https://www.hackplayers.com/2026/04/boxpwnr-resuelve-maquinas-de-hackthebox-con-IA.html
https://danthesalmon.com/posts/til-about-redirection-in-bash/
Did some learning this week.
HTB Season 10 | Kobold WriteUp— MCP-инструменты как новый attack surface
Разбор Easy-машины из HTB Season 10. Точка входа - RCE через MCP Inspector (dev-тулза для AI-серверов), дальше LFI в контейнере, credential reuse и Docker privesc. Два пути до root, MITRE маппинг, и разбор почему MCP-экосистема - это новый attack surface.
https://habr.com/ru/articles/1018656/
#информационная_безопасность #ctf #hackthebox #пентест #docker #MCP #AI_security #writeup
TryHackMe took my work. Work I paid a subscription to do, and fed it to NoScope, an AI they're going to profit off of. Don't teach people about security if you can't respect theirs.
#TryHackMe #NoScope #InfoSec #CyberSecurity #DataPrivacy #AIethics #EthicalHacking #HackTheBox #Privacy #ConsentMatters #DeleteYourData
Finally found the time to participate again in Season 10 at HackTheBox.
Finished the Kobold linux box. Had to remind myself it was an easy box and after a good night sleep privilege escalation was exactly that ;)