Knowledge Hub

Web Exploitation Labs

Available entries

  • Advent of Cyber 3 (2021)
    TryHackMe room
  • NahamStore
    ----- In this room you will learn the basics of bug bounty hunting and web application hacking ---...
  • Tech_Supp0rt: 1
    --- Hack into the scammer's under-development website to foil their plans. --- ![](https://lh3.googleusercontent.com/fife/AAWUweXoOnrHJUw...
  • Upload Vulnerabilities
    --- Tutorial room exploring some basic file-upload vulnerabilities in websites --- ### Getting Started First up, let's deploy the...
  • Atlassian, CVE-2022-26134
    --- An interactive lab showcasing the Confluence Server and Data Center un-authenticated RCE vulnerability. ---...
  • Burp Suite: Other Modules
    --- Take a dive into some of Burp Suite's lesser known modules --- ### Outline Alongside the well-known Repeater and Intruder rooms,...
  • CTF collection Vol.2
    --- Sharpening up your CTF skill with the collection. The second volume is about web-based CTF. --- *Note: All the challenges flag are...
  • File Inclusion
    --- This room introduces file inclusion vulnerabilities, including Local File Inclusion (LFI), Remote File Inclusion (RFI), and...
  • Game Zone
    --- Learn to hack into this machine. Understand how to use SQLMap, crack some passwords, reveal services using a reverse SSH tunnel and...
  • Holo
    --- Holo is an Active Directory (AD) and Web-App attack lab that aims to teach core web attack vectors and more advanced AD attack...
  • OWASP Broken Access Control
    ---- Exploit Broken Access Control: Number 1 of the Top 10 web security risks. ----...
  • PC
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.214 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • PC
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.214 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • Responder
    ``` blob:https://app.hackthebox.com/207ef7e2-d519-4814-8616-c6679d11f80a ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.89.108 PING...
  • Responder
    ``` blob:https://app.hackthebox.com/207ef7e2-d519-4814-8616-c6679d11f80a ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.89.108 PING...
  • Revenge
    ---- You've been hired by Billy Joel to get revenge on Ducky Inc...the company that fired him. Can you break into the server and...
  • Road
    --- Inspired by a real-world pentesting engagement --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/86d73ce54a3f392bd56336da0...
  • Splunk 3
    --- Part of the Blue Primer series. This room is based on version 3 of the Boss of the SOC (BOTS) competition by Splunk. ---...
  • Takedown
    ---- We have reason to believe a corporate webserver has been compromised by RISOTTO GROUP. Cyber interdiction is authorized for this...
  • 25 Days of Cyber Security
    TryHackMe room
  • Advent of Cyber 2 [2020]
    TryHackMe room
  • Basic Static Analysis
    ---- Learn basic malware analysis techniques without running the malware. --- ### Introduction In the previous rooms of this module, we...
  • Brute Force Heroes
    --- Walkthrough room to look at the different tools that can be used when brute forcing, as well as the different situations that might...
  • Burp Suite Extender
    --- Learn how to use Extender to broaden the functionality of Burp Suite --- ### Outline Welcome to the Burp Suite Extender room! This...
  • Burp Suite: Intruder
    --- Learn how to use Intruder to automate requests in Burp Suite --- ### Room Outline In previous rooms of this module, we have covered...
  • Capture!
    ---- Can you bypass the login form? ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/4b631e191c14bc9d6b2be078d1adde76.png...
  • Content Security Policy
    --- In this room you'll learn what CSP is, what it's used for and how to recognize vulnerabilities in a CSP header. --- ### Introduction...
  • Cross-site Scripting
    --- Learn how to detect and exploit XSS vulnerabilities, giving you control of other visitor's browsers. --- ### Room Brief...
  • Cross-site Scripting-1
    --- Understand how cross-site scripting occurs and how to exploit it. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/9c4baf...
  • Deja Vu
    --- Exploit a recent code injection vulnerability to take over a website full of cute dog pictures! ---...
  • Enumeration
    --- This room is an introduction to enumeration when approaching an unknown corporate environment. ---...
  • Exploit Vulnerabilities
    --- Learn about some of the tools, techniques and resources to exploit vulnerabilities ---...
  • Follina MSDT
    --- A walkthrough on the CVE-2022-30190, the MSDT service, exploitation of the service vulnerability, and consequent detection...
  • Gallery
    --- Try to exploit our image gallery system --- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/c53a8eb73f24535345477fdf603fe...
  • Hacking with PowerShell
    --- Learn the basics of PowerShell and PowerShell Scripting --- ![](https://i.imgur.com/xFIv4Ve.png) ### Objectives...
  • HackPark
    --- Bruteforce a websites login with Hydra, identify and use a public exploit then escalate your privileges on this Windows machine! ---...
  • HeartBleed
    --- SSL issues are still lurking in the wild. Can you exploit this web servers OpenSSL? ---...
  • IDOR
    --- Learn how to find and exploit IDOR vulnerabilities in a web application giving you access to data that you shouldn't have. --- ###...
  • Ignite
    --- A new start-up has a few issues with their web server. --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/676cb3273c613...
  • Incident handling with Splunk
    --- Learn to use Splunk for incident handling through interactive scenarios. --- ### Introduction: Incident Handling This room covers an...
  • Intro to Cloud Security
    ---- Learn fundamental concepts regarding securing a cloud environment. --- ![](https://assets.tryhackme.com/room-banners/intro-to-offens...
  • Jeff
    ---- Can you hack Jeff's web server? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/f2d2f43d2fc1c4369f40370874e2df3e.png)...
  • Kubernetes for Everyone
    --- A Kubernetes hacking challenge for DevOps/SRE enthusiasts. --- ![](https://cncf-branding.netlify.app/img/projects/kubernetes/horizont...
  • Lockdown
    ---- Stay at 127.0.0.1. Wear a 255.255.255.0. ---- ![](https://i.imgur.com/yGq1mtN.jpg)...
  • New Hire Old Artifacts
    ---- Investigate the intrusion attack using Splunk. ---- ![](https://assets.tryhackme.com/additional/nhoa/nhoa-banner.png)...
  • NoSQL injection Basics
    --- A walkthrough depicting basic NoSQL injections on MongoDB. --- ![](https://i.imgur.com/1rvK8WH.jpg)...
  • Olympus
    ---- My first CTF ! ---- ![](https://i.imgur.com/iMOlNjg.jpg) ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/7d73d09352d33d6...
  • Oopsie
    ``` blob:https://app.hackthebox.com/40488db7-9438-4437-8c1a-5e50b5bc5bc3 ┌──(kali㉿kali)-[~/hackthebox] └─$ rustscan -a 10.129.95.191...
  • Oopsie
    ``` blob:https://app.hackthebox.com/40488db7-9438-4437-8c1a-5e50b5bc5bc3 ┌──(kali㉿kali)-[~/hackthebox] └─$ rustscan -a 10.129.95.191...
  • Outlook NTLM Leak
    ---- Leak password hashes from a user by sending them an email by abusing CVE-2023-23397. ---...
  • OWASP API Security Top 10 - 1
    --- Learn the basic concepts for secure API development (Part 1). --- ![](https://i.imgur.com/sP6d0iZ.png)...
  • OWASP Top 10 - 2021
    ---- Learn about and exploit each of the OWASP Top 10 vulnerabilities; the 10 most critical web security risks. ---...
  • Pilgrimage
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ tac /etc/hosts 10.10.11.219 pilgrimage.htb ┌──(witty㉿kali)-[~/Downloads] └─$ dirsearch -u...
  • Pilgrimage
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ tac /etc/hosts 10.10.11.219 pilgrimage.htb ┌──(witty㉿kali)-[~/Downloads] └─$ dirsearch -u...
  • Sea Surfer
    ---- Ride the Wave! ---- ![](https://i.imgur.com/yvuFbNQ.jpeg) ![](https://tryhackme-images.s3.amazonaws.com/room-icons/137a8e8a8cdc4ba57...
  • Splunk 2
    --- Part of the Blue Primer series. This room is based on version 2 of the Boss of the SOC (BOTS) competition by Splunk. ---...
  • SQHell
    ---- Try and find all the flags in the SQL Injections ---- ![](https://assets.tryhackme.com/additional/banners/sqhell_banner.jpg) ###...
  • SSRF
    --- Learn how to exploit Server-Side Request Forgery (SSRF) vulnerabilities, allowing you to access internal server resources. --- ###...
  • Surfer
    ---- Surf some internal webpages to find the flag! ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/6924475c1dc389f44b230...
  • Sustah
    ---- Play a game to gain access to a vulnerable CMS. Can you beat the odds? ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-ic...
  • The Cod Caper
    --- A guided room taking you through infiltrating and exploiting a Linux system. --- ### Intro Hello there my name is Pingu. I've come...
  • ToolsRus
    --- Practise using tools such as dirbuster, hydra, nmap, nikto and metasploit ---...
  • VulnNet: Endgame
    ---- Hack your way into this simulated vulnerable infrastructure. No puzzles. Enumeration is the key. ----...
  • Web Application Basics
    TryHackMe room
  • Wreath
    ---- Learn how to pivot through a network by compromising a public facing web machine and tunnelling your traffic to access other...
  • 0day
    --- Exploit Ubuntu, like a Turtle in a Hurricane --- Flags Start Machine Root my secure Website, take a step into the history of...
  • AD Certificate Templates
    ---- Walkthrough on the exploitation of misconfigured AD certificate templates ---...
  • Advent of Cyber 2022
    --- Get started with Cyber Security in 24 Days - learn the basics by doing a new, beginner-friendly security challenge every day leading...
  • Advent of Cyber 2023
    TryHackMe room
  • Advent of Cyber 2024
    TryHackMe room
  • Agent T
    --- Something seems a little off with the server. --- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/5dbc4e7d8515e7bc05b7742...
  • Android Analysis
    TryHackMe room
  • Android Malware Analysis
    ---- Android malware analysis with Pithus (static and hunting) --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/5fb4d2969a2...
