mKingdom
A writeup for the room mKingdom on TryHackMe.
Beginner-friendly box inspired by a certain mustache man.
What is user.txt?
Scanning with nmap
The first step is to scan the target with nmap:
nmap -sS TARGET_IP
gobuster dir -w /usr/share/wordlists/dirb/big.txt -u http://10.10.250.210:85
admin password
/var/www/html/app/castle/application/config
https://vulners.com/hackerone/H1:768322