous
    --- Not the hacking group --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/876a5185c429c9703e625cb48c39637b.png)...
  • Archetype
    ``` blob:https://app.hackthebox.com/4f38037f-6ebb-44b8-9c8c-992a446560fa ┌──(kali㉿kali)-[~] └─$ rustscan -a 10.129.232.196 --ulimit 5500...
  • Archetype
    ``` blob:https://app.hackthebox.com/4f38037f-6ebb-44b8-9c8c-992a446560fa ┌──(kali㉿kali)-[~] └─$ rustscan -a 10.129.232.196 --ulimit 5500...
  • Atlas
    --- Hack the Atlas server in this beginner room covering Windows attack methodology! ---...
  • Attacking Kerberos
    --- Learn how to abuse the Kerberos Ticket Granting Service inside of a Windows Domain Controller --- This room will cover all of the...
  • Authentication Bypass
    --- Learn how to defeat logins and other authentication mechanisms to allow you access to unpermitted areas. --- In this room, we will...
  • Autopsy
    --- Learn how to use Autopsy to investigate artifacts from a disk image. Use your knowledge to investigate an employee who is being...
  • AV Evasion: Shellcode
    --- Learn shellcode encoding, packing, binders, and crypters. --- ### Introduction In this room, we'll explore how to build and deliver...
  • AWS IAM Enumeration
    TryHackMe room
  • AWS IAM Initial Access
    TryHackMe room
  • Basic Dynamic Analysis
    TryHackMe room
  • Binex
    --- Escalate your privileges by exploiting vulnerable binaries. --- ![](https://i.imgur.com/aohxmGa.jpg)...
  • Blog
    --- Billy Joel made a Wordpress blog! --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/618f1cc93596ff4082250bce9d869767.p...
  • Boiler CTF
    --- Intermediate level CTF --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/4a800c6513239dbdfaf74ce869a88add.jpeg) ###...
  • Boogeyman 1
    ---- A new threat actor emerges from the wild using the name Boogeyman. Are you afraid of the Boogeyman? ---- ### [Introduction] New...
  • Bookstore
    ---- A Beginner level box with basic web enumeration and REST API Fuzzing. ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-ico...
  • Brainstorm
    --- Reverse engineer a chat program and write a script to exploit a Windows machine. --- ![](https://i.imgur.com/rqwhSuo.png) ### Deploy...
  • CALDERA
    TryHackMe room
  • CMesS
    ---- Can you root this Gila CMS box? --- ![](https://i.imgur.com/qnV5dJQ.png) ### Flags Start Machine Please add `MACHINE_IP cmess.thm`...
  • CMSpit
    ---- This is a machine that allows you to practise web app hacking and privilege escalation using recent vulnerabilities. ----...
  • Common Linux Privesc
    --- A room explaining common Linux privilege escalation --- ### Understanding Privesc What does "privilege escalation" mean? At it's...
  • Content Discovery
    TryHackMe room
  • Content Security Policy
    --- In this room you'll learn what CSP is, what it's used for and how to recognize vulnerabilities in a CSP header. --- ### Introduction...
  • Cooctus Stories
    ---- This room is about the Cooctus Clan ---- ![](https://pbs.twimg.com/profile_banners/1696074763/1605441583/1500x500)...
  • Credentials Harvesting
    --- Apply current authentication models employed in modern environments to a red team approach. ---...
  • Crocodile
    ``` blob:https://app.hackthebox.com/51f9dfe3-9c91-469a-8453-feab80baf3c3 ┌──(kali㉿kali)-[~] └─$ ping 10.129.165.101 PING 10.129.165.101...
  • Crocodile
    ``` blob:https://app.hackthebox.com/51f9dfe3-9c91-469a-8453-feab80baf3c3 ┌──(kali㉿kali)-[~] └─$ ping 10.129.165.101 PING 10.129.165.101...
  • Crylo
    ---- Learn about the CryptoJS library and JavaScript-based client-side encryption and decryption. ----...
  • Data Exfiltration
    --- An introduction to Data Exfiltration and Tunneling techniques over various protocols. ---...
  • Debug
    ---- Linux Machine CTF! You'll learn about enumeration, finding hidden password files and how to exploit php deserialization! ----...
