Skip to main content

Posts

Featured

Surprise, I don't know everything

Captain Machine: Or How I Learned to Stop Worrying and Love Grep Machine: Captain (Linux) Difficulty: Easy Link: https://app.hackthebox.com/machines/Cap The Setup It's 9 PM. I've got a Linux box in front of me and way too much confidence. The Captain machine on HTB looked straightforward enough: scan it, enumerate it, and own it. Classic pentesting. Spoiler: It was not straightforward. I actually had to learn stuff I had never used before Reconnaissance: The Boring But Necessary Part First things first: nmap scan. You can't hack what you can't see, and nmap is basically echolocation for networks. Found the usual suspects web server running, some interesting ports open. Also, Nmap is what I know to do always; it's almost a ritual now. Without it, I feel lost, and ye,s I had to check all 65... ports. I used T5 to speed things up, but apparently that was too fast, so we decreased, and at the end there was those 3 ports I had gotten initially, so wtf brro  ...

Latest Posts

Pride and what it means: A reflection on The Brother's Karamzov

Security in the World of AI

Has Google Averted Its AI Crisis?

Databases: Beyond SQL

God, my disabled friend

A Prisma Nest

From Localhost to Azure: Deploying My Full-Stack App to the Cloud

DNS 101: From Googling 'What Is A Nameserver' to Feeling Kinda Smart

Building a Secure Login and Signup API with Node.js, PostgreSQL, and Modern Tools

Broken Access Controls