HTB

OneTwoSeven

Flavien Jaquerod
An almost complete walkthrough of the hard linux HTB box: OneTwoSeven. From initial enumeration to getting a reverse shell, and starting privilege escalation.

Sightless

Flavien Jaquerod
A short writeup of the easy linux HTB machine: Sightless. Really fun machine as the privilege escalation part required inspecting a Chrome session.

Logger

Flavien Jaquerod
This challenge contains a file with USB traffic between many hosts. We can inspect this traffic and use a script to recover the keystrokes which contain the flag.

TrueSecrets

Flavien Jaquerod
this challenge makes us go through a .raw file containing all the content of a windows file system at some point. Checking the processes and applications, we see TrueCrypt file that we can use to retrieve content and break AES encryption to get the flag

Weather app

Flavien Jaquerod
HTB writeup for the easy web challenge “Weather app” which uses a combination of request smuggling, sql injection and ssrf vulnerability to get the flag. Pretty advanced compared to other web challenges.

Caption

Flavien Jaquerod
A complete walkthrough of the Caption Hack The Box box, covering enumeration, exploitation, and privilege escalation.

Jarmis

Flavien Jaquerod
A complete walkthrough of the Jarmis Hack The Box box, covering enumeration, exploitation, and privilege escalation.