
Zero
An Insane Linux machine involving SFTP-hosted pages, an .htaccess file-read primitive, leaked SSH credentials, and an abusable Apache configuration check.
Documented attack paths, enumeration, and lessons learned from retired Hack The Box machines – available in English and German.

An Insane Linux machine involving SFTP-hosted pages, an .htaccess file-read primitive, leaked SSH credentials, and an abusable Apache configuration check.

Mirth Connect leads to RCE through CVE-2023-43208; database credentials, a cracked PBKDF2 hash, and f-string injection then provide root access.

An unauthenticated Nginx-UI backup provides the foothold; a TOCTOU race between snap-confine and systemd-tmpfiles enables escalation to root.

A Langflow RCE leads to leaked credentials, JWT algorithm confusion, a malicious MCP tool, and ultimately compromise of the Kubernetes host.

An extensive Insane Windows chain spanning NoSQL injection, WebAuthn, prototype pollution, MSSQL, dMSA Ouroboros, and unsafe YAML deserialization.