Open in app

Sign in

Write

Sign in

Aydin Naserifard
Aydin Naserifard

256 Followers

Home

About

Published in

InfoSec Write-ups

·Nov 4

$1800 Bounty: Exploiting Unpredictable Data that Leads to All Users PII Exposure in an IDOR Vulnerability (Real-World)

Introduction The security of user data is paramount in web applications. However, vulnerabilities like Insecure Direct Object Reference (IDOR) can compromise data integrity. In this write-up, we delve into an IDOR vulnerability within the ‘v’ parameter of a real-world web application. I illustrate how I could exploit this vulnerability, leading…

Idor

4 min read

$1800 Bounty: Exploiting Unpredictable Data that Leads to All Users PII Exposure in an IDOR…
$1800 Bounty: Exploiting Unpredictable Data that Leads to All Users PII Exposure in an IDOR…
Idor

4 min read


Published in

InfoSec Write-ups

·Oct 29

Jupiter | HTB | Grafana | raw SQL Query | Shadow Simulator RCE | Sattrack

Jupiter is a medium-level challenge that kicks off with a Grafana dashboard. The journey begins with the quest to pinpoint a potential entry point within Grafana, allowing for the execution of raw SQL queries by the PostgreSQL database, ultimately leading to code execution on the host. Further exploration involves the…

Jupiter

8 min read

Jupiter | HTB | Grafana | raw SQL Query | Shadow Simulator RCE | Sattrack
Jupiter | HTB | Grafana | raw SQL Query | Shadow Simulator RCE | Sattrack
Jupiter

8 min read


Published in

InfoSec Write-ups

·Oct 8

Aero HTB | Windows 11 RCE & PrivESC | Themebleed | CLFS

Aero is a Windows machine of moderate difficulty, featuring two recently discovered vulnerabilities: CVE-2023–38146, a Windows 11 Themes Remote Code Execution Vulnerability discovered on September 12, 2023, and CVE-2023–28252, a Windows Common Log File System Driver Elevation of Privilege Vulnerability discovered on April 11, 2023. …

Themebleed

10 min read

Aero HTB | Windows 11 RCE & PrivESC | Themebleed | CLFS
Aero HTB | Windows 11 RCE & PrivESC | Themebleed | CLFS
Themebleed

10 min read


Published in

InfoSec Write-ups

·Sep 5

OnlyForYou HTB | LFR | RCE | Cypher Injection (Neo4j) graph database | pip3 download code execution

Here’s a summary of the key points of Only4you HTB machine: Difficulty Level: Medium!!!!!!!! Vulnerabilities: LFR (Local File Read): The presence of a Local File Read vulnerability suggests that an attacker can read files on the system, potentially accessing sensitive information. RCE (Remote Code Execution): RCE vulnerability implies that an…

Hackthebox

8 min read

OnlyForYou HTB | LFR | RCE | Cypher Injection (Neo4j) graph database | pip3 download code execution
OnlyForYou HTB | LFR | RCE | Cypher Injection (Neo4j) graph database | pip3 download code execution
Hackthebox

8 min read


Published in

InfoSec Write-ups

·Aug 20

Mailroom HTB | Gitea | XSS | NoSqli | RCE | Exploit Development | Strace

Mailroom is a challenging Linux machine that hosts a custom web app and a Gitea code repository. The web app has vulnerabilities to Cross-Site Scripting (XSS), which, when combined with Server-Side Request Forgery (SSRF) and NoSQL injection, allows credential extraction. An initial shell leads to a user’s mailbox containing a…

Hackthebox

10 min read

Mailroom HTB | Gitea | XSS | NoSqli | RCE | Exploit Development | Strace
Mailroom HTB | Gitea | XSS | NoSqli | RCE | Exploit Development | Strace
Hackthebox

10 min read


Published in

InfoSec Write-ups

·Jul 21

WormGPT: Is it Vulnerable?

A few days ago, news was published about a new tool called WormGPT which doesn’t have the limitations of the ChatGPT tool. thats weird! What is WormGPT? On July 13 2023, researchers from cybersecurity firm SlashNext published a blog post revealing the discovery of WormGPT, a tool being promoted for…

Wormgpt

4 min read

WormGPT: Is it Vulnerable?
WormGPT: Is it Vulnerable?
Wormgpt

4 min read


Published in

InfoSec Write-ups

·Dec 8, 2021

Hack The Box Cyber Santa CTF 2021 — Common Mistake

From the Crypto Category of Cyber Santa Is Coming To Town CTF which was going on from December 1st to December 5th 2021, there was a challenge called “Common Mistake”. let’s solve this challenge Take a look at the challenge description:

Hackthebox

2 min read

Hack The Box Cyber Santa CTF 2021 — Common Mistake
Hack The Box Cyber Santa CTF 2021 — Common Mistake
Hackthebox

2 min read


Published in

InfoSec Write-ups

·Nov 9, 2021

Guide Point Security CTF — Get Hexy (OCT 2021)

In the Misc Category of Guide Point CTF which was going on from October 12th to October 18th 2021, there was a challenge called “Get Hexy”. let’s solve this challenge. First, try to run file command on this

Guidepoint

3 min read

Guide Point Security CTF — Get Hexy (OCT 2021)
Guide Point Security CTF — Get Hexy (OCT 2021)
Guidepoint

3 min read


Published in

InfoSec Write-ups

·Jul 24, 2021

Year Of The Jellyfish TryHackMe! Walk Through

I’m going to solve another room called “Yearofthejellyfish“. It’s available at TryHackMe with Hard difficulty level. #The first thing we want to do is add the deployed machine’s IP and host name to /etc/hosts:

Tryhackme

5 min read

Year Of The Jellyfish TryHackMe! Walk Through
Year Of The Jellyfish TryHackMe! Walk Through
Tryhackme

5 min read


Published in

InfoSec Write-ups

·Jan 28, 2021

Ghizer TryHackMe WalkThrough

lucrecia has installed multiple web applications on the server. I’m gonna solve another room called “Ghizer“. It’s available at TryHackMe with medium difficulty level. Let’s do a port scan:

Tryhackme

5 min read

Ghizer TryHackMe WalkThrough
Ghizer TryHackMe WalkThrough
Tryhackme

5 min read

Aydin Naserifard

Aydin Naserifard

256 Followers

Bug Hunter, Penetration Tester, Red Teamer

Following
  • Anangsha Alammyan

    Anangsha Alammyan

  • InfoSec Write-ups

    InfoSec Write-ups

  • Pratik Dabhi

    Pratik Dabhi

  • HotPlugin

    HotPlugin

  • Abdelrhman Allam (sl4x0)

    Abdelrhman Allam (sl4x0)

See all (65)

Help

Status

About

Careers

Blog

Privacy

Terms

Text to speech

Teams