Command Injection Analysis
A hands-on way to trace user-controlled input into operating-system commands, prove whether it is really exploitable, and capture the conditions that matter.
Reusable technical notes, methodology and reference material extracted from practical vulnerability research and exploit development.
A hands-on way to trace user-controlled input into operating-system commands, prove whether it is really exploitable, and capture the conditions that matter.
A practical guide to working out what attacker-controlled PHP deserialization actually gives you, which classes are reachable, and how that can grow into real impact.
Hands-on notes for turning a working proof of concept into a Metasploit module that checks the target, handles failure properly and cleans up after itself.
Practical Metasploit notes for reverse listeners and local services when the target reaches you through NAT or a controlled TCP/HTTP tunnel.
A hands-on Active Directory lab covering PetitPotam-assisted NTLM relay to AD CS and Zerologon, with the commands, outputs, gotchas and recovery steps I used.
My practical workflow for moving from a firmware image to the web interface, native helpers, emulation and targeted validation on embedded Linux routers.
A hands-on UART walkthrough: find the pins, wire a serial bridge, configure the terminal and get a console on a Transpeed 6K TV box.