Writeup: MyMachine

H0j3n
3 min readSep 27, 2020

Link to the machine:

Enumeration

By nmap I found 2 ports open

Web Fuzzer

Since the page shown apache default page I have tried to bruteforce directory using dirsearch using common wordlist.

dirsearch

Let’s take a look at robots.txt. Nothing special but it saying enumerate more!!

Let’s take a look at user.txt. I found base32 inside user.txt. It is base32 so we can decode it using CyberChef.

I have stuck for a while here so I use a different wordlist which big wordlist from Seclist and found a new directory /findme

--

--

H0j3n
H0j3n

Written by H0j3n

CTF Player 🚩 || TRYHACKME || HACKTHEBOX || VULNHUB || STUDENT

No responses yet