HTB Writeup – Heal
Posted on 2024-12-15
RCEs for LimeSurvey & HashiCorp Consul
Exploit Ghost CMS 5.58.0 CVE-2023-40028 after a Git leak
Zabbix CVE-2024-36467 (JSON RPC IDOR) & CVE-2024-42327 (SQLi)
This note covers advanced GDB debugging with demo code
Red team exploitation on some pre-Windows 2000 “old” machine.
Extract information from a Blockchain in Web3 & exploit Foundry cmds
An custom Linux OS for Pwners
Red Teaming practice on GenericWrite with Targeted Kerberoasting Attack
Post-exploitation on AD CS, with PKINITtools and abusing ESC9