Simon McCabe

OSCP · OSWP · PWPP · PWPA · PAPA · EnCE · Linux+ · LPIC-1 · Network+ · Security+ · Pentest+ · eJPT · eWPT · BSc · PGCert

All Writeups

Machine Platform Vulnerabilities Writeup
hooklink-webrangeWebVersebroken-auth, mass-assignment, Broken Access Control, api-abuse, bflaread
QueryWhoWebVerseIDORread
MooKooWebVerseXSS, SSTIread
ExpensielWebVerseNoSQL, mass-assignmentread
Tamper Temple (Official writeup) (hard)WebVerseBroken Access Control, JWT, Info Disclosureread
Ottergram (Priv-Esc)BugForgeBroken Access Controlread
Bill’s Steak House (RCE)WebVerseRCEread
Bomb Threat (Official Walkthrough)WebVerseBroken Access Controlread
Crate & Sleeve (SXSS)WebVerseXSSread
ReportVerse (Official Writeup)WebVerseSSRFread
Angry Teacher (Official Walkthrough)WebVerseBroken Access Controlread
CafeClub (Broken Business Logic)BugForgeBusiness Logicread
Disgruntled Employee (Official Writeup)WebVerseAuth Bypassread
Versed (SQLi)WebVerseSQLiread
Brackish Brewing Co. (with VerbTamper v1.8.1)WebVerseBroken Access Controlread
FurHire (Broken Auth) (Weekly)BugForgeAuth Bypass, JWTread
Vibed (SQLi)WebVerseSQLiread
MedNode (SQLi)BugForgeSQLiread
Snooker (Logic flaw)WebVerseBusiness Logicread
Lazy Human Resources (Official writeup) (BAC)WebVerseBroken Access Controlread
Loop & Roam (git exposure)WebVerseInfo Disclosureread
The Caretaker (Official Writeup)WebVerseSQLiread
Joystick (Websockets)WebVerseWebSocketread
Galaxy Dash (IDOR)BugForgeIDORread
Mapleton (LFI to RCE)WebVerseRCE, LFI, Path Traversalread
Phone Vault (Official writeup)WebVerseXSSread
Furhire (SSRF) (Weekly)BugForgeSSRFread
Ottergram (GraphQL)BugForgeGraphQLread
Sunnyside Daycare (SSTI)WebVerseSSTI, RCEread
NewsForge (BFLA)WebVerseRCE, Broken Access Controlread
DiceForge (Bypass Paywall)BugForgeBroken Access Controlread
Sprocket Line (RXSS)WebVerseXSSread
OutBox (SSTI)WebVerseSSTIread
CopyPasta (BAC)BugForgeBroken Access Controlread
Cheesy Does It (JWT)BugForgeJWTread
DiceForge (RCE)BugForgeXSS, RCEread
Insecure direct object references — Portswigger Academy LabgensecIDORread
Method-based access control can be circumvented - Portswigger AcademygensecBroken Access Controlread
Tanuki (BAC)BugForgeBroken Access Controlread
Quarter Shift (GraphQL + SSRF)WebVerseGraphQL, SSRFread
Breach (GraphQL)WebVerseGraphQLread
Ottergram (BAC) (VerbTamper)BugForgeBroken Access Controlread
Mirage (LFI)WebVerseLFIread
Parcel (SQLi) WriteupWebVerseSQLiread
Sokudo (GraphQL)BugForgeGraphQLread
Fixture (Medium)WebVerseSQLi, IDOR, SSRFread
DocketHiveWebVerseLFI, IDOR, Info Disclosureread
Tricky TunnelsWebVerseJWTread
Shady Oaks Financial (JWT)BugForgeJWTread
Gift Lab (BAC)BugForgeBroken Access Controlread
Tanuki (JWT)BugForgeJWTread
CafeClub (Business Logic)BugForgeBusiness Logicread
Necromancers Notebook (JWT)BugForgeJWTread
CafeClub writeup (IDOR)BugForgeIDORread
Ottergram (XSS) (Live Stream)BugForgeXSSread
Galaxy Dash (BAC) WalkthroughBugForgeBroken Access Controlread
Ottergram (websockets)BugForgeIDOR, WebSocketread
MesaNet (OTP Bypass) (Hard)BugForgeWeak Credsread
Gift Lab (BAC)BugForgeWeak Creds, Broken Access Control, JWTread
Cheesy Does It (Business Logic Vuln)BugForgeBusiness Logicread
Cheesy Does It writeup (BLF)BugForgeBusiness Logicread
ExpressWay writeup (HackTheBox)HackTheBoxWeak Credsread