  • Appointment
    ``` blob:https://app.hackthebox.com/5be081bc-9048-421a-a11f-090c3e6d5944 ┌──(kali㉿kali)-[~] └─$ ping 10.129.221.123 PING 10.129.221.123...
  • Appointment
    ``` blob:https://app.hackthebox.com/5be081bc-9048-421a-a11f-090c3e6d5944 ┌──(kali㉿kali)-[~] └─$ ping 10.129.221.123 PING 10.129.221.123...
  • Archangel
    --- Boot2root, Web exploitation, Privilege escalation, LFI --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/915282ea9193c331e...
  • Atlas
    --- Hack the Atlas server in this beginner room covering Windows attack methodology! ---...
  • AV Evasion: Shellcode
    --- Learn shellcode encoding, packing, binders, and crypters. --- ### Introduction In this room, we'll explore how to build and deliver...
  • Avengers Blog
    --- Learn to hack into Tony Stark's machine! You will enumerate the machine, bypass a login portal via SQL injection and gain root...
  • Biblioteca
    --- Shhh. Be very very quiet, no shouting inside the biblioteca. --- ![](https://i.postimg.cc/0N8fPR3k/Webp-net-resizeimage.jpg) ###...
  • Burp Suite: The Basics
    TryHackMe room
  • Careers in Cyber
    --- Learn about the different careers in cyber security. --- ![|100](https://tryhackme-images.s3.amazonaws.com/room-icons/7934742b978f977...
  • Carpe Diem 1
    ---- Recover your clients encrypted files before the ransomware timer runs out! ----...
  • Cat Pictures 2
    ---- Now with more Cat Pictures! ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/4c424fa649d64938ae8282b14e4299ac.png)...
  • CCT2019
    ---- Legacy challenges from the US Navy Cyber Competition Team 2019 Assessment sponsored by US TENTH Fleet ---...
  • CMSpit
    ---- This is a machine that allows you to practise web app hacking and privilege escalation using recent vulnerabilities. ----...
  • Command Injection
    --- Learn about a vulnerability allowing you to execute commands through a vulnerable app, and its remediations. --- ### Introduction...
  • Conti
    ---- An Exchange server was compromised with ransomware. Use Splunk to investigate how the attackers compromised the server. ----...
  • ConvertMyVideo
    ---- My Script to convert videos to MP3 is super secure ---- ![](https://i.imgur.com/sE0HfDO.png) ### Task 1 Hack the machine Start...
  • Corridor
    --- Can you escape the Corridor? --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/04afd126bf7a729eec5ff41e5b9b1212.png)...
  • CVE-2022-26923
    ---- Walkthrough on the exploitation of CVE-2022-26923, a vulnerability in AD Certificate Services. ---...
  • Cyber Kill Chain
    --- The Cyber Kill Chain framework is designed for identification and prevention of the network intrusions. You will learn what the...
  • Cyber Scotland 2021
    ---- Follow along tutorials for Scottish Cyberweek Demos --- ### ![](https://assets.muirlandoracle.co.uk/thm/rooms/cyberweek2021/733a17f9...
  • Data Exfiltration
    --- An introduction to Data Exfiltration and Tunneling techniques over various protocols. ---...
  • Dav
    --- boot2root machine for FIT and bsides guatemala CTF --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/cb525f3e7944eb5eec637...
  • Dependency Management
    --- Learn about the security concerns regarding dependency management in the automated DevOps pipeline. ---...
  • DFIR: An Introduction
    --- Introductory room for the DFIR module --- ### Introduction ## ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/61306d87a330...
  • Diamond Model
    --- Learn about the four core features of the Diamond Model of Intrusion Analysis: adversary, infrastructure, capability, and victim....
  • DiskFiltration
    TryHackMe room
  • Easy Peasy
    --- Practice using tools such as Nmap and GoBuster to locate a hidden directory to get initial access to a vulnerable machine. Then...
  • Empline
    ---- Are you good enough to apply for this job? ---- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/189112ffef41c0fa813d7d5b...
  • Erit Securus I
    --- Learn to exploit the BoltCMS software by researching exploit-db. --- ### Reconnaissance ``` ┌──(kali㉿kali)-[~] └─$ sudo nmap -sC -sV...
  • ExfilNode
    TryHackMe room
  • Firewalls
    --- Learn about and experiment with various firewall evasion techniques, such as port hopping and port tunneling. ---...
  • GamingServer
    --- An Easy Boot2Root box for beginners --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/80d16a6756c805903806f7ecbdd80f6d.jpe...
  • Generic University
    ---- API and Web testing room --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/6a9730b73744a7e6af162994e74b2191.jpeg) ###...
  • GLITCH
    --- Challenge showcasing a web app and simple privilege escalation. Can you find the glitch? ---...
  • Grep
    ---- A challenge that tests your reconnaissance and OSINT skills. ---- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/645b19f...
  • Hacker vs. Hacker
    --- Someone has compromised this server already! Can you get in and evade their countermeasures? ---...
  • hackerNote
    ---- A custom webapp, introducing username enumeration, custom wordlists and a basic privilege escalation exploit. ---...
  • Hamlet
    ---- A Shakespeare/Hamlet-inspired room in which you will explore an uncommon web application used in linguistic/NLP research. ----...
  • HipFlask
    ``` Hip Flask is a beginner to intermediate level walkthrough. It aims to provide an in-depth analysis of the thought-processes involved...
  • How Websites Work
    --- To exploit a website, you first need to know how they are created. --- ### How websites work By the end of this room, you'll know...
  • HTTP in Detail
    TryHackMe room
  • Insekube
    --- Exploiting Kubernetes by leveraging a Grafana LFI vulnerability --- ![](https://i.imgur.com/aOga4CU.png) ### Introduction Start...
  • Internal
    --- Penetration Testing Challenge --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/222b3e855f88a482c1267748f76f90e0.jpeg)...
  • Intro to Containerisation
    --- Learn about the technologies and benefits of containerisation. --- ![](https://assets.tryhackme.com/additional/containerisation-modul...
  • Intro to Cyber Threat Intel
    --- Introducing cyber threat intelligence and related topics, such as relevant standards and frameworks. ---...
  • Intro to Defensive Security
    --- Introducing defensive security and related topics, such as threat intelligence, SOC, DFIR, and SIEM. --- Offensive security focuses...
  • Intro to Docker
    ---- Learn to create, build and deploy Docker containers! ---- ![](https://assets.tryhackme.com/additional/containerisation-module/Contai...
  • Intro to Malware Analysis
    --- What to do when you run into a suspected malware --- ### Introduction Every once in a while, when you are working as a SOC analyst,...
  • Intro to Offensive Security
    ---- Hack your first website (legally in a safe environment) and experience an ethical hacker's job. ---...
  • Intro to Threat Emulation
    ---- A look into threat emulation practices as a means of cyber security assessment. ----...
  • Introduction to Cryptography
    ---- Learn about encryption algorithms such as AES, Diffie-Hellman key exchange, hashing, PKI, and TLS. ---...
  • Introduction to Flask
    --- How it works and how can I exploit it? --- ![](https://i.imgur.com/EgjVHqE.png)...
  • Introduction to SIEM
    --- An introduction to Security Information and Event Management. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/c5eca9a893...
  • Intrusion Detection
    ---- Learn cyber evasion techniques and put them to the test against two IDS --- ![](https://ctfresources.s3.eu-west-2.amazonaws.com/bann...
  • Investigating with ELK 101
    --- Investigate VPN logs through ELK. --- ### Introduction In this room, we will learn how to utilize the Kibana interface to search,...
  • Jack
    --- Compromise a web server running Wordpress, obtain a low privileged user and escalate your privileges to root using a Python module....
  • Jason
    --- In JavaScript everything is a terrible mistake. --- ### Introduction Start Machine...
  • Junior Security Analyst Intro
    --- Play through a day in the life of a Junior Security Analyst, their responsibilities and qualifications needed to land a role as an...
  • KAPE
    --- An introduction to Kroll Artifact Parser and Extractor (KAPE) for collecting and processing forensic artifacts ---...
  • Lesson Learned?
    ---- Have you learned your lesson? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/a6a36a91747be09047869b809dce926d.png)...
  • Linux Forensics
    --- Learn about the common forensic artifacts found in the file system of Linux Operating System ---...
  • Linux Modules
    TryHackMe room
  • Linux: Local Enumeration
    --- Learn to efficiently enumerate a linux machine and identify possible weaknesses ---...
  • Living Off the Land
    --- Learn the essential concept of "Living Off the Land" in Red Team engagements. ---...
  • Logless Hunt
    TryHackMe room
  • Lookback
    ---- You’ve been asked to run a vulnerability test on a production environment. ---...
  • Lumberjack Turtle
    ---- No logs, no crime... so says the lumberjack. ---- ![](https://www.honeytokens.io/img/LumberjackTurtle.png)...
  • MAL: Strings
    --- Investigating "strings" within an application and why these values are important! ---...
  • Metasploit
    --- Learn to use Metasploit, a tool to probe and exploit vulnerabilities on networks and servers. ---...
  • Microsoft Windows Hardening
    --- To learn key attack vectors used by hackers and how to protect yourself using different hardening techniques. ---...
  • Network Security
    --- Learn about network security, understand attack methodology, and practice hacking into a target server. --- ### Introduction A...
  • Network Security Solutions
    --- Learn about and experiment with various IDS/IPS evasion techniques, such as protocol and payload manipulation. ---...
  • NetworkMiner
    --- Learn how to use NetworkMiner to analyse recorded traffic files and practice network forensics activities. --- ### Room Introduction...
  • Nmap Basic Port Scans
    --- Learn in-depth how nmap TCP connect scan, TCP SYN port scan, and UDP port scan work. ---...
  • NoNameCTF
    --- Buffer overflow, server-side template injection and more... --- ![](https://i.imgur.com/tQ1lamt.png)...
  • Obfuscation Principles
    --- Leverage tool-agnostic software obfuscation practices to hide malicious functions and create unique code. ---...
