</> LATEST_POSTS
HackTheBox - Instant
Reverse Engineering APK file to obtain jwt token and uncover api endpoint, exploit LFI in API via swagger to gain full access to server
read_more ➤HackTheBox - Heal
Exploiting Local File Inclusion at Ruby on Rails API, Remote Code Execution on LimeSurvey and Consul by HashiCorp
read_more ➤HackTheBox - Greenhorn
Utilize information disclosure in Gitea to get credentials, Exploiting vulnerability at pluck import module, and Privesc by depixelizing redacted credentials in a document.
read_more ➤HackTheBox - Administrator
Hacking Windows Active Directory using Bloodhound, and Cracking PasswordSafe password manager file
read_more ➤