Jurassic Park Tryhackme ⚡ Works 100%
unzip backup.zip Inside the unzipped directory, you'll find a file called dinosaur.cfg . This file contains credentials:
ssh park@<machine_IP> In this task, we'll escalate privileges. Step 1: Enumeration Perform enumeration to gather more information about the system: jurassic park tryhackme
sudo -l This will list the commands that can be executed with sudo privileges. Notice that the park user can execute the following command with sudo privileges: unzip backup
nmap -sV <machine_IP> Replace <machine_IP> with the IP address provided by TryHackMe. Notice that the park user can execute the
username: park password: L1a5hT9h Use the credentials to log in via SSH:
http://<machine_IP> You'll see a simple web page with a "Welcome to Jurassic Park" message. Perform directory bruteforcing using a tool like dirbuster or gobuster :
sudo python jurassic.py This will give you a root shell. In this task, we'll continue to escalate privileges. Step 1: Root Access You've already obtained a root shell. Now, find the root.txt flag:
