Netexec has some awesome NFS capabilities. While playing Slonik from VulnLab / HackTheBox, I found an issue I couldn't understand. I'll walk through how Nete...
Finding and Fixing a Bug in Netexec NFS
Netexec has some really nice NFS capabilities. I found a some weird behavior in one of them, which turned out to be a bug that just got patched. Let's walk through it.
11.02.2026 13:47 — 👍 0 🔁 0 💬 0 📌 0
I legit still don't understand why this worked. It only gets the groups if you specifically specify the user id in the ticket, and it can only be that account.
I would think if it were doing delegation I would think it could impersonate more.
08.02.2026 09:12 — 👍 0 🔁 0 💬 1 📌 0
YouTube video by 0xdf
State of 0xdf (2026)
Released a bit of a different video today. The State of 0xdf (2026). We'll look at the last year for my website and YT channel, go over some numbers. Definitely looking for feedback on if people like this kind of insight.
www.youtube.com/watch?v=KCo6...
28.01.2026 14:04 — 👍 0 🔁 0 💬 0 📌 0
Thank you so much @hackthebox.bsky.social
for recognizing me as an MVP for 2025 with this sweet swag package.
I owe a lot to HTB. Without HTB, my life would be on a completely different track. Through the platform, I've built skills and made friends. Here's to many more years of hacking.
28.01.2026 02:28 — 👍 7 🔁 0 💬 0 📌 0
Check it out now:
25.01.2026 02:00 — 👍 1 🔁 0 💬 1 📌 0
Spent an hour in Claude Code last night and made the tables at the top of my @hackthebox.bsky.social blog posts on 0xdf.gitlab.io a bit nicer :) Feedback welcome.
21.01.2026 17:44 — 👍 6 🔁 0 💬 1 📌 0
HTB: HackNet
HackNet hosts a social media site for hackers built with Django. I’ll find an HTML injection in the username field that, combined with how the likes page renders usernames, leads to server-side template injection. While Django templates are restrictive, I’ll use the SSTI to dump user data including plaintext passwords, finding one user whose email reveals their Linux username. After SSHing in, I’ll discover Django’s FileBasedCache uses pickle serialization with a world-writable cache directory. By replacing cache files with a malicious pickle payload, I’ll get a shell as the web user. From there, I’ll crack a GPG key password to decrypt database backups, finding a password shared in messages that works for root.
HackNet from HackTheBox features SSTI in Django templates to leak user credentials, pickle deserialization via FileBasedCache with world-writable directory, and GPG key cracking to recover database backups containing the root password.
17.01.2026 15:06 — 👍 3 🔁 2 💬 0 📌 0
SANS Holiday Hack Challenge 2025: Revenge of the Gnome(s)
The 2025 SANS Holiday Hack Challenge: Revenge of the Gnome(s) takes place over three acts in the Dosis neighborhood, where gnome dolls have come to life and are scurrying around furthering a plot by Frosty the Snowman to freeze the world so that it’s always winter and he never melts. I’ll work through 27 challenges ranging from beginner-friendly to expert-level, covering web exploitation, reverse engineering, cloud security, AI prompt injection, cryptography, and signal analysis to help stop Frosty and save the neighborhood. I’ll also write a hack the game itself, writing a TamperMonkey plugin to do NPC / terminal / door / item locations, teleportation, and allow walking through walls. I’ll find a bunch of hidden gnomes hanging out in a patch of snow and uncover how the game developers made the running gnomes, and a bunch of Easter Eggs as well.
In the 2025 Holiday Hack Frosty tries to freeze the neighborhood. I exploited SSTI, IDOR, prompt injection, cloud misconfigs, and reversed a SkiFree clone. Wrote a TamperMonkey plugin to teleport, walk through walls, and find hidden gnomes. KringleCon
06.01.2026 11:49 — 👍 1 🔁 1 💬 0 📌 0
Flagvent 2025 - Easy
FV25.01
Had a ton of fun with Flagvent this year, and finished all 25 challenges! So many quirky interesting things. My favorite challenge was the hardware leet challenge. And I got to author two easy challenges as well.
0xdf.gitlab.io/flagvent2025...
Happy New Year!
01.01.2026 01:04 — 👍 0 🔁 1 💬 0 📌 0
Advent of Code 2025 Day 12 provides a challenge that on it's face I think is nearly impossibe, figuring out if I can place a lot of specific shapes into a sp...
Christmas Tree Farm [AOC2025 Day 12]
#AdventOfCode Day 12 involves fitting presents in space under a tree. The problem for all solutions is either hard or impossible. I'll find a shortcut looking at the data and the space required for each tree. Claude gets the answer without recognizing it.
12.12.2025 14:39 — 👍 0 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 11 provides a list of nodes and the nodes that come after each one. I'll use recusrion to build a function that can count the number ...
Reactor [AOC2025 Day 11]
#AdventOfCode Day 11 involves nodes that connect to others. I'll use recursion to count paths through the nodes. functools cache is critical here.