  • Operating System Security
    --- This room introduces users to operating system security and demonstrates SSH authentication on Linux. --- ### Introduction to...
  • Osiris
    --- Can you Quack it? --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/fe8053432e57f1958c78240c42e094a2.png) ### Osiris...
  • Overpass3
    ``` Initial foothold ***enumerating ports with rustscan*** port 80 open Enumerating with gobuster allows to discover a hidden /backups...
  • OWASP API Security Top 10 - 2
    --- Learn the basic concepts for secure API development (Part 2). --- ![](https://i.imgur.com/sP6d0iZ.png)...
  • OWASP Top 10
    TryHackMe room
  • ParrotPost: Phishing Analysis
    ---- Reveal how attackers can craft client-side credential-stealing webpages that evade detection by security tools. ----...
  • Password Attacks
    --- This room introduces the fundamental techniques to perform a successful password attack against various services and scenarios. ---...
  • Phishing
    --- Learn what phishing is and why it's important to a red team engagement. You will set up phishing infrastructure, write a convincing...
  • Phishing Emails 3
    --- Learn the tools used to aid an analyst to investigate suspicious emails. --- ![](https://assets.tryhackme.com/additional/phishing1/ph...
  • Phishing Emails 4
    --- Learn how to defend against phishing emails. --- ### Introduction DMARC es un mecanismo de autenticación de correo electrónico. Ha...
  • Phonebook
    ``` http://143.110.169.131:32061/login?message=%3Cimg%20src%20=%27x%27%20onerror=%20%27alert(1)%27%3E By using "username: *" and...
  • Phonebook
    ``` http://143.110.169.131:32061/login?message=%3Cimg%20src%20=%27x%27%20onerror=%20%27alert(1)%27%3E By using "username: *" and...
  • Plotted-TMS
    --- Everything here is plotted! --- ![](https://wiki.thehacker.nz/wp-content/uploads/2021/10/pe_banner.png)...
  • Protocols and Servers
    --- Learn about common protocols such as HTTP, FTP, POP3, SMTP and IMAP, along with related insecurities. --- ### Introduction This room...
  • Protocols and Servers 2
    --- Learn about attacks against passwords and cleartext traffic; explore options for mitigation via SSH and SSL/TLS. ---...
  • Pyramid Of Pain
    --- Learn what is the Pyramid of Pain and how to utilize this model to determine the level of difficulty it will cause for an adversary...
  • Red Team OPSEC
    --- Learn how to apply Operations Security (OPSEC) process for Red Teams. --- ![|222](https://tryhackme-images.s3.amazonaws.com/room-icon...
  • Red Team Threat Intel
    --- Apply threat intelligence to red team engagements and adversary emulation. ---...
  • Redline
    --- Learn how to use Redline to perform memory analysis and to scan for IOCs on an endpoint. ---...
  • RedPanda
    ``` ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.170 PING 10.10.11.170 (10.10.11.170) 56(84) bytes of data. 64 bytes from...
  • RedPanda
    ``` ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.170 PING 10.10.11.170 (10.10.11.170) 56(84) bytes of data. 64 bytes from...
  • Relevant
    --- Penetration Testing Challenge --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/10524728b2b462e8d164efe4e67ed087.jpeg)...
  • REMnux: Getting Started
    TryHackMe room
  • Retro
    --- New high score! --- ![](https://i.imgur.com/RDzWHJI.png) ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/a222ca9fb08b8bd...
  • Security Engineer Intro
    ---- What does a day in the life of a security engineer look like? ---- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/62c435...
  • Security Operations
    --- Learn about Security Operations Center (SOC): its responsibilities, services, and data sources. --- ### Introduction to Security...
  • Security Principles
    --- Learn about the security triad and common security models and principles. ---...
  • Set
    --- Once again you find yourself on the internal network of the Windcorp Corporation. --- ### Set ![](https://i.imgur.com/UySYgtM.png)...
  • Shoppy
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.180 PING...
  • Shoppy
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.10.11.180 PING...
  • Sigma
    --- Provide understanding to Sigma, a Generic Signature Format for SIEM Systems. ---...
  • Snapped Phishing Line
    ---- Apply learned skills to probe malicious emails and URLs, exposing a vast phishing campaign. ----...
  • Snort Challenge - Live Attacks
    --- Put your snort skills into practice and defend against a live attack --- ### Scenario 1 | Brute-Force Use the attached VM to finish...
  • Source
    --- Exploit a recent vulnerability and hack Webmin, a web-based system configuration tool. --- ### rustscan > 10000/tcp open http...
  • Splunk 101
    --- This room will cover the basics of Splunk. --- ![](https://assets.tryhackme.com/additional/splunk-overview/splunk-room-banner.png)...
  • Splunk: Basics
    --- Learn the basics of Splunk. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/2cc38529b8c7c0fa0207c71dcb8f990c.png) ###...
  • Spring4Shell
    --- This room will provide an overview of the Spring4Shell RCE vulnerability in Spring Core, as well as give you an opportunity to...
  • SQLMAP
    --- Learn about and use Sqlmap to exploit the web application --- ![](https://i.imgur.com/2O70ow2.png) Introduction...
  • Startup
    --- Abuse traditional vulnerabilities via untraditional means. --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/98d1e206f...
  • Steel Mountain
    --- Hack into a Mr. Robot themed Windows machine. Use metasploit for initial access, utilise powershell for Windows privilege escalation...
  • Sysinternals
    --- Learn to use the Sysinternals tools to analyze Window systems or applications. ---...
  • Sysmon
    --- Learn how to utilize Sysmon to monitor and log your endpoints and environments ---...
  • Tactical Detection
    --- Establish a baseline knowledge of tactical detection, leveraging efficient techniques to bolster your security posture. ---...
  • That's The Ticket
    ---- IT Support are going to have a bad day, can you get into the admin account? ----...
  • The Blob Blog
    ---- Successfully hack into bobloblaw's computer ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/8c7c2c9a239e2badd7a5a62df9...
  • The Docker Rodeo
    --- Learn a wide variety of Docker vulnerabilities in this guided showcase. --- ![777](https://assets.tryhackme.com/room-banners/DockerPr...
  • The Great Escape
    ---- Our devs have created an awesome new site. Can you break out of the sandbox? ----...
  • The Lay of the Land
    --- Learn about and get hands-on with common technologies and security products used in corporate environments; both host and...
  • The Server From Hell
    ---- Face a server that feels as if it was configured and deployed by Satan himself. Can you escalate to root? ----...
  • Theseus
    ---- The first installment of the SuitGuy series of very hard challenges. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/9...
  • toc2
    ---- It's a setup... Can you get the flags in time? ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/aab108830eaf8908ce3d...
  • Tony the Tiger
    --- Learn how to use a Java Serialisation attack in this boot-to-root --- ### Deploy! Start Machine Firstly, ensure you are connected to...
  • Traffic Analysis Essentials
    --- Learn Network Security and Traffic Analysis foundations and take a step into probing network anomalies. ---...
  • TwoMillion
    ``` How many TCP ports are open? 2 ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.221 --ulimit 5500 -b 65535 -- -A -Pn .----....
  • TwoMillion
    ``` How many TCP ports are open? 2 ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.221 --ulimit 5500 -b 65535 -- -A -Pn .----....
  • Unattended
    ---- Use your Windows forensics knowledge to investigate an incident. ---- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/635...
  • Undiscovered
    ---- Discovery consists not in seeking new landscapes, but in having new eyes.. ----...
  • Unified Kill Chain
    --- The Unified Kill Chain is a framework which establishes the phases of an attack, and a means of identifying and mitigating risk to...
  • Uranium CTF
    ---- Uranium CTF ---- ![](https://coingeek.com/wp-content/uploads/2019/06/binance-decides-to-block-us-users-but-gives-them-a-back-door.jp...
  • Vaccine
    ``` blob:https://app.hackthebox.com/992bb2da-a712-4692-91e4-86edbc11e2d7 ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.247.247 PING...
  • Vaccine
    ``` blob:https://app.hackthebox.com/992bb2da-a712-4692-91e4-86edbc11e2d7 ┌──(kali㉿kali)-[~/hackthebox] └─$ ping 10.129.247.247 PING...
  • Velociraptor
    --- Learn Velociraptor, an advanced open-source endpoint monitoring, digital forensic and cyber response platform. ---...
  • Warzone 1
    ---- You received an IDS/IPS alert. Time to triage the alert to determine if its a true positive. ----...
  • Watcher
    ---- A boot2root Linux machine utilising web exploits along with some common privilege escalation techniques. ---...
  • Wazuh
    --- Wazuh is a free, open source and enterprise-ready security monitoring solution for threat detection, integrity monitoring. ---...
  • Weaponization
    --- Understand and explore common red teaming weaponization techniques. You will learn to build custom payloads using common methods...
  • Weather App
    ``` const weather = document.getElementById('weather'); const getWeather = async () => { let endpoint = 'api.openweathermap.org'; let...
  • Weather App
    ``` const weather = document.getElementById('weather'); const getWeather = async () => { let endpoint = 'api.openweathermap.org'; let...
  • Web Enumeration
    --- Learn the methodology of enumerating websites by using tools such as Gobuster, Nikto and WPScan ---...
  • Wekor
    ---- CTF challenge involving Sqli , WordPress , vhost enumeration and recognizing internal services ;) ---...
  • Wgel CTF
    --- Can you exfiltrate the root flag? --- ![|313](https://tryhackme-images.s3.amazonaws.com/room-icons/8116d1d52d3a63dd1e7c2e7ddce8a0d5.p...
  • Windows Local Persistence
    --- Learn the most common persistence techniques used on Windows machines. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/1...
  • WordPress-Cve2021
    ``` Wordpress: CVE-2021-29447 Vulnerability allow a authenticated user whith low privilages upload a malicious WAV file that could lead...
  • Yara
    --- Learn the applications and language that is Yara for everything threat intelligence, forensics, and threat hunting! ---...
