Archives
All the articles I've archived.
The Threat Actor Naming Paradox: Pandas, Kittens, and Cyber Cartels
Discover the ironic and often amusing truth behind how the cybersecurity industry names the world's most dangerous state-sponsored hackers and cybercrime syndicates.
Privilege Escalation: SUID
Learn how attackers elevate their privileges in Linux by hunting for and exploiting SUID misconfigurations on native binaries like find.
TryHackMe Writeup: Brute It
A complete writeup for the TryHackMe Brute It CTF, featuring directory fuzzing, web login brute-forcing, and leveraging GTFOBins for root privilege escalation.
TryHackMe Writeup: Simple CTF
A comprehensive walkthrough for TryHackMe's Simple CTF room. Learn how to troubleshoot FTP passive modes, brute-force SSH on non-standard ports, and escalate privileges using Vim.
TryHackMe Writeup: Library
Learn the mechanics of Python Library Hijacking in this TryHackMe Library walkthrough. We cover initial web enumeration, Hydra password attacks, and root privilege escalation.
TryHackMe Writeup: Nmap
A quick and practical walkthrough on how to uncover hidden credentials through aggressive Nmap service fingerprinting and banner grabbing on non-standard ports.
GTFOBins: A Hacker's Rosetta Stone
Discover how attackers bypass local security restrictions and escalate privileges in Linux using trusted, native system binaries via GTFOBins.
TryHackMe Writeup: Basic Pentesting
A step-by-step walkthrough of the TryHackMe Basic Pentesting room. Learn how to enumerate SMB shares, find hidden directories, brute-force SSH logins with Hydra, and crack SSH private keys using John the Ripper.
Leveraging LOLBAS and LOLDrivers: Turning Windows Against Itself
Discover how attackers bypass modern Windows defenses like AppLocker and EDRs using trusted native binaries (LOLBAS) and vulnerable signed drivers (BYOVD).
