gobuster

Hack The Box

Hack the Box : BountyHunter

XML external entity injection again (NodeBlog).eval exploit is fun.01:12 Check for XXE vulnerabilityXEE_Payload01:39 gob...
Hack The Box

Hack the Box : Undetected

Reading C codes was hard.00:45 PHP Unit vulnerability found01:14 Modify request on Burp Suite to show phpinfo() Content-...
Hack The Box

Hack the Box: Blocky write-up

Blocky write-upAnother old & easy box.I guess there was no need to run LinEnum to find out about sudo after all.Referenc...
Hack The Box

Hack The Box : Bank

Bank write-upThis is another old BOX.I have been having troubles with gobuster to find directories of website.You need a...
Hack The Box

Hack The Box : Beep

Beep write-upBeep is 1972 Days old Box.It's a Local File Inclusion vulnerability one.So many ports are open and so many ...
Hacking

HACK THE BOXをやってみた Tenet

HACK THE BOX,Tenetをやってみた。脆弱性のあるところにたどり着くまでが遠い。今回もWordpressの脆弱性を調べたり、Databaseにアクセスできたので、その中を漁ったり。動画の中でもWPscanしているが、結局flag...
Hacking

HACK THE BOXをやってみた STARTING POINT Tier2 Oopsie

HACK THE BOX, Starting PointのTier2、Oopsieをやってみた。サイトの脆弱性を突き、reverse shell。 そこから更にプログラムの脆弱性を突き、root権限取得。 setuid権限を使うところにたど...