924 Followers
27 Following
396 Posts
Training Architect @ HackTheBox
CTF Addict
"Potentially a legit researcher"
he/him
Websitehttps://0xdf.gitlab.io/about
YouTubehttps://www.youtube.com/c/0xdf0xdf
Twitter0xdf_

Thank you so much HackTheBox for recognizing me as an MVP for 2025 with this sweet swag package.

I owe a lot to HTB. Without HTB, my life would be on a completely different track. Through the platform, I've built skills and made friends. Here's to many more years of hacking.

One of the challenges I wrote just went live on https://flagvent.org/
New out of cycle box alert! Unrested from TheCyberGeek going to free retired on Thursday on HackTheBox! Two new Zabbix CVEs to play with.

I wrote a blog post for the HackTheBox blog on how to exploit the Looney Tunables CVE on the TwoMillion machine. I'll give an overview of the exploit, show how to run it, and how to identify it in logs:

https://affiliate.hackthebox.com/blog?slug=exploiting-the-looney-tunables-vulnerability-cve-2023-4911

Exploiting the Looney Tunables vulnerability on HTB (CVE-2023-491)

A quick overview of the recently discovered vulnerability. Learn how you can practice exploiting (and defending against) the local privilege escalation attack on the HTB platform!

Hack The Box
I find myself in weird and unexpected places this morning...

I've been unhappy with how terminals look on my site for a while now. I've tried to change it before, but got overwhelmed in Jekyll / Rouge.

This weekend, I figured it out! New CSS terminal look! I checked a few hundred posts, but let me know if you find something broken.