PT1 certified | OSCP in progress

Writeups

MOST RECENT

cap htb writeup
We explore IDOR vulnerabilities in web-based capture services for initial access, analyze unencrypted protocol traffic for credential harvesting, and leverage misconfigured Linux capabilities for privilege escalation.
biblioteca thm writeup
We explore open web services for initial access, leverage blind SQL injection to extract credentials for lateral movement, and exploit PYTHONPATH environment manipulation via sudo-enabled scripts for privilege escalation.
code-part-two-htb writeup
We explore open web services for initial access, manipulate vulnerable Python libraries (js2py) to achieve a sandbox escape for lateral movement, and exploit flawed input validation in sudo-enabled backup utilities for privilege escalation.
b3dr0ck THM tryhackme easy writeup
We explore unconventional SSL services for initial access, manipulate digital certificates for lateral movement, and exploit sudo configurations for privilege escalation.
publisher THM tryhackme easy writeup
Exploit Publisher on TryHackMe: A guide to PHP CMS vulnerabilities, lateral movement, and bypassing AppArmor via SUID binaries for full root access.
lookup THM tryhackme easy writeup
Master the Lookup THM machine: A practical guide to web exploitation, reconnaissance, and Linux privilege escalation for the Penetration Tester 1 path.