Infosec Consultant & Pentester
  • Home
  • About
  • CVE's
  • Responsible Disclosure
  • 100 Days of Dev Ops
htb

Hack the Box - Jeeves Walkthrough

Interface found via Dirbuster http://10.10.10.63:50000/askjeeves/ Initial
Read more
Chris Young
oscp

The achievement mindset

In this post I want to document how I finally achieved OSCP
Read more
Chris Young

Rdesktop

rdesktop -u USERNAME -p PASSWORD -g 95% 10.10.10.1 -g
Read more
Chris Young
OWASP

Web Application Vulnerabilities 101 - Directory Traversal

Directory traversal aims to access files and directories that are stored outside
Read more
Chris Young
File Inclusion

DVWA - File Inclusion

LFI & RFI are commonly found in poorly written PHP code, allows
Read more
Chris Young
OWASP

CSRF - Cross Site Request Forgery

CSRF refers to an attack against authenticated web applications using Cookies wherein
Read more
Chris Young
OWASP

XSS - Cross Site Scripting

XSS in an input validation weakness which allows an attacker to inject
Read more
Chris Young
OWASP

XXE - XML External Entity

The XML External Entity (XXE) attack is a type of attack against
Read more
Chris Young
OWASP

Unrestricted File Upload

Many web applications allow users to upload content.  The content may be
Read more
Chris Young
SSRF

SSRF - Server Side Request Forgery

Server Side Request Forgery (SSRF) is a vulnerability that describes the behaviour
Read more
Chris Young
dvwa

SQL Injection Techniques

Basic ' or '1'='1 ' OR '1&
Read more
Chris Young
nmap

nmap to grab low hanging fruit

Using nmap alongside searchsploit in Kali Linux to grab any low hanging
Read more
Chris Young
Infosec Consultant & Pentester © 2026
Powered by Ghost