DEATHESTHER
← All write-ups

TRYHACKME WRITE-UP

The Phishing Pond - TryHackMe writeup

Catch the phish before the phish catches you.

EasyWebPhishing2 min read

Open the room on TryHackMe ↗ View on GitHub

Room Introduction

The Phishing Pond is designed to build practical phishing-detection skills through a set of real-world email examples. The room teaches how attackers craft deceptive messages and which red flags to look for when reviewing suspicious emails. It focuses on the most common phishing tactics, including urgency in subject lines, look-alike domains, display-name impersonation, malicious attachments, compromised sender accounts, and offers that attempt to gather personal or financial information.

The goal of the lab is simple. Review each email, decide whether it is legitimate or a phishing attempt, and identify the indicators that reveal the attacker’s intent. At the end of the challenge, the final flag is provided once all emails are correctly classified.

Starting the Phishing Analysis

begin challange

I reached the main interface of the room and began working through the emails. Let’s dive into Level 1.

Level 1

image

This is a phishing email.

Reason: It impersonates an executive and requests an urgent wire transfer.

Level 2

image

This is not a phishing email.

Level 3

image

This is not a phishing email.

Level 4

image

This is not a phishing email.

Level 5

image

This is a phishing email.

Reason: Contains an attachment and asks to enable macros.

Level 6

image

This is a phishing email.

Reason: Contains a suspicious third-party survey link.

Level 7

image

This is a phishing email.

Reason: Offers require sensitive personal or banking details.

Level 8

image

This is a phishing email.

Reason: Redirects to a malicious password rest page.

Level 9

image

This is a phishing email.

Reason: Link uses a deceptive to mimic a payment portal.

Level 10

image

This is a phishing email.

Reason: Asks to enable macros in an attachment.

image

Flag

THM{i_phish_you_not}
image

Thanks for reading. I hope this walkthrough helps sharpen your phishing analysis skills and gives you a clearer view of how real-world email threats operate.