/ posts
Chaining a stored XSS in a WordPress contact form into admin takeover, RCE via a malicious plugin, SSH access, and a PHP file-upload bypass on an internal OCR service to root the box.
Recovering data from Windows Notepad TabState binary files in a forensics challenge.
Escalating privileges to TrustedInstaller on Windows to execute a binary and retrieve the flag.
Exploiting PyYAML unsafe deserialization to achieve remote code execution on a Sigma rule linter.
Explore how Go handles concurrency with goroutines and channels.
Deobfuscating a heavily obfuscated PowerShell malware to uncover a hidden flag in Windows Defender exclusion settings.