HTB: Blunder 0xdf hacks stuff
Por um escritor misterioso
Descrição
Blunder starts with a blog that I’ll find is hosted on the BludIt CMS. Some version enumeration and looking at releases on GitHub shows that this version is vulnerable to a bypass of the bruteforce protections, as well as an upload and execute filter bypass on the PHP site. I’ll write my own scripts for each of these, and use them to get a shell. From there, I’ll find creds for the next user, where I’ll find the first flag. Now I can also access sudo, where I’ll see I can run sudo to get a bash shell as any non-root user. I’ll exploit CVE-2019-14287 to run that as root, and get a root shell.
Hack the Box - Feline Writeup
0xdf (@0xdf@) - Infosec Exchange
Bug Bytes #169 - Psychic signatures, Pwning Cloudflare, Z-winK University & The Bug Hunter's Methodology for App Analysis - Intigriti
HackTheBox – Blunder Ivan's IT learning blog
Hack The Box :: PlayerTwo – noobintheshell :: blog
HackTheBox – Blunder Ivan's IT learning blog
HTB: TheNotebook 0xdf hacks stuff
HackTheBox - Blunder
0xdf (@0xdf_) / X
Blunder-HTB. Normally blunder means a stupid mistake…, by Dhwani Patel
Hack The Box - Sizzle - 0xRick's Blog
0xdf hacks stuff CTF solutions, malware analysis, home lab development
Hack The Box - Sizzle - 0xRick's Blog
Player2 - HackTheBox, 喵喵喵喵
de
por adulto (o preço varia de acordo com o tamanho do grupo)