Recent Offensive Intelligence Ledger
Reactor: Prototype Pollution Vector
Exploiting untrusted key manipulation fields within Next.js runtime architectures to trigger underlying microservice code compilation injection blocks.
Appointment Injection Bypass
Abusing raw database handling query logic fields via basic SQL termination syntax strings.
// EXPLOIT_RELIABILITY_SANDBOX_INDEX
My Toolkit
Linux PrivEsc LPE
Modifying cred structures in memory space via read/write primitives.
//
}
Certificates
Certification
Certification are part of my side-quests.
// HTB LABS
{
* Dante Pro Lab
* Zypher Pro LAB
}
}
Target Context:
Kerberoasting Extraction
Requesting Service Tickets for accounts with SPNs to crack offline.
# Query Active Directory for TGS tickets
Get-DomainUser -SPN | Get-DomainSPNTicket -InvokeKerberoast | Select-Object -ExpandProperty Hash | Out-File -FilePath hashes.txt