[click] to skip

// The archive

Every transmission.

38 notes on breaking and building — filter by tag, or just scroll the whole mess.

№1

AI Agent Architecture: The Basics Before You Build or Break One

A security-first guide to agent taxonomy, the execution loop, tools, memory, RAG, MCP, orchestration, and the trust boundaries that matter.

#ai-agents#agent-security#llm-security
№2

HTB Jugglin

Forela Corporation heavily depends on the utilisation of the Windows Subsystem for Linux (WSL), and currently, threat actors are leveragi...

#WSL#Windows API#Incident Response
№3

HTB JingelBell

Torrin is suspected to be an insider threat in Forela. He is believed to have leaked some data and removed certain applications from thei...

#Applications and Services Logs#Incident Response#HTB
№4

HTB Noted

Scenario

#Sourcecode Review#Incident Response#HTB
№5

Plugout CVE-2024-2879

Scenario

#Log Analysis#Incident Response#CVE-2024-2879
№6

Powershell Code deobfuscation

Scenario

#Base64#Powershell#Incident Response
№7

Investigate Web Attack

In this walkthrough, we will delve into investigating web application logs using Splunk. We’ll explore a scenario where an attacker succe...

#OWASP#SIEM#Incident Response
№8

Prime1 Writeup

In this walkthrough, we will be exploiting this machine using WordPress. However, it is necessary to enumerate thoroughly to obtain the W...

#WordPress Exploitation#Kernel Exploit 4.10.0-28-generic#Parameter Fuzzing
№9

alfa Writeup

In this walkthrough, we deep explore the robots.txt source code and find an encoded code. On decryption, it reveals a directory on the se...

#SSH PortForwarding#VNCViewer#Decoding
№10

Hackatble2

Enumeration

#PHP File Upload#Sudo python3.5
№11

Explore

nmap2222/tcp open ssh (protocol 2.0)| fingerprint-strings: | NULL: |_ SSH-2.0-SSH Server - Banana Studio| ssh-hostkey: |_ ...

#Android#Es file Explorer
№12

Knife

```sudo nmap -sCV -p- -vvv 10.10.10.242

#PHP 8.0.1 ZeroDay
№13

Cap

In this Walkthrough we’ll exploit this machine by inspecting the 0.pcap file which we can download from the network dashboard which is ca...

#Wireshark
№14

Venom

In this walkthrough,FTP service lead us to enumerate information from hostinger user , which has a encryption todo list then from that in...

#SUID find
№15

sybaris

In this walkthrough, we’ll gain remote code execution via a combination of the Redis MODULE LOAD command (which allows us to dynamically ...

#redis&ftp
№16

PayDay

Summary

#LFI#Hydra SSH#gtfobin all
№17

nullbyte

Enumeration

#Hydra websiteBruteforce#sql map#PathHijacking Linux
№18

tiki

Cve that can bypass the admin password and login as admin with blank password , user sikly can run anything as root without password whic...

#gtfobin all
№19

Mercy

Nmap

#Apache Tomcat#PortKnocking#LFI
№20

Overflow1

Fuzzing

#BufferFlow
№21

internal

nmap

#wordpressExploit#Hydra websiteBruteforce#SSH PortForwording
№22

dailybungle

Nmap

#John TheRipper#gtfobin yum
№23

Skynet

nmap

#Hydra websiteBruteforce#cronjob
№24

GameZone

nmap

#hashcat#SSH PortForwording
№25

HackPark

NmapPORT STATE SERVICE REASON80/tcp open http syn-ack3389/tcp open ms-wbt-server syn-ack

#Hydra websiteBruteforce#Process Exe Path Override
№26

alfred

Nmap

#SeImpersonatePrivilege
№27

SteelMonutain

on port 8080 ftp vuln Server is running

#Rejetto HTTP File Server#unquoted paths
№28

kenobi

cover accessing a Samba share, manipulating a vulnerable version of proftpd to gain initial access and escalate your privileges to root v...

#ProFTP 1.3.5#PathHijacking Linux
№29

Joy

nmap```nmap -p21,22,25,80,110,139,143,445,465,587,993,995 10.0.2.54 -sC -sV Starting Nmap 7.91 ( https://nmap.org ) at 2021-04-19 02:53 E...

#Exploiting FTP
№30

GoldenEye

nmapStarting Nmap 7.91 ( https://nmap.org ) at 2021-04-18 06:48 EDTNmap scan report for 10.0.2.53 (10.0.2.53)Host is up (0.00014s latency...

№31

symfonos5

Namp

#LFI#LDAP#gtfobin dpkg
№32

symfonos4

Nmap

#LFI#SSHLog file Posioning#SSH PortForwording
№33

symfonos1

Enumerating the smb Which has Anonymous access , there user zeus kept attension.txt about poor passwd usage , using that creds , you can ...

#SMB BruteForce#SMPT LogFile Posining#LFI
№34

symfonos2

Nmap

#SSH BruteForce#SSH PortForwording
№35

DevGuru

Nmap```22/tcp open ssh syn-ack OpenSSH 7.6p1 Ubuntu 4 (Ubuntu Linux; protocol 2.0)| ssh-hostkey: | 2048 2a:46:e8:2b:01:ff:57:58:...

#gtfobin sqlite3#.gitEnumeration
№36

tabby

Privilage Esclation

#LFI#Apache Tomcat with Curl#fcrack
№37

Rickdiculously

Nmap

#SSH BruteForce
№38

HealthCare

Nmap

#sqlmap#PathHijacking Linux#php File Upload