// find
Search
Every post, indexed at build time. Type below to filter - or browse the full list.
-
AI Agent Architecture: The Basics Before You Build or Break One
A security-first guide to agent taxonomy, the execution loop, tools, memory, RAG, MCP, orchestration, and the trust boundaries that matter.
-
HTB Jugglin
Forela Corporation heavily depends on the utilisation of the Windows Subsystem for Linux (WSL), and currently, threat actors are leveraging this feature, tak...
-
HTB JingelBell
Torrin is suspected to be an insider threat in Forela. He is believed to have leaked some data and removed certain applications from their workstation. They ...
-
HTB Noted
Scenario
-
Plugout CVE-2024-2879
Scenario
-
Powershell Code deobfuscation
Scenario
-
Investigate Web Attack
In this walkthrough, we will delve into investigating web application logs using Splunk. We’ll explore a scenario where an attacker successfully compromised ...
-
Prime1 Writeup
In this walkthrough, we will be exploiting this machine using WordPress. However, it is necessary to enumerate thoroughly to obtain the WordPress credentials...
-
alfa Writeup
In this walkthrough, we deep explore the robots.txt source code and find an encoded code. On decryption, it reveals a directory on the server that leads us t...
-
Hackatble2
Enumeration
-
Explore
nmap2222/tcp open ssh (protocol 2.0)| fingerprint-strings: | NULL: |_ SSH-2.0-SSH Server - Banana Studio| ssh-hostkey: |_ 2048 71:90:e3:a7:c9:...
-
Knife
```sudo nmap -sCV -p- -vvv 10.10.10.242
-
Cap
In this Walkthrough we’ll exploit this machine by inspecting the 0.pcap file which we can download from the network dashboard which is capturing the network ...
-
Venom
In this walkthrough,FTP service lead us to enumerate information from hostinger user , which has a encryption todo list then from that information we’ll gain...
-
sybaris
In this walkthrough, we’ll gain remote code execution via a combination of the Redis MODULE LOAD command (which allows us to dynamically load a Redis module ...
-
PayDay
Summary
-
nullbyte
Enumeration
-
tiki
Cve that can bypass the admin password and login as admin with blank password , user sikly can run anything as root without password which gave us log into r...
-
Mercy
Nmap
-
Overflow1
Fuzzing
-
internal
nmap
-
dailybungle
Nmap
-
Skynet
nmap
-
GameZone
nmap
-
HackPark
NmapPORT STATE SERVICE REASON80/tcp open http syn-ack3389/tcp open ms-wbt-server syn-ack
-
alfred
Nmap
-
SteelMonutain
on port 8080 ftp vuln Server is running
-
kenobi
cover accessing a Samba share, manipulating a vulnerable version of proftpd to gain initial access and escalate your privileges to root via an SUID
-
Joy
nmap```nmap -p21,22,25,80,110,139,143,445,465,587,993,995 10.0.2.54 -sC -sV Starting Nmap 7.91 ( https://nmap.org ) at 2021-04-19 02:53 EDTNmap scan report f...
-
GoldenEye
nmapStarting Nmap 7.91 ( https://nmap.org ) at 2021-04-18 06:48 EDTNmap scan report for 10.0.2.53 (10.0.2.53)Host is up (0.00014s latency).Not shown: 998 clo...
-
symfonos5
Namp
-
symfonos4
Nmap
-
symfonos1
Enumerating the smb Which has Anonymous access , there user zeus kept attension.txt about poor passwd usage , using that creds , you can brutefore the helios...
-
symfonos2
Nmap
-
DevGuru
Nmap```22/tcp open ssh syn-ack OpenSSH 7.6p1 Ubuntu 4 (Ubuntu Linux; protocol 2.0)| ssh-hostkey: | 2048 2a:46:e8:2b:01:ff:57:58:7a:5f:25:a4:d6:f2:89...
-
tabby
Privilage Esclation
-
Rickdiculously
Nmap
-
HealthCare
Nmap