Sudo
Volt | Vulnyx Writeup
A Volt walkthrough demonstrating access-control bypass, admin credential brute-forcing, command injection, credential …
7 min read
#linux
#nmap
Care | Vulnyx Writeup
Compromised the Care machine by exploiting a Local File Inclusion vulnerability to poison Squid proxy logs and achieve …
6 min read
#linux
#lfi
Lookup | Vulnyx Writeup
Compromised the Lookup machine by abusing an unrestricted DNS Zone Transfer to enumerate employee accounts, reused the …
6 min read
#linux
#dns
Network | Vulnyx Writeup
Exploited a command injection vulnerability in a custom network utility to obtain a reverse shell, then escalated …
6 min read
#linux
#command-injection
Unit | Vulnyx Writeup
Abused HTTP PUT and MOVE methods to upload and execute a PHP web shell, gained initial access as www-data, and escalated …
6 min read
#linux
#nginx
Lower4 | Vulnyx Writeup
Enumerated a valid user using the Ident protocol, brute-forced SSH credentials, and abused sudo access to multitail to …
5 min read
#linux
#ident