bi0s
  •  Home
  •  Categories
  •  Archives
  •  Tags
  •  Home
  •  Categories
  •  Archives
  •  Tags

Nexus Void - HTB University CTF 2023

Luc1f3r
2023-12-15
Web

tl;dr

  • Misconfiguration in JWT token validation
  • SQL Injection through JWT token
  • Insecure Deserialization in .NET leading to RCE using custom class StatusCheckHelper
Read More
Writeup HTBUniversityCTF2023 .NET Deserialization SQL Injection JWT

Official blog of team bi0s

  Projects
  •   bi0s-wargame
    (Unraveling)
  •   bi0s-wiki
    (Free Encyclopedia)
  •   InCTF
    (Nationals CTF)
  •   InCTFj
    (Juniors CTF)

Made With Love and Coffee



Blog content follows the Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0) License

Use Material X as theme, total visits times.