Posts by Tag
Subdomain Enumeration
Back to Top ↑
Clear Text Credentials
Back to Top ↑
ANalysis of OFBiz code to understand the hashed storage mechanism
Back to Top ↑
Jenkins Exploitation CVE-2024-23897 in order to read arbitrary files (RCE)
Back to Top ↑
Abusing the Jenkins cipher to crack the password [Privilege Escalation]
Back to Top ↑
Abusing declared Javascript functions from the browser console
Back to Top ↑
Abusing the API to elevate our privilege to administrator
Back to Top ↑
Command injection via poorly designed API functionality
Back to Top ↑
Privilege Escalation via Kernel Exploitation (CVE-2023-0386) - OverlayFS Vulnerability
Back to Top ↑
Abusing ViewState IIS Parameter + web.config secrets to achieve RCE
Back to Top ↑
Playing with ysoserial.net to create a serialized payload
Back to Top ↑
Reading a powershell credential and decrypting the contents of the PSCredential object
Back to Top ↑
RunasCs.exe to execute command as another user whose credentials are known to us
Back to Top ↑
Samba 3.0.20 < 3.0.25rc3 - Username Map Script [Command Execution]
Back to Top ↑
GitHub Pages
Back to Top ↑
Unauthenticated Command Injection [CVE-2023-31803] (RCE)
Back to Top ↑
Custom Bash Script (playing with setfacl) [Privilege Escalation]
Back to Top ↑