  • Different CTF
    ---- interesting room, you can shoot the sun ---- ![](https://i.imgur.com/KoKRoAE.png)...
  • Digital Forensics Case B4DM755
    ---- Acquire the critical skills of evidence preservation, disk imaging, and artefact analysis for use in court. ----...
  • DNS
    ``` If you were on Windows, what command could you use to query a txt record for 'youtube.com'? nslookup -type=txt youtube.com If you...
  • DNS in detail
    TryHackMe room
  • DX1: Liberty Island
    --- Can you help the NSF get a foothold in UNATCO's system? --- ![](https://i.imgur.com/6mPK3PT.png)...
  • En-pass
    ---- Get what you can't. ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/fcfd772a585042a171dd2855cb3bb2cb.jpeg) ###...
  • Enumeration
    --- This room is an introduction to enumeration when approaching an unknown corporate environment. ---...
  • Enumeration & Brute Force
    TryHackMe room
  • Eviction
    TryHackMe room
  • EXT Analysis
    TryHackMe room
  • Flatline
    --- How low are your morals? --- ![](https://cdn.pixabay.com/photo/2020/04/25/11/12/electrocardiogram-5090337_960_720.jpg) What are the...
  • GoldenEye
    --- Bond, James Bond. A guided CTF. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/77b55a2ac1ac79ca534d6fc003c042b3.png)...
  • Hacker vs. Hacker
    --- Someone has compromised this server already! Can you get in and evade their countermeasures? ---...
  • Hacking with PowerShell
    --- Learn the basics of PowerShell and PowerShell Scripting --- ![](https://i.imgur.com/xFIv4Ve.png) ### Objectives...
  • harder
    ---- Real pentest findings combined ---- ![](https://assets.tryhackme.com/img/banners/default_tryhackme.png)...
  • Hip Flask
    TryHackMe room
  • IDE
    --- An easy box to polish your enumeration skills! --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/3ce8e9c4d1da5eefef690...
  • Inferno
    ---- eal Life machine + CTF. The machine is designed to be real-life (maybe not?) and is perfect for newbies starting out in penetration...
  • Insekube
    --- Exploiting Kubernetes by leveraging a Grafana LFI vulnerability --- ![](https://i.imgur.com/aOga4CU.png) ### Introduction Start...
  • Internal
    --- Penetration Testing Challenge --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/222b3e855f88a482c1267748f76f90e0.jpeg)...
  • Intro to ISAC
    --- Learn how to utilize Information Sharing and Analysis Centers to gather threat intelligence and collect IOCs. ---...
  • Introductory Networking
    TryHackMe room
  • Intrusion Detection
    ---- Learn cyber evasion techniques and put them to the test against two IDS --- ![](https://ctfresources.s3.eu-west-2.amazonaws.com/bann...
  • IR Difficulties and Challenges
    TryHackMe room
  • IR Timeline Analysis
    TryHackMe room
  • IronShade
    TryHackMe room
  • Jeff
    ---- Can you hack Jeff's web server? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/f2d2f43d2fc1c4369f40370874e2df3e.png)...
  • JPGChat
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.248.160 --ulimit 5000 -b 65535 -- -A .----. .-. .-. .----..---. .----. .---. .--....
  • K8s Runtime Security
    TryHackMe room
  • KAPE
    --- An introduction to Kroll Artifact Parser and Extractor (KAPE) for collecting and processing forensic artifacts ---...
  • Kubernetes for Everyone
    --- A Kubernetes hacking challenge for DevOps/SRE enthusiasts. --- ![](https://cncf-branding.netlify.app/img/projects/kubernetes/horizont...
  • L2 MAC Flooding & ARP Spoofing
    --- Learn how to use MAC Flooding to sniff traffic and ARP Cache Poisoning to manipulate network traffic as a MITM. ---...
  • Ledger
    TryHackMe room
  • Library
    --- boot2root machine for FIT and bsides guatemala CTF --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/484c37bcb5b90fac35...
  • Linux File System Analysis
    TryHackMe room
  • Linux: Local Enumeration
    --- Learn to efficiently enumerate a linux machine and identify possible weaknesses ---...
  • Lockdown
    ---- Stay at 127.0.0.1. Wear a 255.255.255.0. ---- ![](https://i.imgur.com/yGq1mtN.jpg)...
