Touch
Writeup dropping soon.
I'm a BCA student passionate about cybersecurity, Linux, and web application security.
This is where I document what I learn while solving Hack The Box and TryHackMe machines, competing in CTFs, experimenting with web technologies, and building practical projects — mostly on the backend side of things.
Well, everyone's a developer until a script kiddie gets a remote shell on their machine. So instead of chasing pixel-perfect UIs, I focus on secure development — rate limiting, manual auth systems, business logic, secure file upload systems — because design really isn't my thing.
Writeup dropping soon.
Hack The Box MonitorsFour writeup: a leaked .env file, PHP type juggling (CVE-2025-24367), CVE-2025-9074 RCE, and a Docker API escape onto a Windows host.
Hack The Box Expressway writeup: an IPsec VPN in IKE Aggressive Mode leaks crackable PSK hashes over weak 3DES and modp1024, then Linux privesc.