xsspresso
xsspresso
Tags/ Swagger

Swagger

1 writeup tagged with Swagger

MiscMediumLinux

HTB — Instant

APK reverse engineering reveals hardcoded API key for Swagger endpoint. Arbitrary file read on API leaks SSH key. Solar-PuTTY encrypted session cracking for root.

#APK#API Key#Swagger
Jan 13, 2025HackTheBox