An annual event organised by TryHackMe, Advent of Cyber is a holiday event that spans from 1 Dec to 25 Dec. A new task is unveiled daily for everyone to participate and follow
Scenario
Khalid has just logged onto a host that he and his team use as a testing host for many different purposes, it’s off their corporate network but has access to lots
Rated Easy by HackTheBox and created by m4lwhere, we discover vulnerabilities in exposing protected pages and sensitive data, unsanitised inputs and dangers in relative pathing.
Rated Medium by HackTheBox and created by TheCyberGeek. Through this machine, we learn about the importance of sanitising inputs, having proper password management and policies, proper privilege segmentation and proper directory permissions.
Rated Easy by HackTheBox and created by ejedev, we discover XML External Entity (XXE) and Python eval() function vulnerabilities.