Caption HackTheBox Writeup
Compromising the Caption machine by abusing GitBucket and a buggy log service to gain root access.

Search for a command to run...

Series
Own The Box" is a technical blog series featuring detailed Hack The Box walkthroughs. Written for cybersecurity professionals, it covers enumeration, exploitation, and privilege escalation using real-world pentesting and CTF techniques.
Compromising the Caption machine by abusing GitBucket and a buggy log service to gain root access.

An Active Directory journey from user enumeration to domain admin via backup privilege abuse

About Unrested Unrested is a medium difficulty Linux machine hosting a version of Zabbix. Enumerating the version of Zabbix shows that it is vulnerable to both CVE-2024-36467 (missing access controls on the user.update function within the CUser class...
