Open in app

Sign In

Write

Sign In

MaanVader
MaanVader

3 Followers

Home

About

Dec 14, 2022

HackTheBox:Precious

This was an mazing and easy linux box by HackTheBox.To gain initial access on the box we first need to exploit a command injection vulnerability generated by PDFKIT is a powerful ruby library which generates pdf files from HTML and css. After getting initial access on the box, we need…

Hackthebox

5 min read

HackTheBox:Precious
HackTheBox:Precious
Hackthebox

5 min read


Nov 13, 2022

HackTheBox: Ambassador

This was an awesome linux box by HackThebox. This box enabled us to play around with CVE-2021–43798 and leaking the files for grafana such as the database files. Upon recieving the file called grafana.db we run sqlite3 on our machine and enumerate the file. Upon enumeration we managed to get…

Infosec

7 min read

HackTheBox: Ambassador
HackTheBox: Ambassador
Infosec

7 min read


Nov 1, 2022

TryHackMe:Templates

Overview: This room in TryHackMe was created by the user cmnatic. This was an easy yet amazing room to learn about and leverage an SSTI(Server Side Template Injection ) vulnerability in the PUG templating engine which is available for node.js and gain an RCE (Remote code Execution) on the server. PUG…

Ctf Writeup

4 min read

TryHackMe:Templates
TryHackMe:Templates
Ctf Writeup

4 min read


Jul 22, 2022

HackTheBox:Trick

Welcome back everyone to this long awaited writeup on the machine called Trick. Trick is an easy rated linux box which is hosted on HackTheBox. Running an initial NMAP scan showed us 4 open ports which were 80,22,25 and 53. Enumerating port 53 further we find a vhost “prepod-payroll.trick.htb” after…

Ctf Writeup

8 min read

HackTheBox:Trick
HackTheBox:Trick
Ctf Writeup

8 min read

MaanVader

MaanVader

3 Followers

cat flag.txt | Penetration Tester

Following
  • Haxez - Hacking Made Easy

    Haxez - Hacking Made Easy

  • QuillAudits - Web3 Security 🛡️

    QuillAudits - Web3 Security 🛡️

  • BlockSec

    BlockSec

  • Shashank

    Shashank

  • Pari Tomar

    Pari Tomar

See all (21)

Help

Status

Writers

Blog

Careers

Privacy

Terms

About

Text to speech