Watch and track your favorite playlist.
Curated by: IppSec (543 videos)
00:00 - Introduction 00:40 - Start of nmap 04:00 - Intercepting the booking download and finding the File Disclosure Vulnerability 07:10 - Finding the dev.titanic.htb host and discovering Gitea 09:25 - Running Gitea locally via docker to see how where it stores the configuration and database 10:50 - Downloading the Gitea Database and cracking it 15:00 - Using gitea to spray passwords via ssh and logging into the box as developer 17:00 - Discovering a script in /opt/scripts/ and discovering a script that writes to a log which is populated every minute 18:15 - Searching for vulnerabilities in Image Magick 21:40 - Getting code execution by exploiting CVE-2024-51817 in ImageMagick