
HTB Writeup: Fluffy
First AD machine has been solved - more knowledge.

First AD machine has been solved - more knowledge.

Solution for all challenge at Skill Path OS Command Injection (Include Explain and Payload)

Exploit php-phar deserialization and path traversal (RFI) to RCE

Exploit parameter verified in Web Server.

Exploit os-command-injection in Web Server.

Short summary of the post.

A useful cheat sheet of common footprinting and enumeration commands.

A useful cheat sheet of common file transfer commands for both Windows and Linux.

Bug: BackDrop CMS 1.27.1 to Reverse Shell Linux and go to Privilege Escalation with BackDrop_Tool/bee
A test blog post to demonstrate the Jekyll post format with proper front matter.