ZeroBox

Bounty Hacker writeup and attack path

Bounty Hacker is a easy Linux machine on TryHackMe that I solved myself. This page is my short attack path summary and the techniques it trains.

PlatformTryHackMe
Operating systemLinux
DifficultyEasy
Time to user18m
Time to root45m
User owned2026-08-15
Root owned2026-08-15

Attack path summary

Anonymous FTP reveals task.txt and locks.txt. Brute force SSH user lin with hydra, then abuse tar sudo privileges.

Techniques

FTP-Anonymous Hydra Tar-SUID

Track Bounty Hacker in ZeroBox. Log your progress, notes and flags offline in your browser, and follow the pentest methodology checklist.

Open ZeroBox

Bounty Hacker belongs to TryHackMe. This page contains only my own notes.