I’ve pwned Keeper challenge. I will share how I solved the challenge. To sum up, before writing about the solution, I felt the user flag was easy to find but the privilege escalation was a bit tricky. OK, let’s start it. Enumerate First of all, I found ports 80 and 22 are open, So I … Read More “CVE-2023-32784 Hack the box – keeper writeup” »
In this post, I will walk through Analytics machine in Hack the box. Information gathering First of all, when nmap the machine, you can find 2 ports are open which are 22 and 80. So, let’s check the web page first. Before check the web page, you need to add the domain to /etc/hosts file. … Read More “Hack The Box – Analytics write-up [Easy]” »
I share how I solved They Are Coming CTF challenge. When I access to the web page, there was a robot pic. Also, I noticed that the question continuously mentions robots. So I checked the robots.txt file first. and Yes, there was something on the text file. The decryption key is given which means the … Read More “Vishwa CTF’24 They Are Coming write up” »
Ok, I will share what I did on Vishwa CTF’24 Trip To Us challenge. When we access to the web site, the homepage looks like above. There’s a link saying Click Here. I clicked the link, but there wasn’t any useful information. One notice here though is that the URI of the error page is … Read More “Vishwa CTF’24 Trip To Us write up” »
I have participated in VishwaCTF’24 which is held from 1st of March to 3rd of March. I leave lessons that I learned from this event. Actually, it was my first time to participate in a CTF event. I didn’t know that it’s ok to team up with other people to solve questions. So, I participated … Read More “VishwaCTF’24 review” »
OK, let’s solve the codify machine from Hack the box this time. It is officially marked as easy, but personally, I felt it was not so easy. Enumeration First, let’s see the result of nmap. It has web servers called Codify on port 80 and 3000. Before looking into the web page, let’s add it … Read More “Hack the box : Codify[easy] write up” »