hacking

Hack The Box

Learn chisel!

Having fun with Hack the Box?Working on HTB, "port forwarding" is needed in some cases.So understanding chisel can be ve...
Hack The Box

Hack the Box : Passage

It took a loooong time to find flags as I went through lots of files.linpeas.sh is great, but there's just so many files...
Hack The Box

Hack the Box : Ransom

Spent about an hour on Cookie, hoping to bypass authentication somehow.Then hacktrick.xyz gave me a hint.Still took some...
Hack The Box

Hack the Box : Secret

Reading coredump was fun, but reading long linpeas.sh result was pain.To get coredump, I learned about kill option.02:57...
Hack The Box

Hack the Box : Pandora

snmp-check returned many, so I first missed user & password and proceed with snmpwalk.Finding a tiny info from vast outp...
Hack The Box

Hack the Box : Shibboleth

Multiple vulnerabilities.There's so many things included, spent many hours working on things did not lead to flags.Still...
Hack The Box

Hack the Box : Unicode

JWK Spoofing, Directory traversal, Unicode normalization, Use /proc to gather info...Many elements. Much fun.It took me ...
Hack The Box

Hack the Box : Undetected

Reading C codes was hard.00:45 PHP Unit vulnerability found01:14 Modify request on Burp Suite to show phpinfo() Content-...
Hack The Box

Hack the Box: Intelligence

10.10.10.248 : IP of Box10.10.14.3 : Local tun0Enumeration process omitted from the movieEnumerate anonymous logon (crac...
Hack The Box

Hack the Box: Blocky write-up

Blocky write-upAnother old & easy box.I guess there was no need to run LinEnum to find out about sudo after all.Referenc...