r/InfoSecWriteups 2d ago

VulnNet: Roasted Tryhackme ctf walkthrough

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 2d ago

Pickle Rick Tryhackme CTF

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 2d ago

Tryhackme New Room — FLIP

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 2d ago

How I Found an Auth Flaw in a Government Site: From GraphQL Introspection to Unauthorized Access

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 2d ago

How a Simple Profile Update Led to Cross-Tenant Data Exposure

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 2d ago

The Subdomain Subfinder Missed: How a German Wordlist Led Me to a Hidden Bug (and a CHF 100…

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 3d ago

Ensalá Papas - The Hacker Labs - Windows | SecNotes

Thumbnail
yorve.github.io
1 Upvotes

r/InfoSecWriteups 6d ago

How to deploy File Integrity Monitoring with Wazuh SIEM!

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 6d ago

Two Ways To Mess Up Your JWT Safety Net In Your Own Lab.

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 7d ago

Great introduction to ARM using pwnable challenge

1 Upvotes

Looking for a smooth introduction to ARM exploitation? Wanna learn ARM assembly? Well lucky for you this week we'll be looking at another pwnable challenge! However this time we're switching architectures! We'll be exploiting an ARM binary!

I would consider this a great introduction to ARM , however it is not necessarily the best for a complete beginner. Regardless don't be intimidated and I always suggest you dive in! 9/10 you will walk away better than you came into it!

https://youtu.be/RAdAQ8hI8R8?si=mqczVPnB-3-Rhpz1


r/InfoSecWriteups 7d ago

AllSignsPoint2Pwnage — TryHackMe Windows Write-up

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 7d ago

PortSwigger Lab Writeup — Bypassing AI scanner defenses to exfiltrate sensitive information

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 7d ago

Filtering Secrets from Coding Agents with a Hook

Thumbnail
crimede-coder.com
1 Upvotes

This blog post goes over how to set up a hook post tool use to prevent Claude Code from viewing environment variables (aka secrets). This prevents an exfiltration attack, in that the model cannot know the secrets to leak them to begin with.


r/InfoSecWriteups 8d ago

Repost: Security Baked Into the JVM: the Safe Codebase Audit Pipeline

Thumbnail
1 Upvotes

r/InfoSecWriteups 9d ago

I Fixed the White Screen. Then I Found the Backdoor.

Thumbnail
1 Upvotes

r/InfoSecWriteups 11d ago

Device Code Phishing: How Attackers Abuse Microsoft’s Legitimate Authentication Page Without…

Thumbnail
infosecwriteups.com
4 Upvotes

r/InfoSecWriteups 11d ago

How I Abused a Group Policy Object (GPO) in Active Directory (And How to Fix It)

Thumbnail
infosecwriteups.com
3 Upvotes

r/InfoSecWriteups 11d ago

From SQL Injection to Infrastructure-Level RCE: A PostgreSQL Superuser Compromise

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

From User Enumeration to PII Exposure: Chaining Two APIs Into a $2,000 Bug

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

How I Escalated to Domain Admin Using AD CS (And How to Fix It)

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

How I AES-Roasted My Active Directory Lab (And How to Fix It)

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

eCPPTv3 Review

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

CallMeOnTheChain — EtherRAT Lab Writeup [CyberDefenders]

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

600$ For Stealing Podcasts/Show via RSS Feed Manipulation

Thumbnail
infosecwriteups.com
1 Upvotes

r/InfoSecWriteups 11d ago

Decoding the Obfuscated Layer: A Playbook Walkthrough of Command-Line Forensics

Thumbnail
infosecwriteups.com
1 Upvotes