PNPT Exam Review - 2025
2025-04-22
An in-depth review of the Practical Network Penetration Tester (PNPT) certification journey, exam experience, and key preparation tips.
627 words
|
3 minutes

Web Cache Deception - Expert | PortSwigger
2024-09-12
Walkthrough of the Expert-level Web Cache Deception lab from PortSwigger Academy, focusing on exploiting exact-match cache rules using advanced path normalization techniques.
420 words
|
2 minutes

Web Cache Deception - Practitioner | PortSwigger
2024-09-10
Practitioner-level Web Cache Deception labs from PortSwigger Academy covering path delimiter abuse, normalization discrepancies in origin and cache servers, and how these mismatches lead to private data exposure via cache poisoning.
1100 words
|
6 minutes

Web Cache Deception - Apprentice | PortSwigger
2024-08-29
Walkthrough of the Apprentice-level Web Cache Deception lab at PortSwigger Academy, using path mapping and static resource extension tricks to retrieve cached sensitive data.
495 words
|
2 minutes

BlackHat MEA 2024 Qualifiers Write-Up
2024-08-17
Our team qualified for BlackHat MEA 2024! This post includes web challenge write-ups from the qualifiers and insights into our journey to the top 100.
402 words
|
2 minutes

Blitzstorm CTF 2024 - Web Challenge Write-Up
2024-01-30
A detailed walkthrough of web challenges from Blitzstorm CTF 2024, including Tindog, Cyber-Awareness, and Discover. Covers directory busting, .git exploitation, PHP filtering, and command injection bypass.
300 words
|
2 minutes

Ignite CTF 2023 Writeup - Nghinx
2023-12-19
A walkthrough of the Nghinx machine from Ignite CTF 2023, involving LFI exploitation and Nginx misconfiguration leading to machine takeover.
219 words
|
1 minute

Basic Pentesting Writeup - TryHackMe
2023-09-16
A walkthrough of the Basic Pentesting room on TryHackMe, covering enumeration, brute forcing, and privilege escalation.
313 words
|
2 minutes
