Peter's Hacking Blog

Techobabble for enthusiasts

Analyzing an obfuscated C2 payload

- Posted in Analysis by

I recently participated in a CTF hosted at BSides 2021 and completed a challenge I that I found pretty interesting, so I'm going to share it here. It's topic is malware reverse engineering. In this

HTB Writeup: Bounty Hunter

- Posted in HTB Writeup by

This box was pretty cool. I learned about XXE, XML parsing, and HTML injection during the test.   Starting off I scanned the box   We see port 80 is open, so we navigate to the page to see this:  

HTB Writeup: Previse

- Posted in HTB Writeup by

The first thing I do when starting a new machine is to scan it. My preferred scan is using -sV and -A.   From the scan we see that it's running an apache server on port 80 and it also has an ssh