Copypasta (SQLi)BugForgeSQLiread
Tanuki (SSRF)BugForgeSSRFread
CafeClub writeup (LFI)BugForgeLFIread
Galaxy Dash writeup (SQLi)BugForgeSQLiread
Ottergram writeup (BAC)BugForgeBroken Access Controlread
Shady Oaks Financial writeup (BFLA)BugForgeBroken Access Controlread
Copypasta writeup (BAC)BugForgeBroken Access Controlread
Sokudo writeup (API9:2023)BugForgeJWTread
Cheesy Does it writeup (Business Logic flaw)BugForgeBusiness Logicread
Furhire writeup (MFA Bypass) (Medium)BugForgeSQLi, Weak Credsread
How I Became a PAPA (Practical AI Pentest Associate) by TCMgensecPrompt Injectionread
Ottergram writeup (LFI)BugForgeLFI, Path Traversalread
Shady Oaks Financial writeup(Race Condition)BugForgeRace Conditionread
Gift List writeup (IDOR)BugForgeIDORread
CopyPasta writeup (BAC)BugForgeBroken Access Controlread
Galaxy Dash (XSS) (Medium)BugForgeXSSread
Cheesy Does It (SQLi) writeupBugForgeSQLiread
CupidBot writeup (TryHackMe)TryHackMePrompt Injectionread
Hidden Deep Into my Heart writeup (TryHackMe)TryHackMeWeak Credsread
CafeClub writeup (Business Logic)BugForgeBusiness Logicread
Ottergram writeup (Broken Auth)BugForgeAuth Bypassread
MesaNet writeup (hard) (SQLi)BugForgeSQLiread
Shady Oaks Financial writeup (Broken auth)BugForgeAuth Bypass, Broken Access Controlread
CopyPasta writeupBugForgeAuth Bypass, Weak Credsread
Tanuki writeupBugForgeBroken Access Controlread
mustacchio writeup (TryHackMe)TryHackMeXXE, Broken Access Controlread
Cheesy Does it walkthroughBugForgeBusiness Logicread
Cafeclub writeupBugForgeIDORread
Ottergram writeupBugForgeBroken Access Controlread
Sokudo writeupBugForgeBroken Access Controlread
CopyPasta writeupBugForgeIDORread
Tanuki writeupBugForgeSSRFread
Cheesy Does It writeupBugForgeBusiness Logicread
CafeClub writeupBugForgeWeak Creds, Business Logicread
Galaxy Dash (Medium difficulty) writeupBugForgeJWTread
Ottergram writeupBugForgeIDORread
Sokudo writeupBugForgeAuth Bypass, Weak Credsread
Copypasta writeupBugForgeSQLiread
Tanuki writeupBugForgeIDORread
Cheesy Does It writeupBugForgeBusiness Logicread
CafeClub WriteupBugForgeBusiness Logicread
Tanuki pt 2 WriteupBugForgeXXEread
Furhire WriteupBugForgeSQLi, Broken Access Control, JWTread
Ottergram WriteupBugForgeGraphQLread
Shady Oaks FinancialBugForgeJWTread
Sokudo writeupBugForgeAuth Bypass, Weak Credsread
Tanuki -WriteupBugForgeBroken Access Controlread
The Great Disappearing Act -TryHackMe WriteupTryHackMeBroken Access Controlread
Surfer - Writeup (TryHackMe)TryHackMeSSRFread
Evil-GPT - Writeup (TryHackMe)TryHackMeBroken Access Controlread
MD2PDF - Writeup (TryHackMe)TryHackMeSSRFread
LegacyHackTheBoxRCEread
ServmonHackTheBoxLFI, Path Traversal, Weak Credsread
BlunderHackTheBoxWeak Creds, File Upload, RCEread
TabbyHackTheBoxLFI, Weak Creds, Broken Access Controlread
AlfredTryHackMeWeak Credsread
GhostcatTryHackMeLFIread
JackTryHackMeWeak Creds, Broken Access Controlread
Lian-YuTryHackMeSteganography, Broken Access Controlread
Year of The RabbitTryHackMeWeak Creds, Auth Bypassread
Dave's BlogTryHackMeNoSQL, Auth Bypassread
Escalate my PrivilegesVulnhubRCE, Broken Access Controlread
GeishaVulnhubWeak Creds, Broken Access Controlread
SumoVulnhubRCEread
VegetaVulnhubSteganography, Broken Access Controlread
LinkedIn X YouTube GitHub