xomnibot@lab:~/writeups$
// writeups
Writeups
CTF and lab walkthroughs across TryHackMe, Hack The Box, PortSwigger, and more.
3 writeups
Category
Platform
Difficulty
HardPortSwigger
PortSwigger OAuth 2.0 Account Takeover
Exploiting unvalidated redirect URIs and implicit grant token leaks to achieve pre-auth account takeover.
#OAuth 2.0#JWT#Account Takeover
1 min read

HardActive Directory
Active Directory Attack Chain: AS-REP Roasting to DCSync
Full attack path from unauthenticated AS-REP roasting to BloodHound ACL traversal and DCSync domain compromise.
#Kerberos#AS-REP Roasting#BloodHound
1 min read
No posts match your filters.
Try a different search term or clear the filters below.
