Welcome!. In this section we are going to learn what's LFI and RFI and we are going to solve some LFI challenges. In this section we need to know some interesting files that we can find in OS.
These are some interesting files in linux, there are many more:
The most interesting files in this list are /etc/passwd and /etc/shadow, these are the one that we commonly look for in a pentest. Let's see what these files are. First, we need to understand the /etc/passwd, you can do it here here. And now the /etc/shadow here.
Remember that Windows is also important.
And many more. The one that we need to focus on is the NTUser.dat file you can find more info here.