xsspresso
xsspresso
Tags/ Webshell

Webshell

2 writeups tagged with Webshell

WebMediumLinux

HTB — Jarvis

SQL injection in hotel booking app. Sqlmap writes a PHP webshell. Sudo script with command injection, SUID systemctl for root.

#SQLi#Webshell#Sudo
Apr 30, 2022HackTheBox
WebEasyLinux

HTB — Bashed

phpbash webshell discovered via directory fuzzing. Lateral movement through sudo scriptmanager, cron-based root.

#Webshell#Fuzzing#Cron
Mar 24, 2022HackTheBox