Posts

Showing posts from September, 2024

Pickle Rick - A Rick and Morty CTF. Help turn Rick back into a human!

Image
  Pickle Rick - CTF Challenge! To start we do a Connectivity testing to our target machine. To check the services running on a machine, we perform an `nmap` scan. To search through other directories, we use `gobuster`. I tried several different directory lists to discover additional directories, including: - `/usr/share/wordlists/dirbuster/directories.jbrofuzz` - `/usr/share/wordlists/dirbuster/directory-list-1.0.txt` - `/usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt` - `/usr/share/wordlists/dirbuster/directory-list-2.3-small.txt` - `/usr/share/wordlists/dirbuster/directory-list-lowercase-2.3-medium.txt` - `/usr/share/wordlists/dirbuster/directory-list-lowercase-2.3-small.txt` We conducted an inspection to examine the code and discovered an interesting detail—a username embedded within it. I attempted to brute-force SSH using Hydra, but the attempt was unsuccessful. I was unable to locate the directory using Dirsearch and Gobuster, but I did find accessible paths like...