Writeup for the "Titanic" on HackTheBox. It involves exploiting LFI to discover sensitive Gitea configuration and database files, cracking PBKDF2 hashes for SSH access, and escalating privileges via a shared library injection in ImageMagick.
g4nd1v.github.io/posts/hacktheb…#HackTheBox
I have been learning about Active Directory so much in recent days and have realized that nearly every organization with a default AD infrastructure is vulnerable!
659 Followers 7K Followingdefenders think in lists.attackers think in graphs.
as long as this is true, attackers win.
---sanity through retrowave™---
---wannabe schwachstellenjaeger---
203 Followers 1K FollowingAdicto a la intensidad sin tiempo para dormir, que se gana la vida de Bofh en busca de vida inteligente en el metaverso.
CTF && Boot2Root Player | Pentester
212 Followers 314 FollowingIT geek focused on Cyber Security and Ethical Hacking, with a passion for CTFs (mostly HTB and THM).
Certifications:
- BSCP (Burp Suite Certified Practitioner)
89 Followers 12 FollowingDOT Security is a complete cybersecurity and compliance service provider that protects you with our people, our approach, and our technology.
16K Followers 781 Following🔍 Top 100 Bug Bounty Hunter @ Bugcrowd | 🇩🇴 Dominican | Ethical hacking fanatic | 🎮🎵 Lover | Keeping the digital world safe. opinions are that of my own
10K Followers 255 Followingsecurity enthusiast that loves hunting for bugs in the wild. co-founder and player of @justCatTheFish.
infosec at @google. opinions are mine.
203 Followers 1K FollowingAdicto a la intensidad sin tiempo para dormir, que se gana la vida de Bofh en busca de vida inteligente en el metaverso.
CTF && Boot2Root Player | Pentester
2K Followers 2K FollowingOur industry-leading platform is the most effective solution for learning modern binary exploitation through a world-class curriculum developed by @RET2Systems
212 Followers 314 FollowingIT geek focused on Cyber Security and Ethical Hacking, with a passion for CTFs (mostly HTB and THM).
Certifications:
- BSCP (Burp Suite Certified Practitioner)
10K Followers 6 FollowingBringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://t.co/D5Mco1u8zM
6K Followers 602 FollowingCEO and founder of XBOW. Previously: Founder of GitHub Next, founder of GitHub Copilot, CEO and founder of Semmle (GitHub Advanced Security), prof at Oxford.