OpenKeyS — HTB walkthrough

ENUMERATION

visiting each php page one by one.
  1. User : Jennifer
  2. Current path : /var/www/htdocs/includes/auth.php
  3. Also if cookies get verified then we won’t require username and password to login. The session resumes as it was.
trying to exploit the same, via login

--

--

--

OSCP | CEH | Cyber Security Enthusiast.

Love podcasts or audiobooks? Learn on the go with our new app.

Recommended from Medium

picoCTF write up: information

How To Maintain And Value Patient Confidentiality

Difference between Security Groups and Network Access Control List

Global Financial Crimes: COVID-19 Typologies

Attention all NET Holders

Discord and Slack Are Becoming Potent Tools for Malware Attacks

Safe & Sound: How to Improve Mobile App Payment Security

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Dhanishtha Awasthi

Dhanishtha Awasthi

OSCP | CEH | Cyber Security Enthusiast.

More from Medium

Vue & vue-router middlewares

Solana’s Savings Account Protocol

Account Takeover Via IDOR Reset password

Dump With FREB