Windy's little blog

一切生活中的杂七杂八, and I like CTF.

Vulnhub hacksudo:3 Walkthrough,671/Scan port 80, find a lot php files. Most of them are rabbit holes.Get code injecting through fuzzing generator.php.Then we can upload a php shell, and  get reverse shell. In /var/www, find a file name

Vulnhub hacksudo:2 Walkthrough,667/Scan ports.Scan port 80.Info.php is phpinfo, file.php has LFI vunerability.Use pwn code to get a cmd shell. if the s

HackMyVm Superhuman Walkthrough port 80 with big dic.┌──(kali㉿mykali)-[~/Documents/superhuman] └─$ gobuster dir -u  -t 50  -w /usr/share/dirbuster/word
