Pwned

Pwned

Here’s a list of all the VMs I have compromised so far! The difficulty is the one said by the owner of the machine and not me. There’s also a list of the PicoCTF and OverTheWire challenges I’ve solved and the walkthroughs of other vulnerable web applications like DVWA, bWAPP and others…

VMs

 WalkthroughOSDifficultyReportDownload
1.Kioptrix #1LinuxEasy Vulnhub
2.Kioptrix #2LinuxEasy Vulnhub
3.Kioptrix #3LinuxEasy Vulnhub
4.Kioptrix #4LinuxEasy Vulnhub
5.Tr0ll: 1LinuxEasy Vulnhub
6.Lord Of The RootLinuxEasy Vulnhub
7.Stapler: 1LinuxEasy-Medium Vulnhub
8.FristileaksLinuxEasy Vulnhub
9.NullByteLinuxEasy Vulnhub
10.Android4AndroidVery easy Vulnhub
11.Raven: 1WordPress & MySQLMedium Vulnhub

Web Apps

DVWA

VulnerabilityToolsSecurity Up ToWalkthrough
Brute ForceBurp SuiteImpossibleDVWA Brute Force
DOM XSSJavaScriptHighDVWA DOM XSS
Reflected XSSJavaScriptHighDVWA Reflected XSS
Stored XSSJavaScriptHighDVWA Stored XSS

bWAPP

VulnerabilitySecurity Up ToWalkthrough
OS Command InjectionMediumbWAPP OS Command Injection
Directory TraversalHighbWAPP Directory Traversal
Local File InclusionLowbWAPP LFI
Remote File InclusionLowbWAPP RFI
File UploadHighbWAPP File Upload

Challenges

PicoCTF