Vulnyx

BANK Writeup- Vulnyx

Exploited anonymous SMB access, leaked JWT credentials, bypassed file upload restrictions for RCE, recovered KeePass …

8 min read
#smb #jwt

Doctor Writeup - Vulnyx

Exploited LFI to retrieve an encrypted SSH key, cracked its passphrase, gained SSH access, and escalated privileges via …

3 min read
#linux #lfi

Eternal Writeup - Vulnyx

Identified a vulnerable Windows 7 host, confirmed MS17-010, exploited EternalBlue using Metasploit, and obtained NT …

8 min read
#windows #smb

FING Writeup - Vulnyx

Enumerated users through the Finger service, obtained SSH access with weak credentials, and escalated privileges via a …

6 min read
#linux #finger

Lower7 Writeup - Vulnyx

Recovered FTP credentials from a leaked username, uploaded a Node.js reverse shell, obtained access as a low-privileged …

5 min read
#linux #ftp

Lower6 Writeup - Vulnyx

Enumerated a Redis instance, recovered stored credentials, gained SSH access, and abused a misconfigured gdb capability …

6 min read
#linux #redis

Lower5 Writeup - Vulnyx

Exploited an LFI vulnerability to poison Apache logs, gained a reverse shell, abused sudo permissions, cracked a GPG …

7 min read
#linux #lfi

Lower3 Writeup - Vulnyx

Mounted an exposed NFS share, uploaded a PHP reverse shell, gained initial access, and escalated privileges through a …

6 min read
#linux #nfs

Lower4 Writeup - Vulnyx

Enumerated a valid user using the Ident protocol, brute-forced SSH credentials, and abused sudo access to multitail to …

5 min read
#linux #ident

Lower2 Writeup - Vulnyx

Enumerated services, identified a username from an SSH banner, brute-forced Telnet credentials, and gained root by …

5 min read
#linux #telnet

Lower Writeup - Vulnyx

Discovered a hidden virtual host, generated custom passwords using CeWL, obtained SSH access through weak credentials, …

5 min read
#linux #vhost