Complete activity history — writeups, projects, and blog posts sorted by newest first.
Compromised the Startup machine by abusing an anonymous writable FTP share to upload a PHP web shell, recovered SSH …
Exploited the Ghostcat vulnerability to read Tomcat configuration files, recovered SSH credentials, cracked a GPG …
Exploited a vulnerable WebDAV configuration to upload a PHP web shell, gained remote code execution, and escalated …
Exploited a command injection vulnerability in a custom network utility to obtain a reverse shell, then escalated …
Abused HTTP PUT and MOVE methods to upload and execute a PHP web shell, gained initial access as www-data, and escalated …
Enumerated an exposed iSCSI target, recovered deleted files using PhotoRec, extracted administrative credentials from a …
Examines how AI security platforms depend on highly privileged service accounts and integrations, creating concentrated …
Enumerated web directories, extracted Borg archives, recovered credentials, and exploited sudo permissions for root …
Discovered hidden web directories, recovered FTP credentials, extracted SSH credentials from steganographic content, and …
Covers source code disclosure, directory discovery, cookie tampering, LFI, encoding, and command injection.
Redis enumeration and flag retrieval through unauthenticated access.
User-controlled search input is reflected without sanitization, allowing arbitrary JavaScript execution.
Exploited anonymous SMB access, leaked JWT credentials, bypassed file upload restrictions for RCE, recovered KeePass …
Exploited LFI to retrieve an encrypted SSH key, cracked its passphrase, gained SSH access, and escalated privileges via …
Identified a vulnerable Windows 7 host, confirmed MS17-010, exploited EternalBlue using Metasploit, and obtained NT …
Enumerated users through the Finger service, obtained SSH access with weak credentials, and escalated privileges via a …
Recovered FTP credentials from a leaked username, uploaded a Node.js reverse shell, obtained access as a low-privileged …
Enumerated a Redis instance, recovered stored credentials, gained SSH access, and abused a misconfigured gdb capability …
Exploited an LFI vulnerability to poison Apache logs, gained a reverse shell, abused sudo permissions, cracked a GPG …
Mounted an exposed NFS share, uploaded a PHP reverse shell, gained initial access, and escalated privileges through a …
Enumerated a valid user using the Ident protocol, brute-forced SSH credentials, and abused sudo access to multitail to …
Enumerated services, identified a username from an SSH banner, brute-forced Telnet credentials, and gained root by …
Discovered a hidden virtual host, generated custom passwords using CeWL, obtained SSH access through weak credentials, …
A cybersecurity research project exploring keyboard event monitoring, HTTP communication, and centralized logging using …
A responsive client-side security tool that generates hashes using MD5, SHA-1, SHA-2, SHA-3, and BLAKE2 algorithms while …
A collection of planned security tools including recon automation, payload generators, and lab utilities.
Learn essential Nmap scanning techniques for port discovery, service enumeration, and OS detection.
Cover authentication flaws, input validation, rate limiting, and common OWASP API Security Top 10 vulnerabilities.
Database application for managing student records with search, filter, and export capabilities.