CTF writeups
Walkthrough for some of the boxes I am doing while preparing for OSCP.
Last updated
Was this helpful?
Walkthrough for some of the boxes I am doing while preparing for OSCP.
Last updated
Was this helpful?
I will be doing boxes mostly from this list as well as some extras.
Machine
OS
Rating
Remarks
Windows
Warmup(10)
CVE, Easy exploitation, No Privilege escalation
Linux
Warmup(10)
CVE, SQLmap, No Privilege Escalation
Linux
Warmup(10)
CVE, Easy, No privilege escalation
Linux
Warmup(10)
CVE, metasploit, No P.E
Linux
Warmup(10)
CVE, No P.E
Linux
Warmup(10)
CVE, Vulnerable CMS, weak credential, cronjob, Vulnerable application (exiftool)
Windows
Warmup(10)
CVE, Authenticated RCE, No P.E
Windows
Warmup(10)
walkthrough in progress
Windows
Warmup(10)
walkthrough in progress
Linux
Get2Work(20)
Sensitive information disclosure through api
, Weak permission which leads to exploiting cronjob
for P.E
Linux
Get2Work(20)
Cookie manipulation, command injection to RCE. Exploiting SUID
for P.E
Linux
Get2Work(20)
Enumeration, CVE, Exploit cronjob for P.E
Linux
Get2Work(20)
Command Injection, Insecure permission, Exploit service file to get P.E
Linux
Get2Work(20)
SMTP, Phising, Insecure file permission and sudo misconfiguration.
Linux
Get2Work(20)
Weak Credential, CVE, File upload, Sudo misconfiguration
Linux
Get2Work(20)
Anonymous login, Redis load module
, Cronjob, ld_library_path
Linux
TryHarder(25)
Weak Credential, Docker Escape for P.E
Machine name
os
Remarks
Linux
Like OSCP, web, exposed git, CVE, command injection, sudo misconfiguration,
Linux
Like OSCP, SQLi, LFI, Bruteforcing SSH, Sensitive information disclosure, Vulnerable script with sudo privilege.
Coming soon