Derek Sutton
Joint Senior Clerk
+44 (0) 207 822 7327
nmap -sV -p- 10.10.11.224 This revealed several open ports, with notable services including an HTTP server running on port 80 and a PDF-related service on port 8080.
PDFY - A Challenging PDF-themed Machine on Hack The Box pdfy htb writeup upd
PDFY is a medium-difficulty machine on Hack The Box that revolves around a PDF-themed challenge. This write-up aims to provide a step-by-step walkthrough of how I exploited this machine to gain root access. nmap -sV -p- 10
The first step in any penetration test is to perform an initial scan of the target machine to identify open ports and services. Using Nmap, I ran a basic scan: The first step in any penetration test is
The real breakthrough came when I noticed a peculiar PDF upload functionality on the web server. Users could upload PDF files, which were then converted to text. Intrigued, I decided to test this functionality with a malicious PDF.
Derek Sutton
Joint Senior Clerk
+44 (0) 207 822 7327
Adam Sloane
Joint Senior Clerk
+44 (0) 207 822 7326
Dean Tolman
Deputy Senior Clerk
+44 (0) 207 822 7331
Billy Brian
Deputy Senior Clerk
+44 (0) 207 822 7339
Danny Compton
Deputy Senior Clerk
+44 (0) 207 822 7338
Marc Armstrong
Clerk
+44 (0) 207 822 7330
Adam Fuschillo
Clerk
+44 (0) 207 822 7329
Sophie Reeve
Clerk
+44 (0) 207 822 7324
Joseph Sutton
Clerk
+44 (0)20 7822 0804
Toby Dennison
Clerk
+44 (0) 207 822 7328
Daniel Higgins
Clerk
+44 (0) 207 822 7322
Lilly-Grace Hilliard
Clerk
+44 (0)20 7822 7234