Toc2 - TryHackMe
User Flag
First, we use nmap to see which ports are open.
We notice that ports 22 and 80 are open. Since we hardly have something to explore on SSH, we start by accessing the website.
Here we collect a username and password (cmsmuser:devpass) and m...
b1d0ws.hashnode.dev4 min read