Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
TryHack3M-Bricks-Heist — 🧱 CVE-2024-25600 WordPress Bricks Builder RCE Exploit + TryHackMe Bricks Heist CTF Write-up | Kitploit
Tools/GitHubGitHub/h0w1tzxr/tryhack3m-bricks-heist
OSINT (Open Source Intelligence)ReconnaissanceVulnerability AnalysisExploitationWeb Application ExploitationForensicsCTFPenetration TestingLearning & Education
GitHubh0w1tzxr/tryhack3m-bricks-heist

TryHack3M-Bricks-Heist

🧱 CVE-2024-25600 WordPress Bricks Builder RCE Exploit + TryHackMe Bricks Heist CTF Write-up

1168 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View Repository

TryHack3M: Bricks Heist

TryHackMe CVE Python License


Exploit • Writeup • CTF Challenge

A comprehensive repository containing a custom exploit and detailed writeup for the TryHack3M: Bricks Heist challenge


Quick Start • Repository Structure • The Exploit • The Writeup • Disclaimer


WordPress Bricks CVSS

Overview

This repository documents the TryHack3M: Bricks Heist challenge — a medium-difficulty CTF room involving:

PhaseDescription
ReconnaissanceDiscovering a vulnerable WordPress site with Bricks Builder
ExploitationLeveraging CVE-2024-25600 for unauthenticated RCE
InvestigationUncovering a hidden crypto miner linked to LockBit ransomware
AttributionTracing Bitcoin transactions to sanctioned threat actors

Repository Structure

TryHack3M-Bricks-Heist/
│
├── README.md              ← You are here
│
├── Exploit/
│   ├── README.md          ← Detailed exploit documentation
│   ├── brickbreaker.py    ← The exploit tool
│   └── requirements.txt   ← Python dependencies
│
└── WriteUp/
    └── WRITEUP.md         ← Full challenge walkthrough
DirectoryContentsLink
Exploit/BrickBreaker v2.2 — Custom CVE-2024-25600 exploit with interactive shellRead More
WriteUp/Complete step-by-step walkthrough with screenshots and answersRead More

Quick Start

Get a Shell in 30 Seconds

# Clone the repository
git clone https://github.com/h0w1tzxr/TryHack3M-Bricks-Heist.git
cd TryHack3M-Bricks-Heist/Exploit

# Set up environment
python3 -m venv brickbreaker && source brickbreaker/bin/activate
pip install -r requirements.txt

# Launch exploit
python3 brickbreaker.py https://target.com

Read the Full Writeup

Jump straight to the Complete Writeup to see how the challenge was solved from start to finish.


The Exploit

BrickBreaker v2.2

Unauthenticated Remote Code Execution for WordPress Bricks Builder

FeatureDescription
Auto-exploitationExtracts nonce and exploits automatically
Interactive ShellFull PTY-like experience with history
File TransferUpload/download files via base64
Reverse Shells5 payload types (bash, python, nc, php, perl)
Batch ScannerMass vulnerability scanning
Beautiful TUIRich terminal interface
 ██████╗ ██████╗ ██╗ ██████╗██╗  ██╗    ██████╗ ██████╗ ███████╗ █████╗ ██╗  ██╗███████╗██████╗ 
 ██╔══██╗██╔══██╗██║██╔════╝██║ ██╔╝    ██╔══██╗██╔══██╗██╔════╝██╔══██╗██║ ██╔╝██╔════╝██╔══██╗
 ██████╔╝██████╔╝██║██║     █████╔╝     ██████╔╝██████╔╝█████╗  ███████║█████╔╝ █████╗  ██████╔╝
 ██╔══██╗██╔══██╗██║██║     ██╔═██╗     ██╔══██╗██╔══██╗██╔══╝  ██╔══██║██╔═██╗ ██╔══╝  ██╔══██╗
 ██████╔╝██║  ██║██║╚██████╗██║  ██╗    ██████╔╝██║  ██║███████╗██║  ██║██║  ██╗███████╗██║  ██║
 ╚═════╝ ╚═╝  ╚═╝╚═╝ ╚═════╝╚═╝  ╚═╝    ╚═════╝ ╚═╝  ╚═╝╚══════╝╚═╝  ╚═╝╚═╝  ╚═╝╚══════╝╚═╝  ╚═╝

Full Exploit Documentation →


The Writeup

TryHack3M: Bricks Heist — Complete Walkthrough

From exploitation to threat actor attribution

The writeup covers the entire attack chain and investigation:

PhaseWhat You'll Learn
ReconnaissancePort scanning, WordPress enumeration, identifying Bricks Builder
ExploitationUsing BrickBreaker to gain initial access via CVE-2024-25600
ForensicsDiscovering hidden files, malicious services, and crypto miners
BlockchainDecoding obfuscated wallet addresses and tracing transactions
AttributionLinking activity to the LockBit ransomware group via OFAC

Challenge Answers Preview

#QuestionHint
1Hidden .txt file contentTHM{...}
2Suspicious process namenm-****-******
3Service name******.service
4Miner log file****.****
5Wallet addressbc1q...
6Threat group7 characters

Read Full Writeup →


Tools & Technologies

ToolPurpose
PythonExploit development
RustScanPort scanning
CyberChefData decoding
BlockchainTransaction tracing

Disclaimer

╔══════════════════════════════════════════════════════════════════════════════╗
║                                  WARNING                                     ║
╠══════════════════════════════════════════════════════════════════════════════╣
║                                                                              ║
║  This repository is for EDUCATIONAL and AUTHORIZED SECURITY TESTING only.    ║
║                                                                              ║
║  • Only use on systems you OWN or have EXPLICIT WRITTEN PERMISSION to test   ║
║  • Unauthorized access to computer systems is ILLEGAL                        ║
║  • The authors are NOT responsible for any misuse or damage caused           ║
║  • Always follow RESPONSIBLE DISCLOSURE practices                            ║
║                                                                              ║
╚══════════════════════════════════════════════════════════════════════════════╝

References

ResourceLink
CVE-2024-25600 (NVD)nvd.nist.gov
Original DisclosureSnicco Security
OFAC SanctionsTreasury.gov
LockBit AdvisoryCISA
TryHackMe RoomTryHackMe

Credits

Download Tool