Skip to content
SecBytes
Menu
  • Home
  • Sumit Shrivastava (@invad3rsam)
  • Contact Me
Menu

Category: Application Security Assessment

All blog items in this category are related to Application Security Assessment, including webapps, thick client and mobile apps.

Lab Solution: Me and My Girlfriend 1

Posted on January 5, 2020January 25, 2020 by Sumit

Machine Link: https://www.vulnhub.com/entry/me-and-my-girlfriend-1,409/# Machine Author: TW1C3 (@makegreatagain_) Description (as given by the machine author): This VM tells us that there are a couple of lovers namely Alice and Bob, where the couple was originally very romantic, but since Alice worked at a private company, “Ceban Corp”, something has changed from Alice’s attitude towards Bob like…

Continue reading

Capturing NTLM Hashes using Bettercap

Posted on December 12, 2018December 12, 2018 by Sumit

Recently during an engagement, while I was performing an internal network assessment, I figured out that responder was not able to capture the hashes. Initially I thought that this might be due to some issue with the responder configuration or the options that I am using. After fiddling with it for a while, I started…

Continue reading

Recent Posts

  • Setting Up Wazuh Server – Part 3 (Wazuh Dashboard)
  • Setting Up Wazuh Server – Part 2 (Wazuh Manager)
  • Setting Up Wazuh Server – Part 1 (Wazuh Indexer)
  • Guide to Creating Virtual Machines from Proxmox Templates
  • Self-Hosted Kubernetes Cluster in your Home Lab

Categories

  • Application Security Assessment (2)
  • Capture The Flag (1)
  • CVE (1)
  • DevSecOps (4)
  • Lab Solution (1)
  • Metasploit (2)
  • Miscellaneous (5)
  • Network Penetration Testing (3)
  • Phishing (1)
  • Tips and Tricks (8)

SecBytes

  • GitHub
  • Twitter
  • Facebook

RSS Exploit DB Update

  • [webapps] Pluck 4.7.7-dev2 - PHP Code Execution December 8, 2025
    Pluck 4.7.7-dev2 - PHP Code Execution
  • [webapps] phpIPAM 1.4 - SQL-Injection December 3, 2025
    phpIPAM 1.4 - SQL-Injection
  • [webapps] MobileDetect 2.8.31 - Cross-Site Scripting (XSS) December 3, 2025
    MobileDetect 2.8.31 - Cross-Site Scripting (XSS)

Legal

  • Disclaimer
  • Privacy Policy
  • Cookie Policy

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

© 2025 SecBytes | Powered by Minimalist Blog WordPress Theme