YPYogeshwar Peelainexploitnotes.hashnode.dev·3d ago · 15 min readTryHackMe - SeaSurfer writeupExecutive Summary The engagement began with a single disclosed virtual host name leaking out of an HTTP response header on the target web server. That one leak unraveled the entire box: it led to a Wo00
YPYogeshwar Peelainexploitnotes.hashnode.dev·3d ago · 9 min readTryHackMe: MD2PDF WriteupSummary MD2PDF is a web app that converts user-submitted Markdown into a downloadable PDF using a server-side rendering engine. The input is not sanitized, so raw HTML is rendered as-is - including ta00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Sep 28 · 8 min readTryHackMe: Binary Heaven - WriteupSummary A locked-down TryHackMe box gating SSH access behind two credential-checking binaries: a small C program with an anti-debug/obfuscated string comparison, and a statically linked Go binary hidi00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Sep 22 · 11 min readTryHackMe: Adventure Time WriteupSummary Adventure Time is a hard-rated TryHackMe box themed around the cartoon, with a heavy focus on multi-layered encoding/decoding puzzles, steganography, and lateral movement through several user 00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Sep 22 · 8 min readTryHackMe: Python Playground WriteupSummary Python Playground is a hard-rated TryHackMe box built around a "sandboxed" Python code execution service fronted by a Node.js/Express web app. The site advertises a blacklist-based filter that00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Sep 10 · 10 min readTryHackMe - Olympus WriteupSummary Olympus is a Linux box built around an old Victor CMS 1.0 install hidden under /~webmaster/. An unauthenticated SQL injection in the CMS search feature was the root of the entire chain: it dum00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Sep 9 · 4 min readTryHackMe - CyberHeroes WriteupSummary CyberHeros is an easy-rated web challenge built on the iPortfolio Bootstrap template. The site advertises a "login page" challenge directly in its About section. Inspection of login.html revea00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Aug 24 · 9 min readTryHackMe : Umbrella WriteupIntroduction Umbrella is a medium-difficulty TryHackMe box built around a leaky Docker registry, an exposed Node.js time-tracking application, and a classic writable-log privilege escalation. The path00
MMageshin0xog.hashnode.dev·Aug 24 · 3 min readExfilNode | TryHackMe WriteupScenario The analysis of Liam’s company-provided Windows workstation in the DiskFiltration room revealed major evidence of his involvement in the TECH THM’s data exfiltration. However, he could argue 00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Aug 10 · 35 min readTryHackMe : Overflow The Jackpot writeup# Challenge Category Flag 1 B1t Recovery Crypto THM{[REDACTED]} 2 Lost Fortune Included Web THM{REDACTED} 3 Casino Heist Forensics THM{REDACTED} 4 Fresh Powder - Bonus Challenge Detection Eng10