Bizness May 29, 2024 eWPT Apache OFBiz EXploitation (Authentication Bypass) ANalysis of OFBiz code to understand the hashed storage mechanism Adapating found hashes to a crackable format Cracking Hashes [Privilege Escalation]
Vaccine May 26, 2024 Vulnerability Assessment Databases Custom Applications Protocols Source Code Analysis Apache PostgreSQL FTP PHP Reconnaissance Password Cracking SUDO Exploitation SQL Injection Remote Code Execution Clear Text Credentials Anonymous/Guest Access
Oopsie March 17, 2024 PHP Apache Web Site Structure Discovery Cookie Manipulation SUID Exploitation Authentication bypass Arbitrary File Upload Path Hijacking