Tally — HackTheBox Writeup

Source

Synopsis

Skills Learned

  • Sharepoint Enumeration
  • MSSQL Exploits
  • Evading AVs

Enumeration

Nmap
gobuster
viewlsts page
Documents Directory
ftp-details
ftp-user
ftp login
contents
download ftp
doto.txt
keepass files
keepass password DB version
keepass hash
hash cracking
install keepass
keepass
shares
shares password
smb share
tester
strings
mssql creds
interactive shell
error
sp_configure
whoami
/priv

Initial Access

nishang
edit ps1
http server
netcat listner
invoke
got hit
shell
user flag

Privilege Escalation

desktop files
nishang
netcat listener
edit warmup script
time
admin access
root flag

Reference

--

--

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store