TRYHACKME
Write-ups
143 TryHackMe rooms, written up step by step: the commands that worked, why they worked, and what to take away. Flags stay hidden until you ask for them.
143 rooms
- 0day MediumLinux Exploit Ubuntu, like a Turtle in a Hurricane Answers only Read
-
0x41haz EasyLinux Simple Reversing Challenge Reverse engineering 5 min read · 10 steps Read
-
25 Days of Cyber Security EasyLinux Get started with Cyber Security in 25 Days - Learn the basics by doing a new, beginner friendly security challenge every day. CVE-2019-0232XSSFile uploadSMB 36 min read · 111 steps Read
-
A Bucket of Phish EasyLinux From the Hackfinity Battle CTF event. Answers only Read
-
Abusing Windows Internals HardWindows Leverage windows internals components to evade common detection solutions, using modern tool-agnostic approaches. 3 min read · 16 steps Read
-
Agent Sudo EasyLinux You found a secret server located under the deep sea. Your task is to hack inside the server and reveal the truth CVE-2019-14287Brute forceSteganographyPrivilege escalation 13 min read · 41 steps Read
-
Alfred EasyWindows Exploit Jenkins to gain an initial shell, then escalate your privileges by exploiting Windows authentication tokens. JenkinsMetasploitPrivilege escalation 8 min read · 15 steps Read
-
Analysing Volatile Memory MediumWindows Learn how the Windows OS manages volatile data in different files on disk. Explore how to extract and analyse volatile data from those artefacts. 6 min read · 18 steps Read
-
Annie
MediumLinux
Remote access comes in different flavors
Privilege escalation
2 min read · 9 steps
Read
-
Anonforce EasyLinux boot2root machine for FIT and bsides guatemala CTF Hash cracking 7 min read · 10 steps Read
-
Archangel EasyLinux Boot2root, Web exploitation, Privilege escalation, LFI Cron jobPrivilege escalation 11 min read · 13 steps Read
- Backtrack Info 5 min read · 10 steps Read
- BankGPT Info A customer service assistant used by a banking system. Answers only Read
-
Basic Pentesting EasyLinux This is a machine that allows you to practise web app hacking and privilege escalation SMBBrute forceHash crackingPrivilege escalation 14 min read · 42 steps Read
-
Battery MediumLinux CTF designed by CTF lover for CTF lovers Sudo abuse 7 min read · 4 steps Read
-
Biblioteca Info Shhh. Be very very quiet, no shouting inside the biblioteca. Answers only Read
-
Biteme MediumLinux Stay out of my server! Answers only Read
-
Blue EasyWindows Windows Exploitation Basics - Easy SMBMetasploit 4 min read · 16 steps Read
- Blueprint EasyWindows Hack into this Windows machine and escalate your privileges to Administrator. Answers only Read
-
Bounty Hacker EasyLinux You talked a big game about being the most elite hacker in the solar system. Prove it and claim your right to the status of Elite Bounty Hacker! Brute forceSudo abusePrivilege escalation 7 min read · 22 steps Read
-
Break Out The Cage EasyLinux Help Cage bring back his acting career and investigate the nefarious goings on of his agent! Sudo abuse 2 min read · 5 steps Read
-
Brooklyn Nine Nine EasyLinux This room is aimed for beginner level hackers but anyone can try to hack this box. There are two main intended ways to root the box Brute forceSudo abuse 4 min read · 31 steps Read
-
Bugged EasyLinux John likes to live in a very Internet connected world. Maybe too connected... 1 min read · 2 steps Read
-
C4ptur3 th3 fl4g EasyLinux A beginner level CTF challenge Steganography 7 min read · 17 steps Read
-
Capture! EasyWeb Can you bypass the login form? Brute force 2 min read · 10 steps Read
-
Careers in Cyber Info Learn about the different careers in cyber security 5 min read · 19 steps Read
-
Cheese CTF EasyLinux Inspired by the great cheese talk of THM! SQL injectionLFISudo abuse 8 min read · 38 steps Read
- CherryBlossom Info Boot-to-root with emphasis on crypto and password cracking. SMB 2 min read Read
