Breach Umbrella Corp's time-tracking server by exploiting misconfigurations around containerisation.
https://tryhackme.com/room/umbrella
Links on the video:
Reverse Shell Through a Node.js Math Parser:
https://www.truesec.com/hub/blog/reverse-shell-through-a-node-js-math-parser
Docker Registry HTTP API
https://distribution.github.io/distribution/spec/api/
Eval:
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/eval
#tryhackme