Analyzing binary execution logic to understand how a program works, rather than just extracting strings.
While the above walkthrough covers the standard SSTI → sudo exploit route, experienced users have found other vectors: cct2019 tryhackme
gobuster or dirsearch