  • Looking_Glass
    ``` Enumerating SSH When connecting to one of the ports (in this case trying one of the higher ones), the SSH server responds with...
  • Lunizz CTF
    ![](https://cdn.pixabay.com/photo/2016/11/08/05/20/adventure-1807524_960_720.jpg)...
  • Madeye's Castle
    ---- A boot2root box that is modified from a box used in CuCTF by the team at Runcode.ninja ----...
  • Masterminds
    ---- Practice analyzing malicious traffic using Brim. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/03fe1b480ba9d32b7065f...
  • Metamorphosis
    ---- Part of Incognito CTF ---- ![](https://0cirius0.github.io/writeup/assets/img/metamorphosis/main.jpg) ### Task 1 Challenge Start...
  • MISP
    --- Walkthrough on the use of MISP as a Threat Sharing Platform --- ![](https://assets.tryhackme.com/additional/jrsecanalyst/jrsec-room-b...
  • Mnemonic
    ---- I hope you have fun. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/497ceb5feaeff50ff8b1e6c119973591.png) ### Task 1...
  • Napping
    --- Even Admins can fall asleep on the job --- ![](https://i.postimg.cc/zXXYKx02/Webp-net-resizeimage.png)...
  • Network Services
    --- Learn about, then enumerate and exploit a variety of network services and misconfigurations. --- ### Understanding SMB **What is...
  • Network Services 2
    --- Enumerating and Exploiting More Common Network Services & Misconfigurations --- ### Understanding NFS What is NFS? NFS stands for...
  • Opacity
    ---- Opacity is a Boot2Root made for pentesters and cybersecurity enthusiasts. ----...
  • Osquery: The Basics
    --- Let's cover the basics of Osquery. --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/5e8dd9a4a45e18443162feab/room-conte...
  • OWASP Top 10 - 2021
    ---- Learn about and exploit each of the OWASP Top 10 vulnerabilities; the 10 most critical web security risks. ---...
  • Packets & Frames
    --- Understand how data is divided into smaller pieces and transmitted across a network to another device --- ### What are Packets and...
  • ParrotPost: Phishing Analysis
    ---- Reveal how attackers can craft client-side credential-stealing webpages that evade detection by security tools. ----...
  • PC
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.214 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • PC
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.214 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • Phishing
    --- Learn what phishing is and why it's important to a red team engagement. You will set up phishing infrastructure, write a convincing...
  • Phishing Analysis Fundamentals
    TryHackMe room
  • Phishing Emails 3
    --- Learn the tools used to aid an analyst to investigate suspicious emails. --- ![](https://assets.tryhackme.com/additional/phishing1/ph...
  • Phishing Emails 5
    --- Use the knowledge attained to analyze a malicious email. --- ![](https://assets.tryhackme.com/additional/phishing1/phish-room-banner-...
  • Plotted-TMS
    --- Everything here is plotted! --- ![](https://wiki.thehacker.nz/wp-content/uploads/2021/10/pe_banner.png)...
  • PowerShell for Pentesters
    --- This room covers the principle uses of PowerShell in Penetration Tests. Interacting with files, scanning the network and system...
  • pyLon
    ---- Can you penetrate the defenses and become root? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/715d827a2967ada237e63a...
  • Red
    ---- A classic battle for the ages. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/02262ebcc025ce939f26d08836df0fca.png)...
  • Redline
    --- Learn how to use Redline to perform memory analysis and to scan for IOCs on an endpoint. ---...
  • Relevant
    --- Penetration Testing Challenge --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/10524728b2b462e8d164efe4e67ed087.jpeg)...
  • Responder
    ``` blob:https://app.hackthebox.com/207ef7e2-d519-4814-8616-c6679d11f80a ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.89.108 PING...
  • Responder
    ``` blob:https://app.hackthebox.com/207ef7e2-d519-4814-8616-c6679d11f80a ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.89.108 PING...
  • Revenge
    ---- You've been hired by Billy Joel to get revenge on Ducky Inc...the company that fired him. Can you break into the server and...
  • Road
    --- Inspired by a real-world pentesting engagement --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/86d73ce54a3f392bd56336da0...