11.12.2025 23:23 — 👍 2 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 10 has some buttons that each control one or more outputs. In part 1, they toggle on and off a light, and I'll have to find the minim...
Factory [AOC2025 Day 10]
#AdventOfCode Day 10 involves binary xor and linear equations. Claude tries an unfiesable long solution first when he thinks he can't use packages. When I tell him how to use packages, he uses scipy to solve quickly.
11.12.2025 21:50 — 👍 1 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 9 processing the verticies of a polygon. First I'll loop over each pair of corners and find the largest possible square that can be m...
Movie Theater [AOC2025 Day 9]
#AdventOfCode Day9 is a beast. I'll have to find squares inside a large polygon defined by almost 500 points. I'll use ray finding and edge crossing to solve it. Claude tries an unfiesable long solution first, then gets it.
09.12.2025 12:54 — 👍 1 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 8 involves connecting points in order of their distances apart. In part 1, I'll connect the closest 1000 points, and find the size of...
Playground [AOC2025 Day 8]
#AdventOfCode Day8 showcases a union find technique to track and merge sets of points in 3D space. Claude does basically the exactly same thing I did :)
08.12.2025 12:40 — 👍 0 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 7 visualizes a bean as it moves down the space hitting splitters. In part 1, I need to count the number of splits that happen. In par...
Laboratories [AOC2025 Day 7]
#AdventOfCode Day7 is about tracking a beam down a space as it hits things that split it into two. In part 1 I'll count the number of splits for a beam, and in part two the number of paths a particle could take choosing left or right at each split.
07.12.2025 12:40 — 👍 0 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 6 is all about parsing columns of text. In part 1, I'll parse lines of integers and operators as columns, calculating their products ...
Trash Compactor [AOC2025 Day 6]
#AdventOfCode Day6 is all about handling columns of data. In part 1, I'll combine columns of ints. In part 2, I'll build the ints from columns of characters. Claude nails it quickly, but with some verbose ugly code.
06.12.2025 12:42 — 👍 1 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 5 plays with overlapping ranges. I get a long list of ranges for ids of fresh ingredients. In part 1, I work through another list of ...
Cafeteria [AOC2025 Day 5]
#AdventOfCode Day5 is all about handling overlapping ranges. First I'll count from a list, then find the size of all the overlapping ranges.
05.12.2025 12:04 — 👍 0 🔁 0 💬 0 📌 0
Advent of Code 2025 Day 4 is the first grid challenge of the year. I'm given spaces in a warehouse that have pallets of paper on them. A forklift can only ac...
Printing Department [AOC2025 Day 4]
#AdventOfCode Day4 is the first grid challenge of the year. I'll count spaces with no more than 3 filled neighbors. In part 2, I'll iterate to remove those spaces and check again until I've removed all that can be removed.
04.12.2025 11:24 — 👍 0 🔁 0 💬 0 📌 0
Created http://adventofcode.com, http://compute-cost.com, http://anoik.is, http://was.tl/projects/; Principal Architect at https://acvauctions.com
⚠️ AI Security Engineer
M.S. Cybersecurity, CISSP.
Amazon, NSA, Defense Contractor, USMC.
www.toxsec.com
👩💻 Software eng
🤪 Creator of cringe tech videos
🥺 The funniest girl in us-east-1
beacons.ai/albertatech
BrakeSecEd Twitch streamer, I'm also the "Peerless Gamer", living in the 619, infosec pragmatist, learning Rust programming and to be the best manager I can be.
youtube.com/@brakeseced
youtube.com/@peerlessgamer
Freelance Artist, currently working in comics and Illustration.
Located in Central Indiana. Obsessed with the weather. Know a lot about 70s and 80s music and TV. Democrat voter. Trump ruined yet another account of mine by causing me to shitpost a lot.
Professional hacker, accidental educator. Rhode Island is not an island.
Kali Linux, The Most Advanced Penetration Testing Distribution. Ever.
The Only official HackerOne bsky account.
Peace of mind from security's greatest minds.
#HackForGood
The Exploit Database - ultimate archive of #Exploits, #Shellcodes and Security #Papers / #eZines
https://exploit-db.com/
Romanian antihacker from another planet. #threatintel #yara #chess #taekwondo black belt
Motto: "One reboot a day keeps the implant away"
Cool Unix/Linux Command Line tricks you can use in $CHAR_LIMIT characters or less. Here mostly to inspire. https://www.climagic.org/
fka gigs_security on tweeter | #advancedpractices @ mandoogle | Nox’s mom | boppin around tracking your least favorite TA.
CISO
þetta reddast.
On ne peut pas résoudre un problème avec le même type de pensée que celle qui créé.
thedarktangent@defcon.social
computer security person. former helpdesk
@Straiker. Ex-Microsoft. Ex-Meta RedTeam, Ex-Endgame, Ex Fireeye. malwareunicorn.org