  • Year of the Jellyfish
    ---- Some boxes sting... ---- ![](https://assets.muirlandoracle.co.uk/thm/rooms/yotjf/jellyfish-header.png)...
  • Year of the Pig
    ---- Some pigs do fly... ---- ![](https://i.imgur.com/JiwG6Si.png) ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/dda3408fbc...
  • Zeek
    --- Introduction to hands-on network monitoring and threat detection with Zeek (formerly Bro). ---...
  • Abusing Windows Internals
    --- Leverage windows internals components to evade common detection solutions, using modern tool-agnostic approaches. ---...
  • Active Directory Basics(1)
    ### Introduction Microsoft's Active Directory is the backbone of the corporate world. It simplifies the management of devices and users...
  • Advanced SQL Injection
    TryHackMe room
  • Alfred
    --- Exploit Jenkins to gain an initial shell, then escalate your privileges by exploiting Windows authentication tokens. ---...
  • All in One
    --- This is a fun box where you will get to exploit the system in several ways. Few intended and unintended paths to getting user and...
  • AllSignsPoint2Pwnage
    --- A room that contains a rushed Windows based Digital Sign system. Can you breach it? ---...
  • Anonymous
    --- Not the hacking group --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/876a5185c429c9703e625cb48c39637b.png)...
  • APIWizards Breach
    TryHackMe room
  • Aratus
    ---- Do you like reading? Do you like to go through tons of text? Aratus has what you need! ----...
  • AttackerKB
    --- Learn how to leverage AttackerKB and learn about exploits in your workflow! --- > For our purposes, think of AttackerKB as similar...
  • Authentication Bypass
    --- Learn how to defeat logins and other authentication mechanisms to allow you access to unpermitted areas. --- In this room, we will...
  • Autopsy
    --- Learn how to use Autopsy to investigate artifacts from a disk image. Use your knowledge to investigate an employee who is being...
  • AWS API Gateway
    TryHackMe room
  • b3dr0ck
    --- Server trouble in Bedrock. --- ![](https://f11snipe.cloud/assets/img/b3dr0ck-banner.png)...
  • Badbyte
    --- Infiltrate BadByte and help us to take over root. --- ### Reconnaissance ![](https://i.imgur.com/gZqOO8D.png) Nmap is a free open...
  • Bebop
    --- Who thought making a flying shell was a good idea? --- ![](https://qlaims.com/wp-content/uploads/2017/10/drone-header.jpg) ###...
  • biteme
    ---- Stay out of my server! ---- ![](https://images.unsplash.com/photo-1550751827-4bd374c3f58b?ixlib=rb-1.2.1&ixid=MnwxMjA3fDB8MHxwaG90by...
  • Blaster
    --- Throughout this room, we'll be looking at alternative modes of exploitation without the use of Metasploit or really exploitation...
  • BlockChain
    ``` https://tryhackme.com/room/blockchainvkkgjrph7y ┌──(kali㉿kali)-[~/Downloads/Blockchain] └─$ ftp 10.10.131.24 Connected to...
  • Blog
    --- Billy Joel made a Wordpress blog! --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/618f1cc93596ff4082250bce9d869767.p...
  • Boiler CTF
    --- Intermediate level CTF --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/4a800c6513239dbdfaf74ce869a88add.jpeg) ###...
  • Bolt
    --- a hero is unleashed, This room is designed for users to get familiar with the Bolt CMS and how it can be exploited using...
  • Boogeyman 1
    ---- A new threat actor emerges from the wild using the name Boogeyman. Are you afraid of the Boogeyman? ---- ### [Introduction] New...
  • Bookstore
    ---- A Beginner level box with basic web enumeration and REST API Fuzzing. ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-ico...
  • Break Out The Cage
    --- Help Cage bring back his acting career and investigate the nefarious goings on of his agent! --- ```anonymous (no pass) ftp...
  • Brim
    --- Learn and practice log investigation, pcap analysis and threat hunting with Brim. ---...
  • Brute
    --- You as well, Brutus? --- ![](https://i.postimg.cc/5NFMNX0n/Webp-net-resizeimage-1.png)...
  • Burp Suite: Repeater
    TryHackMe room
  • Bypass Really Simple Security
    TryHackMe room
  • CALDERA
    TryHackMe room
  • CAPA: The Basics
    TryHackMe room
  • Carnage
    TryHackMe room
  • Chocolate Factory
    --- A Charlie And The Chocolate Factory themed room, revisit Willy Wonka's chocolate factory! --- ### rustscan > found port 21 ftp, port...
  • CMesS
    ---- Can you root this Gila CMS box? --- ![](https://i.imgur.com/qnV5dJQ.png) ### Flags Start Machine Please add `MACHINE_IP cmess.thm`...
  • Common Linux Privesc
    --- A room explaining common Linux privilege escalation --- ### Understanding Privesc What does "privilege escalation" mean? At it's...
  • Content Discovery
    TryHackMe room
  • Core Windows Processes
    --- Explore the core processes within a Windows operating system and understand what is normal behavior. This foundational knowledge...
  • Corp
    --- Bypass Windows Applocker and escalate your privileges. You will learn about kerberoasting, evading AV, bypassing applocker and...
  • CORS & SOP
    TryHackMe room
  • Couch
    --- Hack into a vulnerable database server that collects and stores data in JSON-based document formats, in this semi-guided challenge....
  • Credentials Harvesting
    --- Apply current authentication models employed in modern environments to a red team approach. ---...
  • Crocodile
    ``` blob:https://app.hackthebox.com/51f9dfe3-9c91-469a-8453-feab80baf3c3 ┌──(kali㉿kali)-[~] └─$ ping 10.129.165.101 PING 10.129.165.101...
  • Crocodile
    ``` blob:https://app.hackthebox.com/51f9dfe3-9c91-469a-8453-feab80baf3c3 ┌──(kali㉿kali)-[~] └─$ ping 10.129.165.101 PING 10.129.165.101...
  • Crylo
    ---- Learn about the CryptoJS library and JavaScript-based client-side encryption and decryption. ----...
  • CSRF
    TryHackMe room
  • Custom Tooling Using Python
    TryHackMe room
  • CVE-2019-18634
    ``` The stack is a very regimented section of memory which stores various important aspects of a program. The heap, on the other hand,...
  • CVE-2021-41773
    ``` A Brief History On the 5th of October 2021, a CVE detailing a path traversal attack on Apache HTTP Server v2.4.49 was released....
  • CVE-2023-38408
    ---- Learn how to move laterally abusing libraries' side effects in Ubuntu (CVE-2023-38408). ----...
  • CyberCrafted
    ---- Pwn this pay-to-win Minecraft server! --- ![](https://m4dr1nch.github.io/writeups/cybercrafted/assets/img/cc-banner.png)...
  • Daily Bugle
    --- Compromise a Joomla CMS account via SQLi, practise cracking hashes and escalate your privileges by taking advantage of yum. ---...
  • DAST
    TryHackMe room
  • Debug
    ---- Linux Machine CTF! You'll learn about enumeration, finding hidden password files and how to exploit php deserialization! ----...
  • Different CTF
    ---- interesting room, you can shoot the sun ---- ![](https://i.imgur.com/KoKRoAE.png)...
  • Digital Forensics Case B4DM755
    ---- Acquire the critical skills of evidence preservation, disk imaging, and artefact analysis for use in court. ----...
  • Dissecting PE Headers
    ---- Learn about Portable Executable files and how their headers work. ---- ![](https://assets.tryhackme.com/additional/peheaders/dissect...
  • DOM-Based Attacks
    TryHackMe room
  • DX1: Liberty Island
    --- Can you help the NSF get a foothold in UNATCO's system? --- ![](https://i.imgur.com/6mPK3PT.png)...
  • Eavesdropper
    --- Listen closely, you might hear a password! --- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/de6446e44292ce978b994c0992...
  • En-pass
    ---- Get what you can't. ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/fcfd772a585042a171dd2855cb3bb2cb.jpeg) ###...
  • Epoch
    --- Be honest, you have always wanted an online tool that could help you convert UNIX dates and timestamps! ---...
  • Evading Logging and Monitoring
    --- Learn how to bypass common logging and system monitoring, such as ETW, using modern tool-agnostic approaches. --- ![[Pasted image...
  • Extending Your Network
    --- Learn about some of the technologies used to extend networks out onto the Internet and the motivations for this. --- ###...
  • Fawn
    ``` ┌──(kali㉿kali)-[~] └─$ ping 10.129.190.136 PING 10.129.190.136 (10.129.190.136) 56(84) bytes of data. 64 bytes from 10.129.190.136:...
  • Fawn
    ``` ┌──(kali㉿kali)-[~] └─$ ping 10.129.190.136 PING 10.129.190.136 (10.129.190.136) 56(84) bytes of data. 64 bytes from 10.129.190.136:...
  • Fowsniff CTF
    --- Hack this machine and get the flag. There are lots of hints along the way and is perfect for beginners! ---...
  • Ghizer
    ---- lucrecia has installed multiple web applications on the server. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/903b4a...
  • GitLab CVE-2023-7028
    TryHackMe room
  • h4cked
    TryHackMe room
  • HA Joker CTF
    ---- Batman hits Joker. --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/ed910d9d7c419b8266128e044a40c7e2.jpeg) ### HA...
  • Hacked
    ``` It seems like our machine got hacked by an anonymous threat actor. However, we are lucky to have a .pcap file from the attack. Can...
  • Hardening Basics Part 1
    --- Learn how to harden an Ubuntu Server! Covers a wide range of topics (Part 1) ---...
  • Hardening Basics Part 2
    --- Continue learning about hardening --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/81525b4555b637e5ca3b742357fc4b5b.jpeg)...
  • harder
    ---- Real pentest findings combined ---- ![](https://assets.tryhackme.com/img/banners/default_tryhackme.png)...
  • Hashing - Crypto 101
    --- An introduction to Hashing, as part of a series on crypto --- ### Key Terms Before we start, we need to get some jargon out of the...
