<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>CVE-2025-58434 on Arbaaz breaks stuff | Incident Response, Threat Modeling, offensive security, CTF writeups, Security Projects, Certifications, Log analysis, SIEM</title>
    <link>https://arbaazjamadar.com/tags/cve-2025-58434/</link><description>Recent content in CVE-2025-58434  on Arbaaz breaks stuff | Incident Response, Threat Modeling, offensive security, CTF writeups, Security Projects, Certifications, Log analysis, SIEM</description>

    <generator>Hugo -- gohugo.io</generator>
    <language>en</language><managingEditor>reachout@arbaazjamadar.com (Arbaaz Jamadar)</managingEditor>
      <webMaster>reachout@arbaazjamadar.com (Arbaaz Jamadar)</webMaster><copyright>©2025 arbaazjamadar.com</copyright><lastBuildDate>Sat, 11 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://arbaazjamadar.com/tags/cve-2025-58434/rss.xml" rel="self" type="application/rss+xml" /><item>
        <title>HackTheBox: Silentium</title>
        <link>https://arbaazjamadar.com/htb/hackthebox-silentium/</link>
        <pubDate>Sat, 11 Apr 2026 00:00:00 +0000</pubDate>
        <author>reachout@arbaazjamadar.com (Arbaaz Jamadar)</author>
        <guid isPermaLink="true">https://arbaazjamadar.com/htb/hackthebox-silentium/</guid>

        <description>Unauathorized account takeover, leading to RCE in FLOWISEAI, reused passwords, insecure password storage. Arbitrary write using symlinks and PUT operation.</description><category domain="tags">Security</category><category domain="tags">Security Writeup</category><category domain="tags">Cloud Security</category><category domain="tags">HTB writeup</category><category domain="tags">HTB silentium writeup</category><category domain="tags">silentium Writeup</category><category domain="tags">Misconfigurations</category><category domain="tags">security writeup</category><category domain="tags">HTB</category><category domain="tags">silentium</category><category domain="tags">linux</category><category domain="tags">docker</category><category domain="tags">git</category><category domain="tags">symlinks</category><category domain="tags">service abuse</category><category domain="tags">privilege escalation</category><category domain="tags">gogs</category><category domain="tags">flowai</category><category domain="tags">password reset</category><category domain="tags">Lateral Pivoting</category><category domain="tags">HTB</category><category domain="tags">HackTheBox</category><category domain="tags">HackTheBox: silentium</category><category domain="tags">HTB: silentium</category><category domain="tags">Information Gathering</category><category domain="tags">Initial Enumeration</category><category domain="tags">subdomain</category><category domain="tags">Privilege Escalation</category><category domain="tags">nginx</category><category domain="tags">Privilege Abuse</category><category domain="tags">CVE-2025-59528</category><category domain="tags">CVE-2025-58434</category><category domain="tags">CVE-2025-64111</category><category domain="categories">Box Writeups</category><category domain="categories">Cloud Security</category><category domain="categories">Network Security</category><category domain="categories">Web Security</category><category domain="categories">Browsed Security</category><category domain="categories">API Security</category></item>
  </channel>
</rss>
