AG

Aaditya Gupta

HomeSkills & ExperienceCertificationsBlogsWriteupsGitbooksBadgesSchedule MeetingSearch

Blogs by Category: [ hack-the-box ]

  1. categories
  2. writeups
  3. hack-the-box
Vaccine
Published: Jun 2021
Category: Hack The Box
Crack zip file and then crack the password found in the source code. Exploit SQL Injection & escalate privileges using misconfigured permission on vi.
Oopsie
Published: Jun 2021
Category: Hack The Box
Tags: linux, setsuid, IDOR
Uncover hidden login pages, manipulate cookies, upload a PHP reverse shell, and exploit a misconfigured SUID binary to go from guest to root.
Buff
Published: Feb 2021
Category: Hack The Box
Tags: Windows, Buffer Overflow
Windows machine with Gym Management System 1.0. It has an unauthenticated RCE. Debug service on local port and exploit it after port forwarding.
Blunder
Published: Feb 2021
Category: Hack The Box
Tags: Password Cracking, linux
Linux machine with Bludit CMS. Bypass the brute force protection, exploit file upload, and leverage sudo vulnerability - CVE-2019-14287 - for root.
Devel
Published: Sep 2020
Category: Hack The Box
Tags: Windows, MS11–046, ftp
Devel, demonstrates the security risks associated with some default program configurations and can be completed using publicly available exploits.
Blue
Published: Sep 2020
Category: Hack The Box
Tags: Windows, Eternal Blue, OSCP
Blue, while possibly the most simple machine on Hack The Box, demonstrates the severity of the EternalBlue exploit.
Show results per page
12Next
Recent Posts
Categories
Archive
202220212020