Preignition
Initial Scan
Task 1
What is considered to be one of the most essential skills to possess as a Penetration Tester?
Answer: Dir busting
Task 2
What switch do we use for nmap's scan to specify that we want to perform version detection
nmap --help
Answer: -sV
Task 3
What does Nmap report is the service identified as running on port 80/tcp?
Found in initial scan
Answer: http
Task 4
What server name and version of service is running on port 80/tcp?
Found in initial scan
Answer: nginx 1.14.2
Task 5
What switch do we use to specify to Gobuster we want to perform dir busting specifically?
Answer: dir
Task 6
What page is found during our dir busting activities?
Answer: admin.php
Task 7
What is the HTTP status code reported by Gobuster for the discovered page?
Previous screenshot
Answer: 200
Task 8
Submit root flag
When browsing to (IP)/admin.php
Took a stab in the dark with admin:admin
Answer: 6483bee07c1c1d57f14e5b0717503c73
Last updated