  • Set
    --- Once again you find yourself on the internal network of the Windcorp Corporation. --- ### Set ![](https://i.imgur.com/UySYgtM.png)...
  • Shodan.io
    TryHackMe room
  • Skynet
    --- A vulnerable Terminator themed Linux machine. --- ![|333](https://i.imgur.com/SNHDHoh.png) Hasta la vista, baby. Are you able to...
  • Slingshot
    TryHackMe room
  • Snyk Open Source
    TryHackMe room
  • Splunk 2
    --- Part of the Blue Primer series. This room is based on version 2 of the Boss of the SOC (BOTS) competition by Splunk. ---...
  • SQLMAP
    --- Learn about and use Sqlmap to exploit the web application --- ![](https://i.imgur.com/2O70ow2.png) Introduction...
  • Steel Mountain
    --- Hack into a Mr. Robot themed Windows machine. Use metasploit for initial access, utilise powershell for Windows privilege escalation...
  • Sustah
    ---- Play a game to gain access to a vulnerable CMS. Can you beat the odds? ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-ic...
  • Sweettooth Inc.
    ---- Sweettooth Inc. needs your help to find out how secure their system is! ----...
  • Sysinternals
    --- Learn to use the Sysinternals tools to analyze Window systems or applications. ---...
  • Takedown
    ---- We have reason to believe a corporate webserver has been compromised by RISOTTO GROUP. Cyber interdiction is authorized for this...
  • Tcpdump: The Basics
    TryHackMe room
  • Temple
    --- Can you gain access to the temple? --- ![](https://assets.tryhackme.com/room-banners/temple.jpg)...
  • Tempus Fugit Durius
    --- The latin word Durius means "harder" --- ![222](https://i.imgur.com/M4EePuT.jpg)...
  • That's The Ticket
    ---- IT Support are going to have a bad day, can you get into the admin account? ----...
  • The Cod Caper
    --- A guided room taking you through infiltrating and exploiting a Linux system. --- ### Intro Hello there my name is Pingu. I've come...
  • The Docker Rodeo
    --- Learn a wide variety of Docker vulnerabilities in this guided showcase. --- ![777](https://assets.tryhackme.com/room-banners/DockerPr...
  • Threat Hunting: Pivoting
    TryHackMe room
  • Traffic Analysis Essentials
    --- Learn Network Security and Traffic Analysis foundations and take a step into probing network anomalies. ---...
  • Undiscovered
    ---- Discovery consists not in seeking new landscapes, but in having new eyes.. ----...
  • VulnNet: Roasted
    --- VulnNet Entertainment quickly deployed another management instance on their very broad network... --- ### VulnNet: Roasted Start...
  • Warzone 1
    ---- You received an IDS/IPS alert. Time to triage the alert to determine if its a true positive. ----...
  • Web Application Basics
    TryHackMe room
  • WebOSINT
    TryHackMe room
  • Wekor
    ---- CTF challenge involving Sqli , WordPress , vhost enumeration and recognizing internal services ;) ---...
  • Windows Forensics 1
    --- Introduction to Windows Registry Forensics --- ![](https://assets.tryhackme.com/additional/forensics1/forensics1-room-banner.png)...
  • Windows Forensics 2
    --- Learn about common Windows file systems and forensic artifacts in the file systems. ---...
  • Windows Local Persistence
    --- Learn the most common persistence techniques used on Windows machines. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/1...
  • WordPress-Cve2021
    ``` Wordpress: CVE-2021-29447 Vulnerability allow a authenticated user whith low privilages upload a malicious WAV file that could lead...
  • Wreath
    ---- Learn how to pivot through a network by compromising a public facing web machine and tunnelling your traffic to access other...
  • Year of the Fox
    ---- Don't underestimate the sly old fox... --- ![](https://i.imgur.com/JOBQtGF.png) ### Hack the machine and obtain the flags Start...
  • Year of the Pig
    ---- Some pigs do fly... ---- ![](https://i.imgur.com/JiwG6Si.png) ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/dda3408fbc...
  • You're in a cave
    ---- A room with some ctf elements inspired in text based RPGs ---- ![](https://i.postimg.cc/dVKytjXS/Inacave-Banner.png)...
  • Zeek Exercises
    --- Put your Zeek skills into practice and analyse network traffic. --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/613113...