Post

HTB Postman Walkthrough - Redis Misconfigs & SSH Cracking

HTB Postman Walkthrough - Redis Misconfigs & SSH Cracking

Welcome to my latest walkthrough! In this video, we tackle the Postman machine from Hack The Box.

We explore standard enumeration, find a hidden Webmin instance, and exploit a Redis misconfiguration to write SSH keys directly to the server. Finally, we crack a protected backup key to gain root access.

Watch the Walkthrough

Timestamps

TimeTopic
00:00Intro and connecting to HTB
01:53NMAP Scan Techniques
05:00Going over NMAP Output
07:15Port 80 Enumeration
10:36Port 10000 Enumeration
12:00Redis Overview & Theory
18:29Back to Port 80
18:52Port 10000 Revisit
22:09Exploiting Redis Misconfigurations
33:55Redis SSH Enumeration
39:45Cracking id_rsa.bak
41:55SSH as Matt / Privesc to Root

Key Concepts

  • NMAP Scanning: Advanced techniques for service discovery.
  • Redis Exploitation: Using remote command execution to drop SSH keys.
  • Privilege Escalation: Cracking id_rsa passphrases.

Check out more of my work on YouTube or connect with me on LinkedIn.

This post is licensed under CC BY 4.0 by the author.