  • HaskHell
    ---- Teach your CS professor that his PhD isn't in security. ---- ![](https://i.imgur.com/4AocURG.jpg)...
  • HTTP Browser Desync
    TryHackMe room
  • HTTP Request Smuggling
    TryHackMe room
  • HTTP/2 Request Smuggling
    TryHackMe room
  • IDE
    --- An easy box to polish your enumeration skills! --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/3ce8e9c4d1da5eefef690...
  • Incident Response Process
    TryHackMe room
  • Intro PoC Scripting
    TryHackMe room
  • Intro to C2
    --- Learn the essentials of Command and Control to help you become a better Red Teamer and simplify your next Red Team assessment! ---...
  • Intro to Cross-site Scripting
    TryHackMe room
  • Intro to Detection Engineering
    ---- Introduce the concept of detection engineering and the frameworks used towards crafting effective threat detection strategies. ----...
  • Intro to Endpoint Security
    --- Learn about fundamentals, methodology, and tooling for endpoint security monitoring. ---...
  • Intro to Log Analysis
    TryHackMe room
  • Intro to Pipeline Automation
    --- This room provides an introduction to DevOps pipeline automation and the potential security concerns. ---...
  • Introductory Researching
    TryHackMe room
  • Investigating Windows
    TryHackMe room
  • Investigating Windows 2.0
    TryHackMe room
  • Investigating Windows 3.x
    TryHackMe room
  • iOS Forensics
    --- Learn about the data acquisition techniques and tools used in iOS device digital forensics! ---...
  • ItsyBitsy
    --- Put your ELK knowledge together and investigate an incident. --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/5e8dd9a4a...
  • Jack-of-All-Trades
    --- Boot-to-root originally designed for Securi-Tay 2020 --- ![](https://i.imgur.com/w0iocsP.png)...
  • John The Ripper
    --- Learn how to use John the Ripper - An extremely powerful and adaptable hash cracking tool ---...
  • Joomify CVE-2023-23752
    TryHackMe room
  • Juicy Details
    TryHackMe room
  • Jurassic Park
    --- A Jurassic Park CTF --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/9d1b176b68fbab2dcf90877eaf9a866c.jpeg) ### Jurassic...
  • Keldagrim
    --- The dwarves are hiding their gold! --- ![|111](https://tryhackme-images.s3.amazonaws.com/room-icons/478e13a9419b3514396915e4e07211fb....
  • Linux Server Forensics
    TryHackMe room
  • LocalPotato
    ---- Learn how to elevate your privileges on Windows using LocalPotato (CVE-2023-21746). ---...
  • Log Universe
    TryHackMe room
  • Looking_Glass
    ``` Enumerating SSH When connecting to one of the ports (in this case trying one of the higher ones), the SSH server responds with...
  • Lunizz CTF
    ![](https://cdn.pixabay.com/photo/2016/11/08/05/20/adventure-1807524_960_720.jpg)...
  • Madeye's Castle
    ---- A boot2root box that is modified from a box used in CuCTF by the team at Runcode.ninja ----...
  • magician
    ``` ┌──(kali㉿kali)-[~] └─$ sudo su [sudo] password for kali: ┌──(root㉿kali)-[/home/kali] └─# nano /etc/hosts ┌──(root㉿kali)-[/home/kali]...
  • Masterminds
    ---- Practice analyzing malicious traffic using Brim. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/03fe1b480ba9d32b7065f...
  • Metamorphosis
    ---- Part of Incognito CTF ---- ![](https://0cirius0.github.io/writeup/assets/img/metamorphosis/main.jpg) ### Task 1 Challenge Start...
  • Metasploit: Exploitation
    --- Using Metasploit for scanning, vulnerability assessment and exploitation. ---...
  • Metasploit: Meterpreter
    --- Take a deep dive into Meterpreter, and see how in-memory payloads can be used for post-exploitation. ---...
  • Mindgames
    ---- Just a terrible idea... ---- ![](https://i.imgur.com/xgHwRVs.png) ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/3cc31a...
  • MISP
    --- Walkthrough on the use of MISP as a Threat Sharing Platform --- ![](https://assets.tryhackme.com/additional/jrsecanalyst/jrsec-room-b...
  • Mnemonic
    ---- I hope you have fun. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/497ceb5feaeff50ff8b1e6c119973591.png) ### Task 1...
  • Mustacchio
    --- Easy boot2root Machine --- ![](https://i.imgur.com/egCv6YT.png) ``` ┌──(kali㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.95.182...
  • Napping
    --- Even Admins can fall asleep on the job --- ![](https://i.postimg.cc/zXXYKx02/Webp-net-resizeimage.png)...
  • Neighbour
    --- Check out our new cloud service, Authentication Anywhere. Can you find other user's secrets? ---...
  • Nessus
    TryHackMe room
  • Net Sec Challenge
    --- Practice the skills you have learned in the Network Security module. --- ### Introduction Use this challenge to test your mastery of...
  • Network Services
    --- Learn about, then enumerate and exploit a variety of network services and misconfigurations. --- ### Understanding SMB **What is...
  • Network Services 2
    --- Enumerating and Exploiting More Common Network Services & Misconfigurations --- ### Understanding NFS What is NFS? NFS stands for...
  • Networking Concepts
    TryHackMe room
  • Networking Secure Protocols
    TryHackMe room
  • Nmap Advanced Port Scans
    --- Learn advanced techniques such as null, FIN, Xmas, and idle (zombie) scans, spoofing, in addition to FW and IDS evasion. ---...
  • Nmap Post Port Scans
    --- Learn how to leverage Nmap for service and OS detection, use Nmap Scripting Engine (NSE), and save the results. ---...
  • Nmap: The Basics
    TryHackMe room
  • OAuth Vulnerabilities
    TryHackMe room
  • Oh My WebServer
    --- Can you root me? --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/c1833021c98fa6c74fc125f4b34741ca.png) ###...
  • Ollie
    --- Meet the world's most powerful hacker dog! --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/c9a9e59d232db4474759bbf89a...
  • OpenCTI
    --- Provide an understanding of the OpenCTI Project --- ![111](https://tryhackme-images.s3.amazonaws.com/room-icons/2a2c2961a51374c43ddb8...
  • OSI Model
    ### What is the OSI Model? The **OSI** model (or **O**pen **S**ystems **I**nterconnection Model) is an absolute fundamental model used...
  • Osquery: The Basics
    --- Let's cover the basics of Osquery. --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/5e8dd9a4a45e18443162feab/room-conte...
  • Packets & Frames
    --- Understand how data is divided into smaller pieces and transmitted across a network to another device --- ### What are Packets and...
  • Phishing Emails 5
    --- Use the knowledge attained to analyze a malicious email. --- ![](https://assets.tryhackme.com/additional/phishing1/phish-room-banner-...
  • Phishing: HiddenEye
    TryHackMe room
  • Phishing1
    ``` ┌──(kali㉿kali)-[~/Downloads/PHishing] └─$ wget http://0.0.0.0:8000/Email1.eml --2022-08-02 17:10:23-- http://0.0.0.0:8000/Email1.eml...
  • Polkit_CVE
    ``` What is the URL of the website you should submit dynamic flags to? https://flag.muir.land/ Overview In early 2021 a researcher named...
  • Polkit: CVE-2021-3560
    TryHackMe room
  • PowerShell for Pentesters
    --- This room covers the principle uses of PowerShell in Penetration Tests. Interacting with files, scanning the network and system...
  • PrintNightmare, again!
    --- Search the artifacts on the endpoint to determine if the employee used any of the Windows Printer Spooler vulnerabilities to elevate...
  • Probe
    TryHackMe room
  • Putting it all together
    --- Learn how all the individual components of the web work together to bring you access to your favourite web sites. --- **Putting It...
  • pyLon
    ---- Can you penetrate the defenses and become root? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/715d827a2967ada237e63a...
  • Python for Pentesters
    --- Python is probably the most widely used and most convenient scripting language in cybersecurity. This room covers real examples of...
  • Ra 2
    --- Just when they thought their hashes were safe... Ra 2 - The sequel! --- **Story** WindCorp recently had a security-breach. Since...
  • RazorBlack
    ``` RazorBlack These guys call themselves hackers. Can you show them who's the boss ?? Throw something like a rock on the big green...
  • README
    ### practicing on the platform TryHackme and HackTheBox I'll be uploading my writeups here: https://jesusgavancho.gitbook.io/writeups/ :)
  • Recovery
    ---- Not your conventional CTF ---- ![](https://i.imgur.com/0cGWCRw.png) ![](https://tryhackme-images.s3.amazonaws.com/room-icons/2e11ff8...
  • Res
    --- Hack into a vulnerable database server with an in-memory data-structure in this semi-guided challenge! ---...
  • Runtime Detection Evasion
    --- Learn how to bypass common runtime detection measures, such as AMSI, using modern tool-agnostic approaches. ---...
  • Sandbox Evasion
    --- Learn about active defense mechanisms Blue Teamers can deploy to identify adversaries in their environment. ---...
  • Scripting
    --- Learn basic scripting by solving some challenges! --- ![](https://miro.medium.com/max/2560/1*enCF61GFzLovMNXzAJmVNQ.png)...
  • Search Skills
    TryHackMe room
  • Secret Recipe
    --- Perform Registry Forensics to Investigate a case. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/08870f82d4ce4374cdc6fe...
  • Sequel
    ``` blob:https://app.hackthebox.com/75b7ab04-575b-4cf9-800c-bd03e22b0be6 ┌──(kali㉿kali)-[~] └─$ ping 10.129.71.100 PING 10.129.71.100...
  • Sequel
    ``` blob:https://app.hackthebox.com/75b7ab04-575b-4cf9-800c-bd03e22b0be6 ┌──(kali㉿kali)-[~] └─$ ping 10.129.71.100 PING 10.129.71.100...
