Published onAugust 7, 2023HTB FalafelSQLiFile-UploadGroupsRaw-ImagedebugfsDiscovered SQLi to then enumerate the database, authenticate as admin, realize it is vulnerable to some sort of max character length exploit, pivoting from www-data to moshe, then yossi, and finally root.
Published onJuly 16, 2023HTB NibblesDefault-CredentialsFile-Uploadsudo--lDiscovered a login page, found it had default credentials, exploited a file upload, and privilege escalated with sudo -l.