Skip to main contentSkip to main content
Room Banner
Back to all walkthroughs
Room Icon

Bulletproof Penguin

Premium room

Can you harden this Linux server?

easy

45 min

5,966

User profile photo.
User profile photo.

To access material, start machines and answer questions login.

You have been hired by the XYZ company as a consultant to harden the Bulletproof Penguin, an old server that's never been hacked (as far as we know). As you arrive, the company's IT crew hands you a vulnerability scan report that was recently made against the server, and asks you to implement solutions to each finding. To help you, they've added notes on their discussions for each of the vulnerabilities. Armed with only your laptop, you are given access to the server with the following credentials:

THM key
Username
Password p3ngu1n

Note: Be sure to click the Start Machine button at the top of the task.

To help you on your quest, the crew mentions that the person who did the vulnerability scan installed a script that validates if the solutions to the reported vulnerabilities have been correctly implemented. Each time you are done implementing a solution, just run the get-flags command from the server's console to get a flag.

Room Prerequisites

This challenge is based on the rooms of the Network and System Security module. Be sure to check them if you feel stuck in the challenge.

Answer the questions below
Click and continue learning!

Ready to learn Cyber Security?

The Bulletproof Penguin room is only available for premium users. Signup now to access more than 500 free rooms and learn cyber security through a fun, interactive learning environment.

Already have an account? Log in

We use cookies to ensure you get the best user experience. For more information see our cookie policy.