Real World CTF 2023 – NonHeavyFTP
xct2023-01-08T14:08:29+00:00This is a short writeup on the "NonHeavyFTP" challenge from Real World CTF 2023. This was one of the easier challenges with the goal of exploiting LightFTP in Version 2.2 (the latest one on github at the time). I ended up with a file-read vulnerability that allowed to read the...
VL Shinra Part 1 – SQLi, Command Injection & Hash Cracking
xct2023-01-18T17:07:44+00:00This is the first video of a series about Shinra, a virtual company in a private red team lab. We will conduct a full pentest on Shinra and explore various topics along the way.
Ekoparty 2022 BFS Windows Challenge
xct2022-11-07T20:24:46+00:00In this blog post, we will solve the Windows userland challenge that Blue Frost Security published for Ekoparty 2022.
Windows Kernel Exploitation – Arbitrary Memory Mapping (x64)
xct2022-09-24T11:13:51+00:00In this post, we will develop an exploit for the HW driver. I picked this one because I looked for some real-life target to practice on and saw a post by Avast that mentioned vulnerabilities in an old version of this driver (Version 4.8.2 from 2015), that was used as...
SQLi, LFI to RCE and Unintended Privesc via XAMLX & Impersonation – StreamIO @ HackTheBox
xct2022-09-17T14:42:22+00:00Video & additional notes for StreamIO, a medium difficulty Windows machine on HackTheBox that involves manual MSSQL Injection, going from file inclusion to RCE and in this case getting the SeImpersonate privilege back to get SYSTEM via an EFS-based potato.
Browser Exploitation: Firefox OOB to RCE
xct2022-09-09T12:07:57+00:00In this post, we will exploit Midenios, a good introductory browser exploitation challenge that was originally used for the HackTheBox Business-CTF. I had some experience exploiting IE/Edge/Chrome before, but exploiting Firefox was mostly new to me.