-
Chocolate Factory EasyLinux A Charlie And The Chocolate Factory themed room, revisit Willy Wonka's chocolate factory! XSSBrute forceHash crackingSteganography 14 min read · 47 steps Read
-
Cicada 3301 Vol 1 MediumLinux A basic steganography and cryptography challenge room based on the Cicada 3301 challenges Steganography 6 min read · 22 steps Read
-
Cipher's Secret Message EasyAny Sharpen your cryptography skills by analyzing code to get the flag. Reverse engineering 4 min read · 13 steps Read
-
Clocky Info Time is an illusion. 5 min read · 5 steps Read
-
CMesS MediumLinux Can you root this Gila CMS box? Brute force 1 min read · 6 steps Read
-
Compiled EasyAny Strings can only help you so far. Answers only Read
-
ContainMe MediumLinux Where am I ? Catch me LFIDocker escapeSUIDPrivilege escalation 17 min read · 13 steps Read
-
Corridor EasyWeb Can you escape the Corridor? IDOR 2 min read · 10 steps Read
-
Crack The Hash Level 1 EasyAny Cracking hashes challenges Hash cracking 3 min read · 12 steps Read
-
Crack The Hash Level 2 MediumAny Advanced cracking hashes challenges and wordlist generation Brute forceHash cracking 24 min read · 29 steps Read
-
CTF collection Vol.2 MediumLinux Sharpening up your CTF skill with the collection. The second volume is about web-based CTF. 6 min read · 24 steps Read
-
Cupid's Matchmaker EasyWeb Use your web exploitation skills against this matchmaking service. XSS 2 min read · 8 steps Read
-
CyberHeroes EasyWeb Want to be a part of the elite club of CyberHeroes? Prove your merit by finding a way to log in! 3 min read · 5 steps Read
-
Dev Diaries EasyWeb Hunt through online development traces to uncover what was left behind. 3 min read Read
-
Dig Dug EasyAny Turns out this machine is a DNS server - it's time to get your shovels out! 2 min read · 3 steps Read
-
Directory HardAny Do you have what it takes to crack this case? Active DirectoryHash cracking 12 min read · 19 steps Read
-
Dogcat MediumLinux I made a website where you can look at pictures of dogs and/or cats! Exploit a PHP application via LFI and break out of a docker container. Answers only Read
-
Dumping Router Firmware MediumLinux Have you ever been curious about how your router works? What OS it runs? What makes it tick? Answers only Read
-
Eavesdropper EasyLinux Listen closely, you might hear a password! Privilege escalation 7 min read · 7 steps Read
-
Erlang OTP SSH CVE-2025-32433 EasyLinux Learn about and exploit Erlang/OTP SSH CVE-2025-32433 in a lab setup. CVE-2025-32433 5 min read · 9 steps Read
-
Event Horizon HardLinux Unearth the secrets beyond the Event Horizon. 2 min read · 7 steps Read
-
Evil GPT EasyLinux Practice your LLM hacking skills. Prompt injection 3 min read Read
-
Evil GPT v2 EasyWeb Put your LLM hacking skills to the test one more time. Prompt injection 1 min read Read
-
Ffuf EasyLinux Enumeration, fuzzing, and directory brute forcing using ffuf SQL injectionXSSLFICommand injection 22 min read · 30 steps Read
-
Flatline EasyWindows How low are your morals? MetasploitPrivilege escalation 14 min read · 15 steps Read
-
Game Buzz HardLinux Part of Incognito CTF File uploadDeserializationBrute force 7 min read · 7 steps Read
-
Hacker vs Hacker EasyLinux Someone has compromised this server already! Can you get in and evade their countermeasures? 1 min read · 5 steps Read
-
Hackfinity Battle MediumAny Welcome to the Hackfinity Battle CTF! Answers only Read
-
HackPark MediumWindows Bruteforce a websites login with Hydra, identify and use a public exploit then escalate your privileges on this Windows machine! Answers only Read
-
HaskHell MediumLinux Teach your CS professor that his PhD isn't in security. Sudo abuse 1 min read · 3 steps Read
- hc0n Christmas CTF HardLinux Hack the planet 1 min read · 3 steps Read
-
