Cybersecurity

AWS Big IAM Challenge

This is a WriteUp of the WIZ “The Big IAM Challenge”. The challenge is a cloud security CTF about identifiying and exploiting AWS IAM misconfigurations in s...

AWS EKS Cluster Games

This is a WriteUp of the WIZ “EKS Cluster Games”. The games are a cloud security CTF about identifiying and exploiting common AWS EKS security issues in fiv...

PHP Insecure Deserialization

This is a WriteUp of the HTB Challenge Toxic. The challenge is delivered with the full source code of the web application, written in PHP.

HackTheBox WriteUp - CozyHosting

Enumeration An initial port scan showed two open ports: 22 and 80. The website hosts some flavor text and a login page. ``` $ nmap -sV -sC -Pn -p1-65535 -o ...

HackTheBox WriteUp - Sau

Enumeration Scanning sau.htb showed two open ports, 22 and 55555 and two filtered ports 80 and 8338. Receiving a filtered response indicates, that the reque...

HackTheBox WriteUp - Devvortex

Enumeration An initial port scan showed two open ports: 22 and 80. The main website on devvortex.htb only hosts some flavor text. ``` $ nmap -sV -sC -Pn -p1...

HackTheBox WriteUp - Codify

Enumeration An initial port scan showed three open ports, SSH and two HTTP ports. Port 80 being an Apache reverse proxy to the Node.js server running on por...

Conducting a Penetration Test

During my exchange semester I took the course “Penetration Testing”, which focused on the approaches an intruder might take to gain access to systems and wha...

Back to Top ↑

Hack-The-Box

PHP Insecure Deserialization

This is a WriteUp of the HTB Challenge Toxic. The challenge is delivered with the full source code of the web application, written in PHP.

HackTheBox WriteUp - CozyHosting

Enumeration An initial port scan showed two open ports: 22 and 80. The website hosts some flavor text and a login page. ``` $ nmap -sV -sC -Pn -p1-65535 -o ...

HackTheBox WriteUp - Sau

Enumeration Scanning sau.htb showed two open ports, 22 and 55555 and two filtered ports 80 and 8338. Receiving a filtered response indicates, that the reque...

HackTheBox WriteUp - Devvortex

Enumeration An initial port scan showed two open ports: 22 and 80. The main website on devvortex.htb only hosts some flavor text. ``` $ nmap -sV -sC -Pn -p1...

HackTheBox WriteUp - Codify

Enumeration An initial port scan showed three open ports, SSH and two HTTP ports. Port 80 being an Apache reverse proxy to the Node.js server running on por...

Back to Top ↑

Schoolwork

Conducting a Penetration Test

During my exchange semester I took the course “Penetration Testing”, which focused on the approaches an intruder might take to gain access to systems and wha...

Back to Top ↑

Cloud-Computing

AWS Big IAM Challenge

This is a WriteUp of the WIZ “The Big IAM Challenge”. The challenge is a cloud security CTF about identifiying and exploiting AWS IAM misconfigurations in s...

AWS EKS Cluster Games

This is a WriteUp of the WIZ “EKS Cluster Games”. The games are a cloud security CTF about identifiying and exploiting common AWS EKS security issues in fiv...

Back to Top ↑

Machine-Learning

Back to Top ↑