Paddelify – TryHackMe challenge

Description You’ve signed up for the Padel Championship, but your rival keeps climbing the leaderboard. The admin panel controls match approvals and registrations. Can you crack the admin and rewrite the draw before the whistle?Note: In case you want to start over or restart all services, visit http://10.82.162.200/status.php Directories enumeration First I used common feroxbuster … Read more

Rabbitstore – TryHackMe CTF wrtieup

Description Level: mediumDemonstrate your web application testing skills and the basics of Linux to escalate your privileges. Initial setup When you are trying to access website using IP you can see that there is a visible domain: cloudsite.thm.I added this domain it to /etc/hosts. Website cloudsite.thm Main website looks like a simple company page. Checking … Read more