Solving HTB Administrator
Hack The Box Tabby writeup. Exploiting Local File Inclusion (LFI) to read Tomcat configuration files and extract sensitive credentials.
Comprehensive notes and practical examples covering Cross-Site Scripting (XSS) vulnerabilities and payloads.
Notes on discovering hidden web directories and parameters using fuzzing tools like ffuf, feroxbuster, and gobuster.
Step-by-step guide to configuring a robust Android hacking lab on Arch Linux using Frida, Burpsuite, and AVD.
Hack The Box Eighteen writeup. Exploiting MSSQL impersonation, extracting hashes, and WinRM password spraying for initial foothold.
Hack The Box Expressway writeup. Enumerating UDP port 500 for IKE/IPSec, cracking PSK, and exploiting a custom sudo vulnerability (CVE-2025-32463) for root.
A curated collection of essential payloads, commands, and resources for Hack The Box and general penetration testing.
Personal study notes and code explanations based on Build a Large Language Model (From Scratch) by Sebastian Raschka.
A deep dive into suffering: manually crafting a custom 'cat /flag' shellcode in assembly from scratch.
themes