Copy

Hackthebox Precious Writeup

Hackthebox released a new machine called precious. On this machine, first we got the web service which converts the web-page to a PDF, which is vulnerable to command injection. Using that, get the rev shell, and for privilege escalation, use code execution through yaml deserialization attack.

Writeup
0xdedinfosec
Website
GitHub
Email
RSS

© 2023 Dedinfosec, Inc. All rights reserved.

Our mailing address is:
dedinfosec@protonmail.com

Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list.






This email was sent to <<Email Address>>
why did I get this?    unsubscribe from this list    update subscription preferences
0xDedinfosec · 1100 E Cameron Ave · West Covina, CA 91790-3851 · USA

Email Marketing Powered by Mailchimp