HTB Writeup – NanoCorp
Posted on 2025-11-09
CVE-2024-0670: Check_MK agent LPE
Hackthebox CTF writeups.
Transform XSLT to HTML with extensions → special XML “SSTI”
Ticket Forgery & Token Abuse with a service account in Win AD
From bi-directional MSSQL linked servers in to CVE-2024-30088 LPE
Exploit IKE IPSec via UDP discovery & the SUDO binex privesc
Python SSTI and Django Cache poisoning with Pickle Deserialization
CrushFTP auth bypass (CVE-2025-31161) and Erlang shell manipulation