Hidden Deep Into my Heart EasyWeb Find what's hidden deep inside this website. 2 min read · 5 steps Read
-
Hijack EasyLinux Misconfigs conquered, identities claimed. Command injectionBrute forceSudo abusePrivilege escalation 17 min read · 12 steps Read
-
Hydra EasyLinux Learn about and use Hydra, a fast network logon cracker, to bruteforce and obtain a website's credentials Brute force 1 min read · 2 steps Read
-
Ice
EasyWindows
Deploy & hack into a Windows machine, exploiting a very poorly secured media server
CVE-2017-0143XSSBuffer overflowSMB
12 min read · 41 steps
Read
-
IDOR EasyWeb Learn how to find and exploit IDOR vulnerabilities in a web application giving you access to data that you shouldn't have. IDORHash cracking 7 min read · 18 steps Read
- Ignite EasyLinux A new start-up has a few issues with their web server Answers only Read
-
Inside a Computer System InfoWeb This room covers the basic components of a computer system. 1 min read · 7 steps Read
-
Introductory Networking Info An introduction to networking theory and basic networking tools 1 min read · 3 steps Read
-
Jacob the Boss EasyLinux Find a way in and learn a little more. CVE-2023-38408XSSMetasploitSUID 6 min read · 9 steps Read
-
Kenobi EasyLinux Walkthrough on exploiting a Linux machine. Enumerate Samba for shares, manipulate a vulnerable version of proftpd and escalate your privileges with path variable manipulation. SMBMetasploitSUIDPrivilege escalation 14 min read · 31 steps Read
-
Kiba EasyLinux Identify the critical security flaw in the data visualization dashboard, that allows execute remote code execution. CVE-0000-0000 3 min read · 9 steps Read
-
Lian Yu Info A beginner level security challenge Brute forceSteganographySudo abusePrivilege escalation 13 min read · 23 steps Read
-
Linux Shells EasyLinux Learn about scripting and the different types of Linux shells. 25 min read · 25 steps Read
-
Lo Fi EasyLinux Want to hear some lo-fi beats, to relax or study to? We've got you covered! LFI 2 min read · 8 steps Read
-
Looking Glass MediumLinux Step through the looking glass. A sequel to the Wonderland challenge room. Sudo abuseCron job 2 min read · 5 steps Read
-
Lookup EasyLinux Test your enumeration skills on this boot-to-root machine. Command injectionBrute forceMetasploitSUID 17 min read · 21 steps Read
-
Love Letter Locker EasyWeb Use your skills to access other users' letters. IDOR 2 min read · 4 steps Read
-
Madness EasyLinux Will you be consumed by Madness? SteganographyPrivilege escalation 9 min read · 24 steps Read
-
MD2PDF EasyWeb TopTierConversions LTD is proud to present its latest product launch. 4 min read · 7 steps Read
-
Metamorphosis MediumLinux Part of Incognito CTF Answers only Read
-
Metasploit— Exploitation EasyLinux Using Metasploit for scanning, vulnerability assessment and exploitation. CVE-1999-0506SQL injectionFile uploadSMB 26 min read · 17 steps Read
-
Metasploit— Meterpreter EasyLinux Take a deep dive into Meterpreter, and see how in-memory payloads can be used for post-exploitation. Active DirectorySMBHash crackingMetasploit 21 min read · 13 steps Read
-
Mindgames MediumLinux Just a terrible idea... 4 min read · 3 steps Read
- mKingdom Info SMBSudo abuse 8 min read · 2 steps Read
-
Mr Robot CTF MediumLinux Based on the Mr. Robot show, can you root this box? Brute forceSudo abuse 2 min read · 5 steps Read
-
Nax MediumLinux Identify the critical security flaw in the most powerful and trusted network monitoring software on the market, that allows an authenticated user to execute remote code execution. CVE-0000-0000Metasploit 8 min read · 11 steps Read
-
Neighbour EasyWeb Check out our new cloud service, Authentication Anywhere. Can you find other user's secrets? IDOR 3 min read · 4 steps Read
-
Net Sec Challenge MediumLinux Practice the skills you have learned in the Network Security module. Brute force 5 min read · 12 steps Read
