1xTrashPanda@127.0.0.1:~/home/new_posts  
[ PID: 4312 ]

WingData - CTF

Exploiting unauthenticated RCE in Wing FTP Server for initial access and abusing an insecure tar archive restore script for root privileges.

./view_writeup.sh
[ PID: 3079 ]

Kobold - CTF

Chaining RCE in MCPJam with an LFI-to-RCE pivot in PrivateBin to exploit an internal Docker management service for root access.

./view_writeup.sh
[ PID: 4898 ]

Conversor - CTF

Exploiting XSLT injection for arbitrary file write to achieve RCE via cron jobs, followed by priv-esc through a vulnerable needrestart version.

./view_writeup.sh
[ PID: 0215 ]

Gavel - CTF

Exploiting an exposed Git repository, SQL injection, and dynamic rule execution to obtain root access

./view_writeup.sh
[ PID: 0214 ]

Principal - CTF

Bypassing pac4j-jwt authentication with a forged JWE token and exploiting SSH Certificate Authorities for root access

./view_writeup.sh