Hack The Box: Bookworm Machine Walkthrough – Insane Difficulty

In this post, I would like to share a walkthrough of the Bookworm Machine from Hack the Box. This room will be considered an Insane machine on Hack the Box What will you gain from the Bookworm machine? For the user flag, you will need a sophisticated exploit chain by leveraging cross-site scripting, insecure upload, and […]

The post Hack The Box: Bookworm Machine Walkthrough – Insane Difficulty appeared first on Threatninja.net.

January 21, 2024
Read More >>

Hack The Box: Zipping Machine – Medium Difficulty

In this post, I would like to share a walkthrough of the Zipping Machine from Hack the Box This room will be considered a medium machine on Hack the Box What will you gain from the Zipping machine? For the user flag, you will need to create symbolic links within the zip file and access files from the host file […]

The post Hack The Box: Zipping Machine – Medium Difficulty appeared first on Threatninja.net.

January 13, 2024
Read More >>

Source-Based Gentoo Linux Goes Binary

While Gentoo Linux is best-known as source-based Linux distribution, “our package manager, Portage, already for years also has support for binary packages,” according to its web page. It notes that source- and binary-based package installations can be …

December 31, 2023
Read More >>

Hack The Box: Authority Machine Walkthrough – Medium Difficulty

In this post, I would like to share a walkthrough of the Authority Machine from Hack the Box This room will be considered a Medium machine on Hack the Box What will you gain from the Authority machine? For the user flag, you will need to I will access accessible shares through SMB to locate certain […]

The post Hack The Box: Authority Machine Walkthrough – Medium Difficulty appeared first on Threatninja.net.

December 9, 2023
Read More >>

HackTheBox: CyberMonday Machine Walkthrough – Hard Difficulty

In this post, I would like to share a walkthrough of the CyberMonday Machine from Hack the Box This room will be considered a Hard machine on Hack the Box What will you gain from the CyberMonday machine? For the user flag, you will need to process it front-loaded before the user flag. Initially, I’ll begin by exploiting an off-by-slash […]

The post HackTheBox: CyberMonday Machine Walkthrough – Hard Difficulty appeared first on Threatninja.net.

December 2, 2023
Read More >>

Hack The Box: Pilgrimage Machine Walkthrough – Easy Difficulty

In this post, I would like to share a walkthrough of the Pilgrimage Machine from Hack the Box This room will be considered an Easy machine on Hack the Box What will you gain from the Pilgrimage machine? For the user flag, you will need to abuse a website that reduces the image size. We managed […]

The post Hack The Box: Pilgrimage Machine Walkthrough – Easy Difficulty appeared first on Threatninja.net.

November 25, 2023
Read More >>

CISA adds Looney Tunables Linux bug to its Known Exploited Vulnerabilities catalog

US CISA adds Looney Tunables Linux flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Looney Tunables Linux vulnerability to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability CVE-2023-4911 (CVSS score 7.8), aka Looney Tunables, is a buffer overflow issue that resides in the GNU C Library’s dynamic loader ld.so while processing the […]

November 22, 2023
Read More >>