  • Servidae: Log Analysis in ELK
    TryHackMe room
  • Shells Overview
    TryHackMe room
  • Shodan.io
    TryHackMe room
  • Signature Evasion
    --- Learn how to break signatures and evade common AV, using modern tool-agnostic approaches. ---...
  • Slingshot
    TryHackMe room
  • Smag Grotto
    --- Follow the yellow brick road. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/d4071f466e055d38d5a169cae9f12b33.png)...
  • Snort
    --- Learn how to use Snort to detect real-time threats, analyse recorded traffic files and identify anomalies. ---...
  • Snort Challenge - The Basics
    --- Put your snort skills into practice and write snort rules to analyse live capture network traffic. --- ### Introduction...
  • Snyk Code
    TryHackMe room
  • SQLMap The Basics
    TryHackMe room
  • Subdomain Enumeration
    --- Learn the various ways of discovering subdomains to expand your attack surface of a target. --- Subdomain enumeration is the process...
  • TakeOver
    --- This challenge revolves around subdomain enumeration. --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/e11be3e91db093a...
  • Team
    --- Beginner friendly boot2root machine --- _Created by: dalemazza_ _Credit to P41ntP4rr0t for help along the way_ ```...
  • Tempest
    ---- You are tasked to conduct an investigation from a workstation affected by a full attack chain. ---...
  • Templates
    ---- Pug is my favorite templating engine! I made this super slick application so you can play around with Pug and see how it works....
  • Tempus Fugit Durius
    --- The latin word Durius means "harder" --- ![222](https://i.imgur.com/M4EePuT.jpg)...
  • The Impossible Challenge
    --- ‌‌‌‌‍ ‌‌Hmm‌‌‌‌‍‬‌‍‌‌‌‌‍ ‌ ‌‌‌‌‍ ‌ ‌‌‌‌‍ ‍ ‌‌‌‌‍‬ ‌‌‌‌‍ ‌‬‌‌‌‌‍‬‍‌‌‌‌‌‌‬‌‌‌‌‌‌‍‬‬‍‌‌‌‌‍ ‌...
  • TheHive Project
    --- Learn how to use TheHive, a Security Incident Response Platform, to report investigation findings ---...
  • Thompson
    --- boot2root machine for FIT and bsides guatemala CTF --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/f5e35bf1d933a9b45077e...
  • Threat Hunting: Foothold
    TryHackMe room
  • Threat Intel & Containment
    ---- Learn what threat intelligence looks like, and some containment strategies used in the IR process. ----...
  • Topology
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.217 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • Topology
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.11.217 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---....
  • Tor
    ``` ***enumerating*** rustscan -a 10.10.9.58 --ulimit 5000 -b 65535 -- -A ***log ssh port 22*** via linux ssh thm@10.10.168.200 pass ->...
  • Training for New Analyst
    --- Room for newbs --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/b51be00da2beb76d32ba54ee5244aeaa.png) ### Log into VM...
  • Traverse
    TryHackMe room
  • Valley
    ---- Can you find your way into the Valley? ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/2700326f6bf2127c414a0fa45824...
  • Volatility
    --- Learn how to perform memory forensics with Volatility! --- ![](https://assets.tryhackme.com/room-banners/volatility.png) ###...
  • Volt Typhoon
    TryHackMe room
  • VulnNet: Internal
    --- VulnNet Entertainment learns from its mistakes, and now they have something new for you... ---...
  • VulnNet: Node
    --- After the previous breach, VulnNet Entertainment states it won't happen again. Can you prove they're wrong? ---...
  • Vulnversity
    TryHackMe room
  • Warzone 2
    ---- You received another IDS/IPS alert. Time to triage the alert to determine if its a true positive. ----...
  • Web Application Security
    TryHackMe room
  • What the Shell?
    TryHackMe room
  • Windows Applications Forensics
    TryHackMe room
  • Windows Forensics 1
    --- Introduction to Windows Registry Forensics --- ![](https://assets.tryhackme.com/additional/forensics1/forensics1-room-banner.png)...
  • Windows Forensics 2
    --- Learn about common Windows file systems and forensic artifacts in the file systems. ---...
  • Windows Internals
    --- Learn and understand the fundamentals of how Windows operates at its core. ---...
  • Windows Privilege Escalation
    --- Learn the fundamentals of Windows privilege escalation techniques. --- ![](https://assets.tryhackme.com/room-banners/privesc.png)...
  • Windows Reversing Intro
    ---- Introduction to reverse engineering x64 Windows software. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/e1566084619a...
  • Wireshark 101
    --- Learn the basics of Wireshark and how to analyze various protocols and PCAPs --- ### Introduction Wireshark, a tool used for...
  • Wireshark: Packet Operations
    --- Learn the fundamentals of packet analysis with Wireshark and how to find the needle in the haystack! ---...
  • Wireshark: Traffic Analysis
    --- Learn the basics of traffic analysis with Wireshark and how to find anomalies on your network! ---...
  • Wonderland
    ``` gobuster dir --url http://10.10.122.82/ --wordlist /usr/share/wordlists/dirb/common.txt -t 30 found /r then /a so /r/a/b/b/i/t...
  • x86 Architecture Overview
    ---- A crash course in x86 architecture to enable us in malware reverse engineering. ----...
  • XSS
    TryHackMe room
  • Year of the Fox
    ---- Don't underestimate the sly old fox... --- ![](https://i.imgur.com/JOBQtGF.png) ### Hack the machine and obtain the flags Start...
  • Year of the Rabbit
    --- Let's have a nice gentle start to the New Year! Can you hack into the Year of the Rabbit box without falling down a hole? --- ###...
  • Zeek Exercises
    --- Put your Zeek skills into practice and analyse network traffic. --- ![](https://tryhackme-images.s3.amazonaws.com/user-uploads/613113...
  • Zeno
    ---- Do you have the same patience as the great stoic philosopher Zeno? Try it out! ----...
  • Active Directory Basics
    --- Learn the basics of Active Directory and how it is used in the real world today --- ### Introduction Active Directory is the...
  • Active Reconnaissance
    TryHackMe room
  • Advanced ELK Queries
    TryHackMe room
  • Advent of Cyber 1 [2019]
    TryHackMe room
  • Amazon EC2 - Attack & Defense
    TryHackMe room
  • Analysing Volatile Memory
    TryHackMe room
  • Annie
    ---- Remote access comes in different flavors. ---- ### Task 1 Recon - Research - Exploit...
  • Anonforce
    --- boot2root machine for FIT and bsides guatemala CTF --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/eef338293d4a92842...
  • Anonymous Playground
    ---- Want to become part of Anonymous? They have a challenge for you. Can you get the flags and become an operative? ---- ### Task 1...
  • Anthem
    TryHackMe room
  • APT28 in the Snare
    TryHackMe room
  • Archetype
    ``` blob:https://app.hackthebox.com/4f38037f-6ebb-44b8-9c8c-992a446560fa ┌──(kali㉿kali)-[~] └─$ rustscan -a 10.129.232.196 --ulimit 5500...
  • Archetype
    ``` blob:https://app.hackthebox.com/4f38037f-6ebb-44b8-9c8c-992a446560fa ┌──(kali㉿kali)-[~] └─$ rustscan -a 10.129.232.196 --ulimit 5500...
  • Attacking Kerberos
    --- Learn how to abuse the Kerberos Ticket Granting Service inside of a Windows Domain Controller --- This room will cover all of the...
  • AWS IAM Initial Access
    TryHackMe room
  • AWS Lambda
    TryHackMe room
  • Basic Pentesting
    TryHackMe room
  • battery
    ---- CTF designed by CTF lover for CTF lovers ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/e360a8a69b9074a812f3ee487c018...
  • Become a Hacker
    TryHackMe room
  • Benign
    --- Challenge room to investigate a compromised host. --- ### Scenario: Identify and Investigate an Infected Host One of the client’s...
  • BinaryHeaven
    ``` └─$ ltrace ./angel_A ptrace(0, 0, 1, 0) = -1 printf("Using debuggers? Here is tutoria"...) = -1 exit(1Using debuggers? Here is...
  • Binex
    --- Escalate your privileges by exploiting vulnerable binaries. --- ![](https://i.imgur.com/aohxmGa.jpg)...
  • Biohazard
    --- A CTF room based on the old-time survival horror game, Resident Evil. Can you survive until the end? ---...
  • Blizzard
    TryHackMe room
  • BlueTeam
    --- For those who want to improve themselves in the Cyber Security Defense Field ---...
  • Boogeyman 2
    TryHackMe room
  • Boogeyman 3
    TryHackMe room
  • Borderlands
    TryHackMe room
  • BountyHacker
    ``` Find open ports on the machine. First of all we’ll need to find open ports on our target machine, but if you are beginner you’ll...
  • Brainpan 1
    --- Reverse engineer a Windows executable, find a buffer overflow and exploit it on a Linux machine. ---...
  • Brainstorm
    --- Reverse engineer a chat program and write a script to exploit a Windows machine. --- ![](https://i.imgur.com/rqwhSuo.png) ### Deploy...
  • Breaching Active Directory
    TryHackMe room
  • Breaking RSA
    TryHackMe room
  • Brooklyn Nine Nine
    --- This room is aimed for beginner level hackers but anyone can try to hack this box. There are two main intended ways to root the box....
  • Brute It
    TryHackMe room
  • Buffer Overflow Prep
    --- Practice stack based buffer overflows! --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/1948e2c67f072993904cec82f39653c0....
  • Buffer Overflows
    --- Learn how to get started with basic Buffer Overflows! --- ![|222](https://tryhackme-images.s3.amazonaws.com/room-icons/5d2d89202b5a14...
  • Bugged
    ---- John likes to live in a very Internet connected world. Maybe too connected... ---...
  • Burp Suite: Extensions
    TryHackMe room
  • Busqueda
    ``` ┌──(witty㉿kali)-[~/Downloads/CVE-2022-46169-CACTI-1.2.22] └─$ rustscan -a 10.10.11.208 --ulimit 5500 -b 65535 -- -A -Pn .----. .-....
