> ## Documentation Index
> Fetch the complete documentation index at: https://rootea.es/llms.txt
> Use this file to discover all available pages before exploring further.

# Avengers Blog

> Learn to hack into Tony Stark's machine! You will enumerate the machine, bypass a login portal via SQL injection and gain root access by command injection.

# Avengers Blog

<p className="machine-summary"><span className="prompt"><code>\$ tldr</code></span> TryHackMe · Walkthrough · Easy</p>

<div className="machine-meta">
  | ·            | ·                                                |
  | ------------ | ------------------------------------------------ |
  | Plataforma   | TryHackMe                                        |
  | Tipo         | Walkthrough                                      |
  | Dificultad   | <span className="dbadge dbadge-easy">EASY</span> |
  | Acceso       | 🔵 Subscriber                                    |
  | Tiempo medio | 30 min                                           |
  | Usuarios     | 16.835                                           |
  | Sala oficial | [Abrir](https://tryhackme.com/room/avengers)     |
</div>

## Descripción

Learn to hack into Tony Stark's machine! You will enumerate the machine, bypass a login portal via SQL injection and gain root access by command injection.

<Note>
  Esta room requiere suscripción de TryHackMe (VIP) para acceder al lab. La página oficial te indicará si tu plan lo cubre.
</Note>

## Resolver la room

| Idioma  | Autor         | Formato     | Enlace                                       |
| ------- | ------------- | ----------- | -------------------------------------------- |
| 🇬🇧 EN | **TryHackMe** | Lab oficial | [Abrir](https://tryhackme.com/room/avengers) |

## Recursos por skill

| Skill                | Fuente      | Enlace                                                                           |
| -------------------- | ----------- | -------------------------------------------------------------------------------- |
| OS Command Injection | PortSwigger | [Abrir](https://portswigger.net/web-security/os-command-injection)               |
| SQL Injection        | HackTricks  | [Abrir](https://book.hacktricks.wiki/en/pentesting-web/sql-injection/index.html) |
| SQL Injection        | PortSwigger | [Abrir](https://portswigger.net/web-security/sql-injection)                      |

## Skills relacionadas

[OS Command Injection](/skills/command-injection) · [SQL Injection](/skills/sqli)

***

## Comentarios y truquillos

¿Has resuelto la room por una vía distinta? Compártela aquí — los comentarios viven en [GitHub Discussions](https://github.com/FFuson/HTB_Writeups/discussions).

<div className="rootea-giscus-wrap" data-giscus-term="thm:tryhackme-avengers" data-giscus-lang="es" />

*Última actualización: 2026-05-09*

<script type="application/ld+json">
  {`{"@context":"https://schema.org","@type":"TechArticle","name":"Avengers Blog","headline":"Avengers Blog — TryHackMe room index","url":"https://rootea.es/tryhackme/rooms/avengers","inLanguage":"es","about":[{"@type":"Thing","name":"TryHackMe"},{"@type":"Thing","name":"Walkthrough"}],"isPartOf":{"@type":"WebSite","name":"rootea.es","url":"https://rootea.es"},"author":{"@type":"Organization","name":"rootea.es"}}`}
</script>
