March 28, 2024, 5:04 p.m. | Serdar Çatal

System Weakness - Medium systemweakness.com

Difficulty: Medium

As always, let’s start with nmap:

“nmap scan result”

There are open ports on 22, 80 and 3306. Port 80 has a web server:

Okay, it is just a regular webpage. But when I put my cursor on the employment section on the navigation bar, I got this:

So, I got a hostname and a subdomain. Do not forget to add this to the “/etc/hosts” file on your device:

<IP_ADDRESS> empline.thm job.empline.thm

Let’s have a look at “job.empline.thm”: …

cybersecurity red team tryhackme tryhackme-walkthrough vulnerability

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Sr. Staff Firmware Engineer – Networking & Firewall

@ Axiado | Bengaluru, India

Compliance Architect / Product Security Sr. Engineer/Expert (f/m/d)

@ SAP | Walldorf, DE, 69190

SAP Security Administrator

@ FARO Technologies | EMEA-Portugal