CTF-Writeups/TryHackMe/Throwback/THROWBACK-SEC-BREACH.md
2021-03-16 22:13:44 +05:00

1.2 KiB

TryHackMe-THROWBACK-SEC-BREACH

Now we need to run this tool LeetLinked

This returned as a list of emails

But we need to convert the format which found from a note in dosierk's documents. So we will be using namely to generate emails in a proper format using names we found from leetlinked

Now this in HRE format but there are other formats as well

In this I generated a list of potential emails now only thing left for us to do is to visit breachgtfo.local and check for breached emails

We can use wfuzz to check for response length

We get the same amount of Characters so we can hide 4950 and see if there are characters with a length other than that

And we have found a request with different characters

Now if we try to login on thier corporate mail

s