TryHackMe - Light

Channel:
Subscribers:
1,940
Published on ● Video Link: https://www.youtube.com/watch?v=QwahEkC-qA0



Duration: 0:00
153 views
1


This is the Light (Or lightroom) box from TryHackMe.

A very informal run through of a box containing a service with a SQLite injection, and some basic protections, with lots of fumbling along the way (Knowing I was recording it made me weirdly nervous, resulting in many mistakes...).

This box was very weird as I thought I'd have to somehow get a shell or use the injection to read some sensitive information, but rather just happened upon the flag whilst trying to look for other SSH users.

Username / Password columns were guessed being common defaults.