-
Ninja Skills EasyLinux Practise your Linux skills and complete the challenges. 11 min read · 14 steps Read
-
Oh My WebServer MediumLinux Can you root me? CVE-2021-38647 4 min read · 4 steps Read
-
Opacity Info Opacity is a Boot2Root made for pentesters and cybersecurity enthusiasts. File uploadSMBBrute forceHash cracking 12 min read · 14 steps Read
-
Overheard at Breakfast Easy Two strangers. One conversation. One profile they never meant to reveal. 3 min read · 6 steps Read
-
Pentesting Fundamentals EasyAny Learn the important ethics and methodologies behind every pentest. PhishingPrivilege escalation 13 min read · 13 steps Read
-
Pickle Rick EasyLinux A Rick and Morty CTF. Help turn Rick back into a human! 1 min read · 4 steps Read
-
Poster EasyLinux The sys admin set up a rdbms in a safe way. Brute forceMetasploitSudo abusePrivilege escalation 21 min read · 27 steps Read
-
Precision HardLinux Practice your advanced Linux Exploit Development skills. Answers only Read
-
Principles of Security EasyAny Learn the principles of information security that secures data and protects systems from abuse 4 min read · 6 steps Read
-
Psycho Break EasyLinux Help Sebastian and his team of investigators to withstand the dangers that come ahead. LFISteganography 13 min read · 48 steps Read
-
Publisher EasyLinux Test your enumeration skills on this boot-to-root machine CVE-2023-27372Docker escapeSUIDPrivilege escalation 11 min read · 41 steps Read
-
Putting it all together Info Learn how all the individual components of the web work together to bring you access to your favourite web sites. 9 min read · 12 steps Read
-
Red Stone One Carat MediumLinux First room of the Red Stone series. Hack ruby using ruby. Brute forceSUIDPrivilege escalation 9 min read · 15 steps Read
-
Red Team Fundamentals EasyAny Learn about the basics of a red engagement, the main components and stakeholders involved, and how red teaming differs from other cyber security engagements. Active DirectoryPhishing 17 min read · 18 steps Read
-
Rootme EasyLinux A ctf for beginners, can you root me? File uploadSUIDSudo abuse 6 min read · 11 steps Read
- Roundcube— CVE-2025-49113 EasyLinux Exploit CVE-2025-49113 in a lab environment. Answers only Read
-
Search Skills EasyAny Learn to efficiently search the Internet and use specialized search engines and technical docs. CVE-2024-29988 15 min read · 19 steps Read
-
Silver Platter EasyLinux Can you breach the server? CVE-2024-36042Docker escapeActive DirectoryBrute force 7 min read · 14 steps Read
-
Simple CTF EasyLinux Beginner level ctf CVE-2019-9053SQL injectionSudo abuse 6 min read · 11 steps Read
-
Slingshot EasyLinux Can you retrace an attacker's steps after they enumerate and compromise a web server? LFIBrute force 5 min read · 14 steps Read
-
Smol MediumLinux Test your enumeration skills on this boot-to-root machine. XSSSSRFWordPressBrute force 1 min read Read
-
Soupedecode 01 EasyWindows Test your enumeration skills on this boot-to-root machine. Active DirectorySMBBrute forceHash cracking 10 min read · 19 steps Read
-
Speed Chatting EasyWeb Can you hack as fast as you can chat? 3 min read · 6 steps Read
-
Startup EasyLinux Abuse traditional vulnerabilities via untraditional means. File uploadSteganographySudo abuse 15 min read · 49 steps Read
-
Steel Mountain EasyLinux Hack into a Mr. Robot themed Windows machine. Use metasploit for initial access, utilise powershell for Windows privilege escalation enumeration and learn a new technique to get Administrator access. CVE-2014-6287SMBMetasploitPrivilege escalation 10 min read · 10 steps Read
-
The CIA Triad Info Understand the CIA Triad and how it shapes cyber security mindset. 3 min read · 12 steps Read
-
The Greenholt Phish EasyWindows Use the knowledge attained to analyze a malicious email. 4 min read · 13 steps Read
