HackTheBox - Pilgrimage @ippsec
HackTheBox - Pilgrimage  @ippsec
Uploaded November 2023 | Updated September 2026, 2 weeks ago
00:00 - Introduction
00:55 - Start of nmap
03:00 - Uploading an image file and trying to identify how the upload works
06:20 - Running Git-Dumper to download the exposed .git directory, taking a look at the source code
09:45 - Looking at the ImageMagick version (7.1.0-49) and seeing it is vulnerable to CVE-2022-44268
13:30 - Generating a malicious image and downloading the sqlite database
19:30 - Doing a PS and seeing inotifywait is being used to run a bash script when files created in web directory
21:35 - Showing why the bash script is not vulnerable
28:00 - Finding a binwalk exploit for version 2.3.2, which takes advantage of path traversal in PFS files
32:50 - Taking a look into the exploit to see how it works
35:30 - Showing the PFS File Format
HackTheBox - PilgrimageHackTheBox - OutboundAnalyzing auth.log and Playing with Grok Filters - HTB Sherlocks - BrutusHackTheBox - AxlleHackTheBox - UsageHackTheBox - SignedHackTheBox - MonitorsTwoHackTheBox - PollutionHackTheBox - BackfireHackTheBox - BrowsedHackTheBox - TricksterBuilding Ippsecs Parrot VM - How to Run the Playbook.
IppSec |

HackTheBox - Pilgrimage

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER