Photobomb was an easy machine #HTB developed by slartibartfast. The machine had exploiting weak sanitation check, hardcoded creds inside JS file, exploiting image resize functionality to gain access and PATH injection for privilege escalation.
https://t.co/0hLYelSpGD
#secnigma
Have some amusement on a Monday morning: A friend made a lunar lander game which hooks into the Windows copy dialog "While running, the app will detect all windows copy dialogs and paint a game overlay on top of them while they are focused." https://t.co/ghUeZic34e
Classic #SysAdminDay comic. Dedicated to all Linux Unix, Windows sysadmin, IT folks working around the globe. Do check out my favourite geeky @xkcd comic https://t.co/wqUqQBeZIR too.
Giveaway time!
We are going to send a t-shirt and few goodies to one person who follows
@PentesterLab
and likes this tweet !!
And we are going to give a 1-year voucher to someone who RT this tweet!
#Catch was an Intermediate machine from Hack The Box. This was a great machine and had several services running. I believe the idea for creating this machine was to push the players to research broader and deeper. Great work by @MrR3boot#secnigma
https://t.co/0YbKp1j6Xy
Writeup for #routerspace is up!
This was a good machine, which had a vulnerable API endpoint inside an APK file, found by performing dynamic analysis with Bluestacks and Burp. Then, I used the CVE-2021-3156 sudo exploit to root it. Good work #h4rithd#HTB
https://t.co/AnmVniSPW9
#Undetected from #HTB is retired!
This was a great machine, which showcased lot of reversing by following the footprint of the attacker from an already compromised server.
https://t.co/gplPZySfsH