TryHackMe OSCP Retro Walkthrough

TryHackMe OSCP Retro Walkthrough

Just finished the Retro machine on TryHackMe and wrote this clean walkthrough.

In short: I found three independent ways to land SYSTEM on Windows Server 2016 :

WordPress web path (credentials in blog comments → PHP reverse shell)

RDP route using those same creds followed by a kernel exploit (CVE-2017-0213)

Clever Certificate Publisher / UAC UI trick that spawns SYSTEM-level Internet Explorer and gives you cmd.exe from the Save dialog.

Full play-by-play and commands in the writeup.

0 comments

Leave a comment

Our Best Pick of Cyber Security Notes

Cyber Security Certification Notes
The Unofficial Offensive Security AI Red Teamer Study Notes + FREE Cheat Sheet

Cyber Security Certification Notes

Cyber Security Study Guides
The Kali Linux Pentesting Cheat Sheet

Cyber Security Study Guides

AI & ML Study Guides
Master AI for Content Creation, Business & Marketing

AI & ML Study Guides

IT Study Guides
The Definitive Networking Cheat Sheet (Tools)

IT Study Guides