Hack The Box: Iclean Machine Walkthrough – Medium Difficulty

In this post, I would like to share a walkthrough of the Iclean Machine from Hack the Box This room will be considered a Medium machine on Hack the Box What will you gain from the Iclean machine? For the user flag, you need to examine a Flask web application and find an XSS vulnerability to capture a session cookie. […]

The post Hack The Box: Iclean Machine Walkthrough – Medium Difficulty appeared first on Threatninja.net.

August 3, 2024
Read More >>

Hack The Box: Headless Machine Walkthrough – Easy Difficulty

In this post, I would like to share a walkthrough of the Headless Machine from Hack the Box This room will be considered an Easy machine on Hack the Box What will you gain from the Headless machine? For the user flag, you need to exploit a Cross-Site Scripting (XSS) vulnerability, we will capture the session cookie of the administrator […]

The post Hack The Box: Headless Machine Walkthrough – Easy Difficulty appeared first on Threatninja.net.

July 20, 2024
Read More >>

Hack The Box: Corporate Machine Walkthrough – Insane Difficulty

In this post, I would like to share a walkthrough of the Corporate Machine from Hack the Box This room will be considered an Insane machine on Hack the Box What will you gain from the Corporate machine? For the user flag, you need to abuse a complex XSS attack that involves two HTML injections and a dynamic JavaScript injection […]

The post Hack The Box: Corporate Machine Walkthrough – Insane Difficulty appeared first on Threatninja.net.

July 13, 2024
Read More >>

Hack The Box: Perfection Machine Walkthrough – Easy Diffucility

In this post, I would like to share a walkthrough of the Perfection Machine from Hack the Box This room will be considered an Easy machine on Hack the Box What will you gain from the Perfection machine? For the user flag, you need to abuse the vulnerability that identified was in the “weighted grade calculator” application on the web […]

The post Hack The Box: Perfection Machine Walkthrough – Easy Diffucility appeared first on Threatninja.net.

July 7, 2024
Read More >>

Hack The Box: Drive Machine Walkthrough – Hard Difficulty

In this post, I would like to share a walkthrough of the Drive Machine from Hack the Box This room will be considered a Hard machine on Hack the Box What will you gain from the Drive machine? For the user flag, you will need to exploit an IDOR vulnerability that allows me to gain unauthorized access to the administrator’s […]

The post Hack The Box: Drive Machine Walkthrough – Hard Difficulty appeared first on Threatninja.net.

February 17, 2024
Read More >>

Hack The Box: Builder Machine Walkthrough – Medium Difficulty

In this post, I would like to share a walkthrough of the Builder Machine from Hack the Box This room will be considered a medium machine on Hack the Box What will you gain from the Builder machine? For the user flag, you will need to exploit a recent Jenkins vulnerability, namely CVE-2024-23897, this exploration focuses on its capacity for […]

The post Hack The Box: Builder Machine Walkthrough – Medium Difficulty appeared first on Threatninja.net.

February 13, 2024
Read More >>

Why Windows can’t follow WSL symlinks

By Yarden Shafir Did you know that symbolic links (or symlinks) created through Windows Subsystem for Linux (WSL) can’t be followed by Windows? I recently encountered this rather frustrating issue as I’ve been using WSL for my everyday work over the last few months. No doubt others have noticed it as well, so I wanted […]

February 12, 2024
Read More >>

Hack The Box: Keeper Machine Walkthrough – Easy Difficulty

In this post, I would like to share a walkthrough of the Keeper Machine from Hack the Box This room will be considered an Easy machine on Hack the Box What will you gain from the Keeper machine? For the user flag, you will need to utilize default credentials to gain access to the RT instance, […]

The post Hack The Box: Keeper Machine Walkthrough – Easy Difficulty appeared first on Threatninja.net.

February 10, 2024
Read More >>

Hack The Box: Registrytwo machine Walkthrough – Insane Difficulty

In this post, I would like to share a walkthrough of the Registrytwo Machine from Hack the Box This room will be considered an Insane machine on Hack the Box What will you gain from the Registrytwo machine? For the user flag, you will need to utilize a Docker Registry and authentication server, I will access an image to uncover […]

The post Hack The Box: Registrytwo machine Walkthrough – Insane Difficulty appeared first on Threatninja.net.

February 3, 2024
Read More >>

Hack The Box: Clicker Machine Walkthrough – Medium Difficulty

In this post, I would like to share a walkthrough of the Clicker Machine from Hack the Box This room will be considered a Medium machine on Hack the Box What will you gain from the Clicker machine? For the user flag, you will need a website featuring a game reminiscent of Universal Paperclips. Through meticulous analysis, I’ll uncover a […]

The post Hack The Box: Clicker Machine Walkthrough – Medium Difficulty appeared first on Threatninja.net.

January 27, 2024
Read More >>