mirror of
https://github.com/AbdullahRizwan101/CTF-Writeups
synced 2024-11-22 20:13:02 +00:00
1.2 KiB
1.2 KiB
TryHackMe-THROWBACK-SEC-BREACH
Now we need to run this tool LeetLinked
This returned as a list of emails
But we need to convert the format which found from a note in dosierk's documents. So we will be using namely
to generate emails in a proper format using names we found from leetlinked
Now this in HRE format but there are other formats as well
In this I generated a list of potential emails now only thing left for us to do is to visit breachgtfo.local
and check for breached emails
We can use wfuzz
to check for response length
We get the same amount of Characters so we can hide 4950
and see if there are characters with a length other than that
And we have found a request with different characters
Now if we try to login on thier corporate mail
s