  • Busqueda
    ``` ┌──(witty㉿kali)-[~/Downloads/CVE-2022-46169-CACTI-1.2.22] └─$ rustscan -a 10.10.11.208 --ulimit 5500 -b 65535 -- -A -Pn .----. .-....
  • Bypass
    TryHackMe room
  • Cactus
    TryHackMe room
  • Cat Pictures
    --- I made a forum where you can post cute cat pictures! --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/0d75a543c66201b4...
  • CERTain Doom
    TryHackMe room
  • Chill Hack
    Chill the Hack out of the Machine. Easy level CTF. Capture the flags and have fun!...
  • Cicada-3301 Vol:1
    TryHackMe room
  • Cluster Hardening
    TryHackMe room
  • ColddBox: Easy
    --- An easy level machine with multiple ways to escalate privileges. --- ### boot2Root Can you get access and get both **flags**? Good...
  • Committed
    --- One of our developers accidentally committed some sensitive code to our GitHub repository. Well, at least, that is what they told...
  • Confidential
    --- We got our hands on a confidential case file from some self-declared "black hat hackers"... it looks like they have a secret invite...
  • Cooctus Stories
    ---- This room is about the Cooctus Clan ---- ![](https://pbs.twimg.com/profile_banners/1696074763/1605441583/1500x500)...
  • Critical
    TryHackMe room
  • Crocc Crew
    ---- Crocc Crew has created a backdoor on a Cooctus Corp Domain Controller. We're calling in the experts to find the real back door!...
  • Crypto Failures
    TryHackMe room
  • Custom Tooling using Burp
    TryHackMe room
  • CVE-2021-41773/42013
    TryHackMe room
  • CyberChef: The Basics
    TryHackMe room
  • CyberHeroes
    --- Want to be a part of the elite club of CyberHeroes? Prove your merit by finding a way to log in! ---...
  • Cyborg
    --- A box involving encrypted archives, source code analysis and more --- ## vpn ``` tryhackme-vpn sudo openvpn WittyAle.ovpn ``` ###...
  • Dancing
    ``` blob:https://app.hackthebox.com/7ac8a74a-25d6-4db8-8341-4034e784d2ab ┌──(kali㉿kali)-[~] └─$ ping 10.129.141.78 PING 10.129.141.78...
  • Dancing
    ``` blob:https://app.hackthebox.com/7ac8a74a-25d6-4db8-8341-4034e784d2ab ┌──(kali㉿kali)-[~] └─$ ping 10.129.141.78 PING 10.129.141.78...
  • DDOS
    ``` https://tryhackme.com/room/blockchainvkkgjrphsh ┌──(kali㉿kali)-[~/Downloads/DDOS] └─$ ftp 10.10.161.202 Connected to 10.10.161.202....
  • Develpy
    ---- boot2root machine for FIT and bsides Guatemala CTF ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/47bd9da3ef003a03478...
  • Dig Dug
    --- Turns out this machine is a DNS server - it's time to get your shovels out! ---...
  • Dirty Pipe
    --- This room will provide an overview of the vulnerability, as well as give you an opportunity to exploit it for yourself in the...
  • DNS
    ``` If you were on Windows, what command could you use to query a txt record for 'youtube.com'? nslookup -type=txt youtube.com If you...
  • DNS in detail
    TryHackMe room
  • DNS Manipulation
    TryHackMe room
  • Dumping Router Firmware
    TryHackMe room
  • Dunkle Materie
    TryHackMe room
  • DX2: Hell's Kitchen
    TryHackMe room
  • El Bandito
    TryHackMe room
  • Empire
    ``` Installing the current project: empire-bc-security-fork (4.6.1) [+] Install Complete! [+] Run the following commands in separate...
  • Encryption - Crypto 101
    TryHackMe room
  • Enterprise
    ``` Enterprise es una máquina Windows Server 2019 configurada como Domain Controller. Para el acceso inicial tendremos que enumerar...
  • Examinerx9
    TryHackMe room
  • ffuf
    TryHackMe room
  • File Inclusion, Path Traversal
    TryHackMe room
  • FilePeek
    TryHackMe room
  • Fixit
    TryHackMe room
  • Flatline
    --- How low are your morals? --- ![](https://cdn.pixabay.com/photo/2020/04/25/11/12/electrocardiogram-5090337_960_720.jpg) What are the...
  • Flip
    ---- Hey, do a flip! ---- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/30129d71d291d86c1976d56c3333d8f7.png) ### Task 1...
  • Forgotten Implant
    ---- With almost no attack surface, you must use a forgotten C2 implant to get initial access. ----...
  • Frank & Herby make an app
    TryHackMe room
  • Fusion Corp
    ---- Fusion Corp said they got everything patched... did they? ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/c7c5cbaebf5b...
  • Gatekeeper
    --- Can you get past the gate and through the fire? --- ![|333](https://tryhackme-images.s3.amazonaws.com/room-icons/8979e58d84147f072077...
  • Git_crumpets
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ curl 10.10.121.237 Go away! Nothing to see here, move along Notice: Hey guys, I set up the dev...
  • GoldenEye
    --- Bond, James Bond. A guided CTF. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/77b55a2ac1ac79ca534d6fc003c042b3.png)...
  • Google Dorking
    TryHackMe room
  • Gotta Catch'em All!
    --- This room is based on the original Pokemon series. Can you obtain all the Pokemon in this room? --- ### ssh...
  • Hack Back
    TryHackMe room
  • Hack_printer
    ``` hydra -l printer -P /usr/share/wordlists/rockyou.txt 10.10.89.69 ssh Hydra v9.3 (c) 2022 by van Hauser/THC & David Maciejak - Please...
  • Hackfinity Battle Encore
    TryHackMe room
  • Heist
    TryHackMe room
  • Hip Flask
    TryHackMe room
  • Hunt Me I: Payment Collectors
    TryHackMe room
  • Hunt Me II: Typo Squatters
    TryHackMe room
  • Hydra
    TryHackMe room
  • Ice
    TryHackMe room
  • Identification & Scoping
    TryHackMe room
  • Inferno
    ---- eal Life machine + CTF. The machine is designed to be real-life (maybe not?) and is perfect for newbies starting out in penetration...
  • Insecure Deserialisation
    TryHackMe room
  • Intermediate Nmap
    --- Can you combine your great nmap skills with other tools to log in to this machine? ---...
  • Intranet
    TryHackMe room
  • Intro to ISAC
    --- Learn how to utilize Information Sharing and Analysis Centers to gather threat intelligence and collect IOCs. ---...
  • Intro to Logs
    TryHackMe room
  • Intro To Pwntools
    ---- An introductory room for the binary exploit toolkit Pwntools. --- ![](https://raw.githubusercontent.com/Gallopsled/pwntools/stable/d...
  • Introduction To Honeypots
    --- A guided room covering the deployment of honeypots and analysis of botnet activities ---...
  • Introductory Networking
    TryHackMe room
  • Investigating with Splunk
    TryHackMe room
  • Iron Corp
    ---- Can you get access to Iron Corp's system? ---- ![](https://i.imgur.com/jemtUtJ.jpg)...
  • Jacob the Boss
    ---- Find a way in and learn a little more. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/065e4dc344a4c5fc9155dd4ae9eca52...
  • JavaScript Basics
    TryHackMe room
  • JavaScript Essentials
    TryHackMe room
  • John the Ripper: The Basics
    TryHackMe room
  • JPGChat
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ rustscan -a 10.10.248.160 --ulimit 5000 -b 65535 -- -A .----. .-. .-. .----..---. .----. .---. .--....
  • KoTH Food CTF
    ---- Practice Food KoTH alone, to get familiar with KoTH! --- ### FoodCTF Start Machine This is room for one of the King of the Hill...
  • KoTH Hackers
    ---- The Hackers KoTH box, to allow you to practice alone! ---- ### Task 1 Capture the flags Start Machine Capture the flags. Defend...
  • L2 MAC Flooding & ARP Spoofing
    --- Learn how to use MAC Flooding to sniff traffic and ARP Cache Poisoning to manipulate network traffic as a MITM. ---...
  • LazyAdmin
    ![](https://tryhackme-images.s3.amazonaws.com/room-icons/efbb70493ba66dfbac4302c02ad8facf.jpeg) ``` ──(kali㉿kali)-[~] └─$ rustscan -a...
  • Learn Rust
    TryHackMe room
  • Lian_Yu
    TryHackMe room
  • Library
    --- boot2root machine for FIT and bsides guatemala CTF --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icons/484c37bcb5b90fac35...
  • Linux File System Analysis
    TryHackMe room
  • Linux Fundamentals Part 3
    TryHackMe room
  • Linux Live Analysis
    TryHackMe room
  • Linux Process Analysis
    TryHackMe room
  • M4tr1x: Exit Denied
    TryHackMe room
  • MAL REMnux The Redux
    --- A revitalised, hands-on showcase involving analysing malicious macro's, PDF's and Memory forensics of a victim of Jigsaw Ransomware;...
  • MAL: Researching
    TryHackMe room
  • MalDoc: Static Analysis
    TryHackMe room
  • MD2PDF
    ---- TopTierConversions LTD is proud to present its latest product launch. --- ![222](https://tryhackme-images.s3.amazonaws.com/room-icon...
  • Memory Acquisition
    TryHackMe room
  • Memory Analysis Introduction
    TryHackMe room
  • Meow
    Download vpn from lab Let the configuration script run until you see the Initialization Sequence Completed message at the very end of...
  • Meow
    Download vpn from lab What does the acronym VM stand for? *Virtual Machine * What tool do we use to interact with the operating system...
  • Minotaur's Labyrinth
    ---- The Minotaur threw a fit and captured some people in the Labyrinth. Are you able to help Daedalus free them? ----...
  • MITRE
    TryHackMe room
  • MonitorsTwo
    ``` ┌──(witty㉿kali)-[~] └─$ rustscan -a 10.10.11.211 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---. .--. .-....
