Writeup of ScriptKiddie Hack The Box machine. This is an easy machine that consists mostly in enumeration and abusing existing scripts and allowed commands.
This post is designed for all those who want to learn browser exploitation. Many of the concepts around the V8 engine are explained, also at the same time it is explained step by step how to solve an exploitation challenge with V8 until reaching the final exploit.
Writeup of Tenet Hack The Box machine. In this machine we will face with two common vulnerabilities. The first one is a serialization issue and the second one is a Time of Check, Time of Use (ToC-ToU).
En esta entrada analizaremos la aplicación que el Gobierno de España a puesto a disposición de los ciudadanos para comprobar si han estado expuestos al virus sin desvelar la identidad de los usuarios, es decir anónimo, y comprobaremos cómo lo han hecho.