TryHackMe Extract Full Walkthrough 2025 – SSRF & CVE-2025-29927 Exploit

Can you extract the secrets of the library?

๐Ÿฆ€๐Ÿฆ€ Room Link: https://tryhackme.com/room/extract

๐ŸฆˆScenario:๐Ÿฆˆ

The librarian rushed some final changes to the web application before heading off on holiday. In the process, they accidentally left sensitive information behind! Your challenge is to find and exploit the vulnerabilities in the application to extract these secrets.

๐Ÿ”ฅLinks used on the video:๐Ÿ”ฅ

๐Ÿค– Next.js and the corrupt middleware (CVE-2025-29927): the authorizing artifact: https://zhero-web-sec.github.io/research-and-things/nextjs-and-the-corrupt-middleware

script provided by 0day https://x.com/0dayCTF
๐Ÿค– Gopher python script encoding (customapi): https://github.com/djalilayed/tryhackme/blob/main/extract/gopher-1.py
๐Ÿค– Gopher python script encoding (management): https://github.com/djalilayed/tryhackme/blob/main/extract/gopher-2.py
๐Ÿค– Gopher python script encoding (2fa): https://github.com/djalilayed/tryhackme/blob/main/extract/gopher-3.py

๐Ÿค– CyberChef: https://gchq.github.io/CyberChef

โš ๏ธ Educational Purpose Only
This content is for educational and authorized penetration testing purposes only. Always ensure you have permission before testing on any systems.

Don’t forget to ๐Ÿ‘ LIKE and ๐Ÿ”” SUBSCRIBE for more cybersecurity tutorials!

#TryHackMe