TryHackMe - Dig Dug (easy)
Published on by logoseq
This machine will teach you how to query a DNS server
Walkthrough
Summary:
You have to query the DNS server using nslookup or dig command to get the information needed.
In this challange you'll learn how to query a DNS server. After I did once again the Passive Reconnaissance room, it was quite straightforward.
Description:
First of all, I added givemetheflag.com to the /etc/hosts file, as the description was saying.
data:image/s3,"s3://crabby-images/9778e/9778e79074fd60e430a04fc308b2f78cdb669384" alt="I added givemetheflag.com to /etc/hosts file"
I did a basic scan with nmap and I found 53 as open port, I searched and found out that usually port 53 is used for DNS servers:
Then, I got the flag with this with this command:
dig @10.10.26.77 givemetheflag.com
and the flag was in the result
data:image/s3,"s3://crabby-images/97ec2/97ec2f6e00478a61fc22d8b2febd5fd2b7b081f9" alt="Result from querying the DNS server using this command: dig @10.10.26.77 givemetheflag.com"
As always, I was curious and I tried nslookup
to see if I could get the flag using another command and I got it:
nslookup -type=A givemetheflag.com 10.10.26.77
data:image/s3,"s3://crabby-images/a2214/a2214832c9327932459af23e9b2c299b75098f3e" alt="I got the falg using nslookup"