🖼 Scenario

We are engaged in a black box test of the subnet: 172.16.64.0/24

Find the flag on each machine.

Some remote code execution is required.

Some machines are instantly exploitable and some will require exploiting other ones first to get valuable info to move forward.

Move on to the next one if stuck.

Read the flag file and make sure to look for other important information as well.

📊 Goals

✔️ Discover and exploit all the machines on the network (if you read the flag you have successfully exploited the machine)

✔️ Read all the flag files (one per machine)

🧠 What you will learn

☑️ How to exploit Apache Tomcat

☑️ How to exploit SQL server

☑️ Post-exploitation discovery

☑️ Arbitrary file upload exploitation

🧰 Tools