
HackTheBox CodeTwo Writeup
A walkthrough of the HackTheBox 'CodeTwo' machine which is Easy rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
A walkthrough of the HackTheBox 'CodeTwo' machine which is Easy rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
CVE-2024-47533 is a critical authentication bypass vulnerability in Cobbler (versions 3.0.0 to before 3.2.3 and 3.3.7) allowing unauthenticated remote code execution via the XMLRPC interface.
A walkthrough of the HackTheBox 'Cobblestone' machine which is Insane rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
CVE-2025-24893 is a critical unauthenticated remote code execution vulnerability in XWiki (versions < 15.10.11, 16.4.1, 16.5.0RC1) caused by improper handling of Groovy expressions in the SolrSearc...
CVE-2024-32019 is a high-severity local privilege escalation vulnerability in Netdata (versions >= 1.44.0-60 < 1.45.3), caused by insecure use of the PATH variable in the ndsudo SUID binary, allowi...
A walkthrough of the HackTheBox 'Editor' machine which is easy rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
A walkthrough of the HackTheBox 'Era' machine which is medium rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
A walkthrough of the HackTheBox 'Mirage' machine which is medium rated windows box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.
CVE-2025-27591 is a known privilege escalation vulnerability in the Below service (version < v0.9.0)
A walkthrough of the HackTheBox 'Outbound' machine which is easy rated linux box. This write-up covers initial access, privilege escalation, and post-exploitation techniques.