Magical Palindrome - Hack The Box Web Challenge Writeup
A clever JavaScript prototype pollution type confusion challenge on Hack The Box.
394 words
|
2 minutes
Cover Image of the Post
DarkZero - Hack The Box Writeup
Detailed walkthrough of the Hard Windows Active Directory machine DarkZero on Hack The Box.
399 words
|
2 minutes
Cover Image of the Post
Eighteen - Hack The Box Writeup
Easy Windows Active Directory machine. Misconfigurations lead from initial access to full domain compromise.
630 words
|
3 minutes
Cover Image of the Post
PNPT Exam Review - 2025
An in-depth review of the Practical Network Penetration Tester (PNPT) certification journey, exam experience, and key preparation tips.
627 words
|
3 minutes
Cover Image of the Post
Web Cache Deception - Expert | PortSwigger
Walkthrough of the Expert-level Web Cache Deception lab from PortSwigger Academy, focusing on exploiting exact-match cache rules using advanced path normalization techniques.
420 words
|
2 minutes
Cover Image of the Post
Web Cache Deception - Practitioner | PortSwigger
Practitioner-level Web Cache Deception labs from PortSwigger Academy covering path delimiter abuse, normalization discrepancies in origin and cache servers, and how these mismatches lead to private data exposure via cache poisoning.
1100 words
|
6 minutes
Cover Image of the Post
Web Cache Deception - Apprentice | PortSwigger
Walkthrough of the Apprentice-level Web Cache Deception lab at PortSwigger Academy, using path mapping and static resource extension tricks to retrieve cached sensitive data.
495 words
|
2 minutes
Cover Image of the Post
BlackHat MEA 2024 Qualifiers Write-Up
Our team qualified for BlackHat MEA 2024! This post includes web challenge write-ups from the qualifiers and insights into our journey to the top 100.
402 words
|
2 minutes
Cover Image of the Post