Writing // Field notes

Blog

Thoughts on security, development, and technology.

3 min

Management Wants a Word | TryHackMe Room Writeup

A walkthrough of Management Wants a Word, a TryHackMe Windows forensics room involving a KAPE dump, cracked local credentials, DPAPI master keys, Chrome secrets, and a VeraCrypt container hiding the flag.

  • TryHackMe
  • Windows Forensics
  • DPAPI
  • Chrome
9 min

The Guestbook | TryHackMe Room Writeup

A walkthrough of The Guestbook, a TryHackMe AI security challenge where VERA turns guestbook entries into manager-authorized shell commands.

  • TryHackMe
  • AI Security
  • Prompt Injection
  • Command Injection
5 min

After Hours | TryHackMe Room Writeup

A walkthrough of After Hours, a TryHackMe forensics challenge involving a Windows WMI repository, a custom class, raw DEFLATE, and a .NET payload.

  • TryHackMe
  • Digital Forensics
  • Windows
  • WMI
6 min

Infinity Pool | TryHackMe Room Writeup

A walkthrough of Infinity Pool, a TryHackMe Boot2Root room involving command injection, exposed internal configuration, FreePBX, and a root-owned automation API.

  • TryHackMe
  • Web Security
  • Command Injection
  • FreePBX
7 min

The Hollow Shell | TryHackMe Room Writeup

A beginner-friendly walkthrough of The Hollow Shell, a TryHackMe web challenge that combines a login leak, archive upload abuse, LFI, and server-side hook execution.

  • TryHackMe
  • Web Security
  • LFI
  • File Upload
8 min

CryptoCabana | TryHackMe Room Writeup

A beginner-friendly walkthrough of CryptoCabana, a TryHackMe Azure challenge involving a leaked SAS token, exposed service-principal credentials, and Key Vault secret versions.

  • TryHackMe
  • Azure
  • Cloud Security
  • Azure Storage
7 min

Towel on the Sunbed | TryHackMe Room Writeup

A beginner-friendly walkthrough of Towel on the Sunbed, a TryHackMe web challenge involving a race condition in a daily reward mechanism.

  • TryHackMe
  • Web Security
  • Race Condition
  • JavaScript
7 min

Do Not Disturb | TryHackMe Room Writeup

A walkthrough of Do Not Disturb, a TryHackMe Boot2Root room involving NoSQL injection, EJS template injection, an exposed Node.js inspector, and disk-group privilege escalation.

  • TryHackMe
  • NoSQL Injection
  • EJS
  • Node.js
4 min

Beach Bar | TryHackMe Room Writeup

A beginner-friendly walkthrough of Beach Bar, a TryHackMe Linux challenge involving exposed credentials, unsafe YAML deserialization, and a password leaked through a root process.

  • TryHackMe
  • Web Security
  • YAML
  • Python