Beylessen's Blog
Post Cover
Kobold Writeup (HackTheBox Easy Machine)
Overview :Kobold is an easy-rated HackTheBox machine with insight on modern vulnerabilities and especially the importance of group permission auditing.Had fun pwning this one. ReconnaissanceAs per ...
Post Cover
Detective 2089: Jailbreak as a Mobile Game
Overview :While being a software engineering student, I have taken the liberty to follow another interest that marks almost all of my projects, readings and work: Offensive Security. That also led ...
Post Cover
AI Security & Governance (Securiti)
Overview :The AI landscape broadens every single day, and as it does so, concerns arise.The security and safety issues that are being discussed may come to you as technical failures that should, we...
Post Cover
CCTV Writeup (HackTheBox Easy Machine)
Overview:CCTV is an easy-rated HackTheBox machine that simulates attacking a video surveillance server.It focuses on real vulnerabilities in CCTV management software, mainly ZoneMinder and motionEy...
Post Cover
AI Red Teamer Path Review (HTB Academy)
I started this path a little before it actually became a path. It has shaped a lot of my work (End of year projects 1 & 2), as well as my vision when it comes to AI.Here is my experience with t...
Post Cover
Variatype Writeup (HackTheBox Medium Machine)
Another Medium machine on HTB. But this one is a little special. OverviewVariaType is a medium-difficulty HackTheBox machine that chains a git-leaked credential and path traversal into a fonttools ...
Post Cover
Facts Writeup (HackTheBox Easy Machine)
Facts is an easy-rated machine on HackTheBox that exploits a privilege escalation through a mass assignment existing in Cameleon CMS, as well as a pretty basic user to root pivot. ReconnaissanceA q...
Post Cover
Interpreter Writeup (HackTheBox Medium Machine)
This is my first medium machine ever pwned. Overview :Interpreter is a medium-rated HackTheBox machine that exploits a CVE in Mirth Connect healthcare integration platform as well as a Python eval(...
Post Cover
From Adversarial Attacks to Defensive Design - A Red Teaming Approach to AI Security (PFA2 PROJECT)
Last year, I played a little with how AI has changed, revolutionized and empowered cybersecurity. From threat detection to incident response, AI has been a total game changer.But a tool, no matter ...
Post Cover
Author Experience in Moroccan CTF and Challenge Writeups
Over the weekend, I had the amazing opportunity of authoring a couple of AI/ML challenges for the first edition of CTF MUNDIAPOLIS held at Mundiapolis Casablanca University, Morocco.I was real...
12