AG
Aaditya Gupta
Home
Skills & Experience
Certifications
Blogs
Writeups
Gitbooks
Badges
Schedule Meeting
Search
Toggle Dark Mode
Tipsy Security
Blogs by Category: [ hack-the-box ]
categories
writeups
hack-the-box
Vaccine
Published
: Jun 2021
Category
: Hack The Box
Crack zip file and then crack the password found in the source code. Exploit SQL Injection & escalate privileges using misconfigured permission on vi.
Oopsie
Published
: Jun 2021
Category
: Hack The Box
Tags:
linux, setsuid, IDOR
Uncover hidden login pages, manipulate cookies, upload a PHP reverse shell, and exploit a misconfigured SUID binary to go from guest to root.
Buff
Published
: Feb 2021
Category
: Hack The Box
Tags:
Windows, Buffer Overflow
Windows machine with Gym Management System 1.0. It has an unauthenticated RCE. Debug service on local port and exploit it after port forwarding.
Blunder
Published
: Feb 2021
Category
: Hack The Box
Tags:
Password Cracking, linux
Linux machine with Bludit CMS. Bypass the brute force protection, exploit file upload, and leverage sudo vulnerability - CVE-2019-14287 - for root.
Devel
Published
: Sep 2020
Category
: Hack The Box
Tags:
Windows, MS11–046, ftp
Devel, demonstrates the security risks associated with some default program configurations and can be completed using publicly available exploits.
Blue
Published
: Sep 2020
Category
: Hack The Box
Tags:
Windows, Eternal Blue, OSCP
Blue, while possibly the most simple machine on Hack The Box, demonstrates the severity of the EternalBlue exploit.
Show
6
12
24
results per page
Previous
1
2
Next
Recent Posts
eJPT
Vaccine
Oopsie
Buff
Blunder
Offensive Pentesting
Categories
writeups
blog
Archive
2022
2021
2020