Offens!ve Blogs - Sakibul Ali Khan
  • Home
  • CTF Writeups
    • HackTheBox
    • TryHackMe
    • Hackviser
    • CTFtime
  • About
  • Resume
  • Contact

Post for: #Web Security (12 Posts)

TryHackMe | The Sticker Shop | CTF Writeup

Dec 1, 2024 Sakibul Ali Khan
CTF Writeups Pentesting TryHackMe Web Security XSS
TryHackMe | The Sticker Shop | CTF Writeup

A local sticker shop has created a webpage, but their inexperience in web development may have left it vulnerable. Can you exploit their setup to…

Read more →

File Upload Bypass: Understanding and Mitigating Risks in Web Applications

Aug 10, 2024 Sakibul Ali Khan
OWASP 10 Pentesting Web Security
File Upload Bypass: Understanding and Mitigating Risks in Web Applications

Introduction File upload vulnerabilities are a significant concern in the realm of web application security. When a web application allows users to upload files without…

Read more →

denied - A Web Challenge Walkthrough from AmateursCTF 2024

Apr 6, 2024 Sakibul Ali Khan
CTF Writeups CTFtime Web Security
denied - A Web Challenge Walkthrough from AmateursCTF 2024

The AmateursCTF 2024 had a tricky web puzzle called "denied." They gave us a file named index.js for this challenge. When we went to the…

Read more →

Hackviser - Command Injection Filter Bypass

Feb 29, 2024 Sakibul Ali Khan
Command Injection CTF Writeups Hackviser OWASP 10 Pentesting Web Security
Hackviser - Command Injection Filter Bypass

Command Injection Filter Bypass: This lab contains a Command Injection vulnerability that leads to remote command execution. The web application gives the domain name you…

Read more →

Hackviser - Basic Command Injection Writeup

Feb 22, 2024 Sakibul Ali Khan
Command Injection CTF Writeups Hackviser OWASP 10 Pentesting Web Security
Hackviser - Basic Command Injection Writeup

Basic Command Injection - This lab exposes a Command Injection vulnerability, allowing for remote command execution. The web application takes the desired domain name as…

Read more →

Exploring OS Command Injection: Understanding and Hands-On Practice

Feb 12, 2024 Sakibul Ali Khan
Command Injection OWASP 10 Pentesting Web Security
Exploring OS Command Injection: Understanding and Hands-On Practice

Welcome to a comprehensive guide on OS Command Injection, a critical security concern for any web application handling user input. In this blog post, we’ll…

Read more →
← Previous

Sakibul Ali Khan • © 2024 • Offens!ve Blogs • Cookies • Privacy

Cookies
To enhance your experience on this website, we use cookies for analytics and performance purposes. Cookie Policy