<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>Facts on Arbaaz breaks stuff | Incident Response, Threat Modeling, offensive security, CTF writeups, Security Projects, Certifications, Log analysis, SIEM</title>
    <link>https://arbaazjamadar.com/tags/facts/</link><description>Recent content in Facts  on Arbaaz breaks stuff | Incident Response, Threat Modeling, offensive security, CTF writeups, Security Projects, Certifications, Log analysis, SIEM</description>

    <generator>Hugo -- gohugo.io</generator>
    <language>en</language><managingEditor>reachout@arbaazjamadar.com (Arbaaz Jamadar)</managingEditor>
      <webMaster>reachout@arbaazjamadar.com (Arbaaz Jamadar)</webMaster><copyright>©2025 arbaazjamadar.com</copyright><lastBuildDate>Sun, 01 Feb 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://arbaazjamadar.com/tags/facts/rss.xml" rel="self" type="application/rss+xml" /><item>
        <title>HackTheBox: Facts</title>
        <link>https://arbaazjamadar.com/htb/hackthebox-facts/</link>
        <pubDate>Sun, 01 Feb 2026 00:00:00 +0000</pubDate>
        <author>reachout@arbaazjamadar.com (Arbaaz Jamadar)</author>
        <guid isPermaLink="true">https://arbaazjamadar.com/htb/hackthebox-facts/</guid>

        <description>Improperly Controlled Modification of Dynamically-Determined Object Attributes allows privilege escalation to admin user leading to exfiltrating SSH keys from S3 Bucket and getting become the Root user by privilege escalation via misconfigured SUID</description><category domain="tags">CTF</category><category domain="tags">CTF Writeup</category><category domain="tags">Cloud Security</category><category domain="tags">Misconfigurations</category><category domain="tags">security writeup</category><category domain="tags">HTB</category><category domain="tags">facts</category><category domain="tags">linux</category><category domain="tags">cameleon cms</category><category domain="tags">Mass Assignment</category><category domain="tags">S3 Data Leak</category><category domain="tags">Misconfigured SUID</category><category domain="tags">Command Injection</category><category domain="tags">Lateral Pivoting</category><category domain="tags">HTB</category><category domain="tags">HackTheBox</category><category domain="tags">HackTheBox: facts</category><category domain="tags">HTB: facts</category><category domain="tags">Information Gathering</category><category domain="tags">Initial Enumeration</category><category domain="tags">reversing</category><category domain="tags">Privilege Escalation</category><category domain="categories">CTF Writeups</category><category domain="categories">Cloud Security</category><category domain="categories">Network Security</category><category domain="categories">Web Security</category><category domain="categories">Browsed Security</category><category domain="categories">API Security</category></item>
  </channel>
</rss>
