Security Writeups
CTF writeups, machine walkthroughs, and security challenge solutions.
All Writeups
77 availableSilentium
VHost fuzzing
CVE-2025-58434 for account takeover
WebAdmin
Enumerated admin panel
Found authentication weakness
Web2Shell
Enumerated web application
Found file upload vulnerability
Trivarna
Scanned target with nmap
Enumerated web application
StegoVault
Enumerated steganography challenge
Extracted hidden data
ReconCipher
Performed reconnaissance
Identified open services
Polo
Nmap scan revealed services
Enumerated web server
PageVault
Scanned target with nmap
Enumerated page vault application
Mr.Robot
Enumerated target system
Found vulnerable service
MidnightLeak
Initial enumeration
Discovered data leak
Deathnote
Scanned target with nmap
Enumerated web application
CyberHunt2
Comprehensive enumeration
Found multiple attack vectors
Chain
Identified chain of vulnerabilities
Exploited initial foothold
Behind The Proxy
Enumerated proxy configuration
Found proxy bypass vulnerability
WingData
Scanned target with nmap
Enumerated data application
VariaType
Nmap scan revealed services
Enumerated typing application
Soulmate
Scanned target with nmap
Enumerated web server
Sorcery
Nmap scan revealed services
Enumerated web application
Snapped
Initial enumeration
Discovered snapshot application
Signed
Scanned target with nmap
Enumerated services
Rebound
AD enumeration
Identified complex misconfiguration
Pterodactyl
Nmap scan revealed services
Enumerated game server panel
Principal
AD enumeration
Identified vulnerable service
Pirate
Pre-Windows 2000 Compatible Access group membership
LSA Secrets storing cleartext domain credentials
Overwatch
Comprehensive enumeration
Identified monitoring system vulnerability
NanoCorp
Nmap scan revealed services
Enumerated corporation website
Logging
Initial enumeration
Discovered logging application
Kobold
Scanned target with nmap
Enumerated web application
Interpreter
Nmap scan revealed services
Enumerated interpreter application
Intelligence
AD enumeration
Identified GPO vulnerability
Hercules
Scanned target with nmap
Enumerated services
Helix
Comprehensive enumeration
Identified multiple attack vectors
Guardian
Initial enumeration
Discovered security application
Giveback
Nmap scan revealed services
Enumerated web application
Gavel
In-depth enumeration
Identified complex vulnerability chain
Fries
Scanned target with nmap
Enumerated web application
FireFlow
Comprehensive enumeration
Identified workflow engine vulnerability
Facts
Nmap scan revealed services
Enumerated web server
Expressway
Scanned target with nmap
Enumerated services
Eloquia
Initial enumeration
Discovered web application
Eighteen
Nmap scan revealed services
Enumerated web application
DevArea
Scanned target with nmap
Enumerated development environment
DarkZero
Comprehensive enumeration
Identified complex attack chain
Conversor
Nmap scan revealed services
Enumerated conversion service
Cobblestone
Initial enumeration
Discovered web application
CCTV
Scanned target with nmap
Enumerated camera management system
Browsed
Nmap scan revealed services
Enumerated web server
Breach
Comprehensive enumeration
Identified vulnerable web application
AirTouch
Nmap scan revealed open services
Enumerated web application
VulnNet: dotpy
Scanned target with nmap
Enumerated Python web application
VulnNet: Roasted
AD enumeration
Identified ASREPRoastable accounts
VulnNet: Node
Nmap scan revealed Node.js application
Enumerated API endpoints
VulnNet: Internal
Network enumeration
Identified internal services
VulnNet: Active
AD enumeration with BloodHound
Identified Kerberoastable accounts
Sustah
Initial enumeration
Discovered web application
Reset
Nmap scan revealed services
Enumerated web server
RazorBlack
Scanned target with nmap
Enumerated web application
Operation Endgame
Comprehensive enumeration
Identified multiple attack vectors
One Piece
Nmap scan revealed services
Enumerated web application
Message to Garcia
Scanned target with nmap
Enumerated services
Lumberjack Turtle
Nmap scan revealed open ports
Enumerated web server
Ledger
Initial nmap scan
Enumerated web application
Jack
Scanned target with nmap
Enumerated running services
IronShade
Nmap scan revealed services
Enumerated web server
Inferno
Scanned target with nmap
Enumerated web application
Hopper Origins
Initial enumeration with nmap
Discovered web application
Exfilibur
Nmap scan revealed web services
Enumerated application for data exfiltration vectors
Enterprise
Performed comprehensive AD enumeration
Identified misconfigurations in Group Policy
Eavesdropper
Scanned target with nmap
Enumerated web server and found exposed files
Devie
Initial enumeration with nmap
Discovered web application with development endpoints
Debug
Nmap scan revealed multiple services
Enumerated web application for debugging endpoints
CupidCards
Scanned target with nmap
Enumerated web application endpoints
Chains of Love
Enumerated web application for SSRF vulnerabilities
Discovered internal services through SSRF
Brute
Scanned target with nmap
Enumerated web application for input vectors
Biblioteca
Performed nmap scan to identify web server
Discovered hidden directory through manual enumeration
Attacktive Directory
Enumerated AD environment using BloodHound
Identified Kerberoastable service accounts
Annie
Ran nmap scan to discover open ports (SSH, HTTP)
Enumerated web directory and found WordPress installation