- The Guestbook MediumWeb / AI Prompt injection 10 min read · 10 steps Read
-
The Phishing Pond EasyWeb Catch the phish before the phish catches you. Phishing 2 min read · 13 steps Read
-
The Great Escape MediumLinux Our devs have created an awesome new site. Can you break out of the sandbox? Docker escape 3 min read · 4 steps Read
-
The London Bridge MediumLinux The London Bridge is falling down Brute force 1 min read · 4 steps Read
-
The Marketplace MediumLinux Can you take over The Marketplace's infrastructure? Docker escapeSudo abuse 2 min read · 4 steps Read
-
The Server From Hell MediumLinux Face a server that feels as if it was configured and deployed by Satan himself. Can you escalate to root? Hash cracking 2 min read · 5 steps Read
-
The Sticker Shop EasyLinux Can you exploit the sticker shop in order to capture the flag? 1 min read · 2 steps Read
-
Tomghost EasyLinux Identify recent vulnerabilities to try exploit the system or read files that you should not have access to. 1 min read · 4 steps Read
-
Toolbox— Vim EasyLinux / Windows Learn vim, a universal text editor that can be incredibly powerful when used properly. From basic text editing to editing of binary files, Vim can be an important arsenal in a security toolkit. 16 min read · 42 steps Read
-
TryHeartMe EasyWeb Access the hidden item in this Valentine's gift shop. 3 min read · 8 steps Read
-
UltraTech MediumLinux The basics of Penetration Testing, Enumeration, Privilege Escalation and WebApp testing 4 min read · 13 steps Read
-
Valenfind MediumWeb Can you find vulnerabilities in this new dating app? LFI 6 min read · 6 steps Read
-
Void Execution MediumLinux Learn how to bypass restrictions in Linux exploit development. Answers only Read
-
Vulnerabilities 101 EasyAny Understand the flaws of an application and apply your researching skills on some vulnerability databases. PhishingPrivilege escalation 6 min read · 5 steps Read
- VulnNet Active Info SMBHash crackingMetasploit 6 min read Read
- VulnNet Endgame Info Answers only Read
-
W1seGuy EasyLinux A w1se guy 0nce said, the answer is usually as plain as day. 1 min read · 4 steps Read
-
Watcher MediumLinux A boot2root Linux machine utilising web exploits along with some common privilege escalation techniques Sudo abuseCron job 17 min read Read
-
Web Application Basics EasyWeb Learn the basics of web applications: HTTP, URLs, request methods, response codes, and headers. SQL injectionXSSPhishing 34 min read · 39 steps Read
-
Web Application Security EasyWeb Learn about web applications and explore some of their common security issues. 1 min read · 4 steps Read
-
Wekor MediumLinux CTF challenge involving SQLi, WordPress, vhost enumeration and recognizing internal services. SQL injectionWordPressHash crackingSudo abuse 1 min read · 6 steps Read
-
Welcome EasyLinux Learn how to use a TryHackMe room to start your upskilling in cyber security. Answers only Read
- Wgel EasyLinux Can you exfiltrate the root flag? Answers only Read
-
Whiterose EasyLinux Yet another Mr. Robot themed challenge. CVE-2022-29078SQL injectionXSSSSTI 9 min read · 23 steps Read
-
Windows Fundamentals 1 InfoWindows In part 1 of the Windows Fundamentals module, we'll start our journey learning about the Windows desktop, the NTFS file system, UAC, the Control Panel, and more.. 4 min read · 21 steps Read
-
Wonderland CTF MediumLinux Fall down the rabbit hole and enter wonderland SUIDSudo abuseCron jobPrivilege escalation 15 min read · 65 steps Read
-
Year of the Dog HardLinux Always so polite... Answers only Read
-
Year of the Owl HardWindows The foolish owl sits on his throne... Answers only Read
-
Zeno MediumLinux Do you have the same patience as the great stoic philosopher Zeno? Try it out! Sudo abuse 2 min read · 7 steps Read
No room matches that. Try a shorter search.