This a is a video walk-through of TryHackMe's Snapped "Phish"-ing Line. If you prefer a written walk-through, you can find it here: https://readysetexploit.gitlab.io/hom...
Buy Me A Coffee :)
https://www.buymeacoffee.com/hadrian3689
0:00 Intro
1:00 Reviewing files
2:15: Reviewing emails and attachments
5:40 Reviewing malicious link
7:00 Submitting a bogus password
7:50 Playing around with the URL. Found WordPress domain
9:00 Found ZIP file
9:45 Reviewing ZIP file and domain using VirusTotal
12:15 Finding logged credentials
13:25 Reviewing ZIP file and source code
14:35 Reviewing how credentials are logged
15:30 Finding other emails used for logging
19:00 Reviewing different pages on the site. Finding flag file