  • MonitorsTwo
    ``` ┌──(witty㉿kali)-[~] └─$ rustscan -a 10.10.11.211 --ulimit 5500 -b 65535 -- -A -Pn .----. .-. .-. .----..---. .----. .---. .--. .-....
  • Mouse Trap
    TryHackMe room
  • Mr. Phisher
    --- I received a suspicious email with a very weird looking attachment. It keeps on asking me to "enable macros". What are those? ---...
  • Nax
    TryHackMe room
  • NerdHerd
    ---- Hack your way into this easy/medium level legendary TV series "Chuck" themed box! ----...
  • Network Device Hardening
    TryHackMe room
  • Network Security Protocols
    TryHackMe room
  • Networking Core Protocols
    TryHackMe room
  • Ninja Skills
    ![](https://i.imgur.com/HNs4Vov.png) ![|333](https://i.imgur.com/JbCoSfv.png) (If you prefer to SSH into the machine, use the...
  • NIS - Linux Part I
    --- Enhance your Linux knowledge with this beginner friendly room! --- ![|222](https://tryhackme-images.s3.amazonaws.com/room-icons/a6046...
  • NoSQL Injection
    TryHackMe room
  • On-Premises IaC
    TryHackMe room
  • One Piece
    ---- A CTF room based on the wonderful manga One Piece. Can you become the Pirate King? ----...
  • Opacity
    ---- Opacity is a Boot2Root made for pentesters and cybersecurity enthusiasts. ----...
  • OpenVPN
    TryHackMe room
  • Osquery
    --- Learn how to use this operating system instrumentation framework to explore operating system data by using SQL queries. ---...
  • OverlayFS
    --- OverlayFS is a Linux kernel module that allows the system to combine several mount points into one, so that you can access all the...
  • Overpass
    ``` ***gobuster*** gobuster dir --url http://10.10.101.139 --wordlist /usr/share/wordlists/dirb/common.txt (found path /admin)...
  • Overpass 3 - Hosting
    TryHackMe room
  • OWASP Juice Shop
    TryHackMe room
  • PaperCut: CVE-2023-27350
    TryHackMe room
  • PassCode
    TryHackMe room
  • Passive Reconnaissance
    TryHackMe room
  • Pentesting Fundamentals
    TryHackMe room
  • Phishing Analysis Fundamentals
    TryHackMe room
  • Poster
    --- The sys admin set up a rdbms in a safe way. --- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/37983213b742f063a0b1fbd37a32...
  • PrintNightmare
    --- Learn about the vulnerability known as PrintNightmare (CVE-2021-1675) and (CVE-2021-34527). ---...
  • PrintNightmare, thrice!
    --- The nightmare continues.. Search the artifacts on the endpoint, again, to determine if the employee used any of the Windows Printer...
  • Prototype Pollution
    TryHackMe room
  • PS Eclipse
    ---- Use Splunk to investigate the ransomware activity. ---- ![](https://assets.tryhackme.com/additional/pseclipse/pseclipse-banner.png)...
  • Public Key Cryptography Basics
    TryHackMe room
  • Public Key Infrastructure
    TryHackMe room
  • Ra
    You have found WindCorp's internal network and their Domain Controller. Can you pwn their network? ![](https://i.imgur.com/eyf66N3.png)...
  • Racetrack Bank
    ---- It's time for another heist. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/4dc3ec5fff2bed9041875393f0f72a1e.jpeg)...
  • Red
    ---- A classic battle for the ages. ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/02262ebcc025ce939f26d08836df0fca.png)...
  • Red Team Recon
    TryHackMe room
  • Redeemer
    ``` blob:https://app.hackthebox.com/da9e33b6-5b40-44e1-851b-35f1e7f10447 ┌──(kali㉿kali)-[~] └─$ ping 10.129.87.135 PING 10.129.87.135...
  • Redeemer
    ``` blob:https://app.hackthebox.com/da9e33b6-5b40-44e1-851b-35f1e7f10447 ┌──(kali㉿kali)-[~] └─$ ping 10.129.87.135 PING 10.129.87.135...
  • Request Smuggling: WebSockets
    TryHackMe room
  • ret2libc
    ---- This room teaches basic return-oriented programming (ROP), exploitation of binaries and an ASLR bypass. ---- ### Task 1...
  • Revil_Corp
    ``` ┌──(kali㉿kali)-[~/Downloads] └─$ xfreerdp /u:administrator /p:'letmein123!' /v:10.10.101.235 [17:16:55:731] [111859:111868]...
  • RustScan
    TryHackMe room
  • Sakura Room
    TryHackMe room
  • SAST
    TryHackMe room
  • Sau
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ nmap 10.10.11.224 Starting Nmap 7.93 ( https://nmap.org ) at 2023-07-21 12:53 EDT Nmap scan report...
  • Sau
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ nmap 10.10.11.224 Starting Nmap 7.93 ( https://nmap.org ) at 2023-07-21 12:53 EDT Nmap scan report...
  • Secure Network Architecture
    TryHackMe room
  • Security Awareness
    TryHackMe room
  • Session Management
    TryHackMe room
  • Skynet
    --- A vulnerable Terminator themed Linux machine. --- ![|333](https://i.imgur.com/SNHDHoh.png) Hasta la vista, baby. Are you able to...
  • SOC L1 Alert Reporting
    TryHackMe room
  • Solar, exploiting log4j
    TryHackMe room
  • Splunk: Dashboards and Reports
    TryHackMe room
  • Splunk: Setting up a SOC Lab
    TryHackMe room
  • SQL Fundamentals
    TryHackMe room
  • SQL Injection
    TryHackMe room
  • SQL Injection Lab
    TryHackMe room
  • Squid Game
    TryHackMe room
  • SSTI
    TryHackMe room
  • Super Secret TIp
    TryHackMe room
  • Super-Spam
    ---- Defeat the evil Super-Spam, and save the day!! ---- ![](https://tryhackme-images.s3.amazonaws.com/room-icons/f8f1345b6e420c2f12ab1cd...
  • Supply Chain Attack: Lottie
    TryHackMe room
  • Sweettooth Inc.
    ---- Sweettooth Inc. needs your help to find out how secure their system is! ----...
  • Tardigrade
    ---- Can you find all the basic persistence mechanisms in this Linux endpoint? ----...
  • Templated
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(witty㉿kali)-[~/Downloads] └─$ ip addr | grep tun0 6: tun0: mtu...
  • Templated
    ``` ┌──(witty㉿kali)-[~/Downloads] └─$ sudo openvpn lab_wittyAle.ovpn ┌──(witty㉿kali)-[~/Downloads] └─$ ip addr | grep tun0 6: tun0: mtu...
  • Temple
    --- Can you gain access to the temple? --- ![](https://assets.tryhackme.com/room-banners/temple.jpg)...
  • The Hacker Methodology
    TryHackMe room
  • Threat Hunting: Pivoting
    TryHackMe room
  • Threat Intelligence Tools
    TryHackMe room
  • Tokyo Ghoul
    --- Help kaneki escape jason room --- ![](https://i.pinimg.com/originals/fd/65/ff/fd65ffab480607b6ec1eb33239e690f9.png)...
  • TryHack3M: Bricks Heist
    TryHackMe room
  • TryHack3M: Burg3r Bytes
    TryHackMe room
  • TryHack3M: Sch3Ma D3Mon
    TryHackMe room
  • TryHack3M: Subscribe
    TryHackMe room
  • TShark Challenge II: Directory
    TryHackMe room
  • TShark: Challenge I: Teamwork
    TryHackMe room
  • TShark: CLI Wireshark Features
    TryHackMe room
  • Tutorial
    TryHackMe room
  • UltraTech
    TryHackMe room
  • Unified
    ``` blob:https://app.hackthebox.com/9ea72111-db61-426b-b630-0afd1ffdd8a8 ┌──(kali㉿kali)-[~/hackthebox] └─$ rustscan -a 10.129.72.184...
  • Unified
    ``` blob:https://app.hackthebox.com/9ea72111-db61-426b-b630-0afd1ffdd8a8 ┌──(kali㉿kali)-[~/hackthebox] └─$ rustscan -a 10.129.72.184...
  • Vulnerability Capstone
    --- Apply the knowledge gained throughout the Vulnerability Module in this challenge room. --- ### Introduction...
  • VulnNet: Roasted
    --- VulnNet Entertainment quickly deployed another management instance on their very broad network... --- ### VulnNet: Roasted Start...
  • Weaponizing Vulnerabilities
    TryHackMe room
  • Weasel
    ---- I think the data science team has been a bit fast and loose with their project resources. ---- ### Task 1 Start the VM Start...
  • WebGOAT
    TryHackMe room
  • WebOSINT
    TryHackMe room
  • Welcome
    TryHackMe room
  • What is Networking?
    TryHackMe room
  • Willow
    ---- What lies under the Willow Tree? ---- ![](https://i.imgur.com/8C4TXFS.jpg) ![222](https://tryhackme-images.s3.amazonaws.com/room-ico...
  • Windows Event Logs
    --- Introduction to Windows Event Logs and the tools to query them. --- ![|222](https://tryhackme-images.s3.amazonaws.com/room-icons/09ca...
  • Windows User Activity Analysis
    TryHackMe room
  • Wireshark: The Basics
    TryHackMe room
  • WWBuddy
    TryHackMe room
  • Year of the Dog
    ---- Always so polite... ---- ![](https://i.imgur.com/riFhcXC.png) ### Task 1 Flags Start Machine Who knew? The dog has some bite!...
  • Year of the Owl
    ---- The foolish owl sits on his throne... ---- ![](https://assets.tryhackme.com/img/yoto.png)...
  • You're in a cave
    ---- A room with some ctf elements inspired in text based RPGs ---- ![](https://i.postimg.cc/dVKytjXS/Inacave-Banner.png)...
  • ZeroLogon
    --- Learn about and exploit the ZeroLogon vulnerability that allows an attacker to go from Zero to Domain Admin without any valid...