[TryHackMe]-[Introductory Researching]

B站視頻ide

1. Example Research Question

#1 In the Burp Suite Program that ships with Kali Linux, what mode would you use to manually send a request (often repeating a captured request numerous times)?
repeater
#2 What hash format are modern Windows login passwords stored in?
ntlm
#3 What are automated tasks called in Linux?
cron jobs
#4 What number base could you use as a shorthand for base 2 (binary)?
base 16
#5 If a password hash starts with $6$, what format is it (Unix variant)?
Sha512cryptui

2. Vulnerability Searching

#1 What is the CVE for the 2020 Cross-Site Scripting (XSS) vulnerability found in WPForms?
CVE-2020-10385
#2 There was a Local Privilege Escalation vulnerability found in the Debian version of Apache Tomcat, back in 2016. What's the CVE for this vulnerability?
CVE-2016-1240
#3 What is the very first CVE found in the VLC media player?
CVE-2007-0017
#4 If I wanted to exploit a 2020 buffer overflow in the sudo program, which CVE would I use?
CVE-2019-18634this

3. Manual Pages

#1 SCP is a tool used to copy files from one computer to another.What switch would you use to copy an entire directory?
-r
#2 fdisk is a command used to view and alter the partitioning scheme used on your hard drive.What switch would you use to list the current partitions?
-l
#3 nano is an easy-to-use text editor for Linux. There are arguably better editors (Vim, being the obvious choice); however, nano is a great one to start with.What switch would you use to make a backup when opening a file with nano?
-B
#4 Netcat is a basic tool used to manually send and receive network requests. What command would you use to start netcat in listen mode, using port 12345?
nc -l -p 12345scala

本站公眾號
   歡迎關注本站公眾號,獲取更多信息