@RealTryHackMe #AdventOfCyber Series: Challenge 13 – They Lost The Plan! #TisTheSeasonForHacking

Another day, another challenge…

In this post, we’re starting a new series the Advent of Cyber series that is hosted by TryHackMe. This is the third year of the Advent of Cyber where a challenge is released everyday leading to Christmas. In total there will be 25 challenges. In these challenges, we’re McSkidy an elf trying to save Christmas.

In our thirteenth challenge, we’re presented with a scenario where the Grinch has downgraded the permissions for the rough draft of the disaster recovery plan that McSkidy was working on. Oh no!

The topic explored in this challenge is elevation of privileges. There are two types of elevation of privileges. Vertical and horizontal elevation of privileges. Horizontal is where we go from one user to another with the same permissions. Vertical escalation of privileges is where we start as a standard user, and we elevate to an administrator (Windows) or root (Linux). The second type of escalation of privileges (vertical) will be useful for this challenge.

Can McSkidy escalate her privileges to retrieve the disaster recovery plan? Find out below!

