Cyborg - TryHackMe

5 min readJan 27, 2021

A box involving encrypted archives, source code analysis and more.

This is the write-up for TryHackMe’s room named Cyborg.This can be found here:-


Deploy the the box and run NMAP against the target IP.


# Identify the list of services running on the target machine
sudo nmap -sS -Pn -T4 -p-

nmap all ports

# Perform further information gathering on the open ports identified above
sudo nmap -O -A -Pn -T4 -p22,80

nmap port 22 and 80 OS detection, version detection, script scanning

We have only 2 services running SSH on port 22 and HTTP on port 80.This info is sufficient to answer first 3 questions.SSH version looks relatively new and thus let’s enumerate the Web Server further by running a gobuster scan.


gobuster dir -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -u -t 40




Software Developer having keen interest in Security, Privacy and Pen-testing. Certs:- Security+,PenTest+,AZ900,AZ204,AZ500