UNAUTHORIZED ACCESS DETECTED — 192.168.1.0/24

[crypt0xDev]_

SECURITY RESEARCHER  ·  ETHICAL HACKER  ·  CTF PLAYER

crypt0xdev@kali — bash — 120×36
root@kali:~# uname -a
Linux kali 6.11.2-amd64 #1 SMP PREEMPT x86_64 GNU/Linux
root@kali:~# ifconfig eth0 | grep inet
inet 192.168.1.42 netmask 255.255.255.0 broadcast 192.168.1.255
root@kali:~# arp-scan --localnet 2>/dev/null | grep -v DUP
192.168.1.1 00:1a:2b:3c:4d:5e Cisco Systems
192.168.1.105 de:ad:be:ef:00:01 Dell Inc.
192.168.1.200 ca:fe:ba:be:00:ff Unknown
3 hosts found in 2.431s
root@kali:~#
CONNECTED — 192.168.1.42KALI LINUX 2024.3
NETWORK SCAN — 192.168.1.0/24
LIVE
HOSTPORTSOSSTATE
192.168.1.122,80,443Linuxup
192.168.1.423306,8080Ubuntuup
192.168.1.10521,22,80Debianup
192.168.1.200445,3389Windowsup
192.168.1.8823,8443Ciscoup
192.168.1.1253,161FreeBSDup
scanning...
ATTACK LOGUNAUTH ACCESS
03:21:44INFOSQLi detected — param: id
03:21:45WARNWAF bypass — chunked encoding
03:21:47CRITRoot shell obtained
03:21:48INFOPivoting 10.0.0.1 → 10.0.0.5
BRUTEFORCE — SSH:22
target: 192.168.1.105mode: dictionary
trying: root:toor
progress12%
1,200 / 10,000 attemptsrunning
MEMORY DUMP — PID 1337
00000000:4D 5A 90 00 03 00 00 00 04 00 00 00 FF FF 00 00 MZ..............
00000010:B8 00 00 00 00 00 00 00 40 00 00 00 00 00 00 00 ........@.......
00000020:00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00000030:E8 00 00 00 0E 1F BA 0E 00 B4 09 CD 21 B8 01 4C ............!..L
00000040:54 68 69 73 20 70 72 6F 67 72 61 6D 20 63 61 6E This program can
00000050:6E 6F 74 20 62 65 20 72 75 6E 20 69 6E 20 44 4F not be run in DO
0+
CTF Solved
0+
Projects
0+
Yrs Exp.
featured projects

$ ls -la projects/ | head -3

Latest Work

view all →
[01]Tool

WebVuln Scanner

active

Automated web vulnerability scanner that detects SQLi, XSS, CSRF, open redirects and misconfigured headers. Built with Python and async requests.

#Python#SQLi#XSS#CSRF#Async
[02]CTF

CTF Writeups Collection

active

Writeups from HackTheBox, TryHackMe and CTFtime competitions. Covers web, binary exploitation, reverse engineering and cryptography challenges.

#CTF#HackTheBox#TryHackMe#Rev Eng#Crypto
[03]Pentesting

Recon Toolkit

completed

Passive and active reconnaissance automation. DNS enumeration, subdomain discovery, port scanning orchestration and report generation.

#Bash#OSINT#DNS#Nmap#Python

$ cat skills.txt

Skill Set

Penetration Testing

  • Burp Suite
  • Metasploit
  • Nmap
  • SQLmap
  • Nikto
🌐

Web Security

  • OWASP Top 10
  • XSS
  • SQLi
  • SSRF
  • IDOR

Reverse Engineering

  • Ghidra
  • IDA Pro
  • x64dbg
  • pwndbg
  • GDB
🏴

CTF & Forensics

  • HackTheBox
  • TryHackMe
  • Volatility
  • Wireshark
  • Steganography
</>

Development

  • Python
  • TypeScript
  • Next.js
  • React
  • Node.js
🔧

Infrastructure

  • Docker
  • Linux
  • Bash
  • Git
  • VPN / Tunneling