Post

TryHackMe: Advent Of Cyber 2023 - Day 11

AntarctiCrafts’ technology stack was very specialised. It was primarily focused on cutting-edge climate research rather than prioritising robust cyber security measures.

As the integration of the two infrastructure systems progresses, vulnerabilities begin to surface. While AntarctiCrafts’ team displays remarkable expertise, their small size means they need to emphasise cyber security awareness.

Throughout the room, you’ll see that some users have too many permissions. We addressed most of these instances in the previous audit, but is everything now sorted out from the perspective of the HR user?

Questions

What is the hash of the vulnerable user?

  • 03E805D8A8C5AA435FB48832DAD620E3

What is the content of flag.txt on the Administrator Desktop?

  • THM{XMAS_IS_SAFE}

If you enjoyed this task, feel free to check out the Compromising Active Directory module!

  • No answer needed

Van Sprinkles left some stuff around the DC. It’s like a secret message waiting to be unravelled!

  • No answer needed
This post is licensed under CC BY 4.0 by the author.