Saltar al contenido principal

Documentation Index

Fetch the complete documentation index at: https://rootea.es/llms.txt

Use this file to discover all available pages before exploring further.

CrossFit

··
Sistema operativoLinux
DificultadInsano
IP10.10.10.208
Fecha de retirada
SkillsFTP SSL Certificate Enumeration XSS Injection Subdomain Enumeration through the Origin Header [Access-Control-Allow-Origin] Accessing internal websites through XSS - Creating a javascript file Registering a new user through XSS - CSRF Protection Bypass Uploading a webshell with lftp Cracking Hashes Abusing Cron Job php-shellcommand exploitation - escapeArgs option is not working properly Injecting data into the database to achieve remote command execution (RCE) [User Pivoting] Binary Analysis - dbmsg [GHIDRA] Reversing Creating an exploit - Abusing Rand [Time travel] Abusing symbolic links Injecting our own public key as authorized_keys in /root

Writeups

IdiomaAutorFormatoEnlace
🇪🇸 ESS4vitarVídeoAbrir
🇬🇧 EN0xdfTextoAbrir
🇬🇧 ENIppSecVídeoAbrir

Recursos por skill

Documentación curada para cada técnica que aparece en la columna Skills de arriba. Fuentes: HackTricks, GTFOBins, PortSwigger, etc.
SkillFuenteEnlace
Remote Code Execution (RCE)HackTricksAbrir
Cross-Site Scripting (XSS)HackTricksAbrir