Simple CTF is a beginner-friendly capture-the-flag machine. It teaches web enumeration, exploiting CMS vulnerabilities, and basic Linux privilege escalation. Perfect for building confidence!
Walkthrough
Attack Summary
1
ScanFind web + SSH on port 2222
2
Web EnumDiscover CMS Made Simple
3
ExploitSQL injection to get credentials
4
AccessSSH with discovered creds
5
PrivescVim sudo escape
Knowledge Check
Key Takeaways
- Check non-standard ports - SSH isn't always on 22
- Identify CMS versions and search for known exploits
- searchsploit helps find public exploits quickly
- sudo vim is a classic privilege escalation vector