[HTB] Tabby — Writeup

bigb0ss
5 min readFeb 16, 2021

This was an easy difficulty box. It was pretty easy and straight-forward box. Good learning path for:

  • LFI — File Enumeration
  • Tomcat JSP Script Exploit
  • Password Protected .zip File Abuse
  • Linux LXD Container Breakout

Initial Recon

Nmap

--

--

bigb0ss

OSWE | OSCE | OSCP | CREST | Lead Offensive Security Engineer — All about Penetration Test, Red Team, Cloud Security, Web Application Security