L0WK3Y

L0WK3Y

Your friendly neighborhood malware analyst. Stay tuned, as I clear out my massive backlog of content! 🙂

Exploiting the Ultimate Essay Grader: A Prompt Injection Deep Dive
Offensive Security

Exploiting the Ultimate Essay Grader: A Prompt Injection Deep Dive

A hands-on look at a direct prompt injection vulnerability in an AI essay grader — how a hidden instruction block forced a perfect score, mapped against Pangea's prompt injection taxonomy.

·L0WK3Y
8kSec FactsDroid Walkthrough
Offensive Security

8kSec FactsDroid Walkthrough

Intercepting and modifying network traffic in a Flutter Android app — bypassing root detection and TLS, setting up DNAT for a proper MITM, and a detour into Flutter's HTTP network policy.

·L0WK3Y
Bugforge.io Gift Lab Walkthrough
Web Security

Bugforge.io Gift Lab Walkthrough

A gift-list app's "share link" turns out to be raw Base64 of a sequential list ID — enumerating tokens to access other users' private gift lists.

·L0WK3Y
Bugforge.io CopyPasta Walkthrough
Web Security

Bugforge.io CopyPasta Walkthrough

Chaining an IDOR on the profile endpoint with a broken authorization check on password changes to take over an admin account and grab the flag.

·L0WK3Y
InjuredAndroid Walkthrough: All 13 Flags
Offensive Security

InjuredAndroid Walkthrough: All 13 Flags

A full flag-by-flag walkthrough of the InjuredAndroid CTF app — string comparisons, DES/XOR decryption, exported broadcasts, Firebase misconfigurations, Unicode collisions, intent redirection, and a native RCE binary.

·L0WK3Y
PentesterLab Android Walkthrough: Labs 01–08
Offensive Security

PentesterLab Android Walkthrough: Labs 01–08

Working through PentesterLab's Android series — plaintext strings, SQLite assets, XOR ciphers, AES-CBC, PIN-derived keys, and brute-forcing a key that depends on a server-fetched secret.

·L0WK3Y
KGB Messenger Walkthrough
Offensive Security

KGB Messenger Walkthrough

Reverse engineering an open-source Android CTF practice app across three challenges — fake integrity checks, an MD5-gated login with a XOR-derived flag, and custom cipher messages sent to an in-app chatbot.

·L0WK3Y
IP Halloween 2025 - Spirit Halloween! Walkthrough
Capture The Flag

IP Halloween 2025 - Spirit Halloween! Walkthrough

Walkthrough for infophreak's own Halloween 2025 CTF — directory discovery to an APK, decompiling a native library with JADX, and pulling the flag from an encoded string inside it.

·L0WK3Y
HackTheBox - Manager (Mobile) Walkthrough
Capture The Flag

HackTheBox - Manager (Mobile) Walkthrough

A client asked me to perform security assessment on this password management application. Can you help me?

·L0WK3Y
PortSwigger Academy - User Role Controlled by Request Parameter
Web Security

PortSwigger Academy - User Role Controlled by Request Parameter

This lab has an admin panel at /admin, which identifies administrators using a forgeable cookie. Solve the lab by accessing the admin panel and using it to delete the user carlos. You can log in to your own account using the following credentials: wiener:peter

·L0WK3Y
PortSwigger Academy - Unprotected Admin Functionality
Web Security

PortSwigger Academy - Unprotected Admin Functionality

This lab has an unprotected admin panel. Solve the lab by deleting the user carlos.

·L0WK3Y
How to Set Up SonarQube and PostgreSQL Using Docker
Guides

How to Set Up SonarQube and PostgreSQL Using Docker

SonarQube is an open-source SAST platform for continuous inspection of code quality, ensuring clean, maintainable, and reliable code. By integrating it with Docker, you can effortlessly manage its deployment, making it portable and easily scalable...

·L0WK3Y
PortSwigger Academy - Authentication Bypass via Information Disclosure
Web Security

PortSwigger Academy - Authentication Bypass via Information Disclosure

This lab's administration interface has an authentication bypass vulnerability, but it is impractical to exploit without knowledge of a custom HTTP header used by the front-end.

·L0WK3Y
PortSwigger Academy - Source Code Disclosure via Backup Files
Web Security

PortSwigger Academy - Source Code Disclosure via Backup Files

This lab leaks its source code via backup files in a hidden directory. To solve the lab, identify and submit the database password, which is hard-coded in the leaked source code.

·L0WK3Y
PortSwigger Academy - Information Disclosure on Debug Page
Web Security

PortSwigger Academy - Information Disclosure on Debug Page

This lab contains a debug page that discloses sensitive information about the application. To solve the lab, obtain and submit the SECRET_KEY environment variable.

·L0WK3Y
How To Install ADB Bootloader/Fastboot Drivers on Windows in 2025!
Guides

How To Install ADB Bootloader/Fastboot Drivers on Windows in 2025!

This blog serves to be an updated guide on how to install Bootloader/Fastboot drivers for your Android device. I will be using the Google drivers in this tutorial, so no suspicious downloads will be used at all in this blog!

·L0WK3Y
PortSwigger Academy - Information Disclosure in Version Control History
Web Security

PortSwigger Academy - Information Disclosure in Version Control History

This lab discloses sensitive information via its version control history. To solve the lab, obtain the password for the administrator user then log in and delete the user carlos.

·L0WK3Y
HackTheBox - APKey Walkthrough
Capture The Flag

HackTheBox - APKey Walkthrough

This app contains some unique keys. Can you get one?

·L0WK3Y
PortSwigger Academy - Information Disclosure in Error Messages
Web Security

PortSwigger Academy - Information Disclosure in Error Messages

This lab's verbose error messages reveal that it is using a vulnerable version of a third-party framework. To solve the lab, obtain and submit the version number of this framework.

·L0WK3Y
Discord Users Beware: Lumma Stealer Malware Lurking in Your Communities
Research

Discord Users Beware: Lumma Stealer Malware Lurking in Your Communities

Cosmo Whales is an infostealer campaign masquerading as a Web3 videogame. Threat actors have been observed in the wild distributing malware via job advertisements for a Web3 game called Cosmo Whales.

·L0WK3Y
TryHackMe - Benign Walkthrough
Capture The Flag

TryHackMe - Benign Walkthrough

We will investigate host-centric logs in this challenge room to find suspicious process execution. To learn more about Splunk and how to investigate the logs, look at the rooms splunk101 and splunk201.

·L0WK3Y
247CTF - The Encrypted Password Walkthrough
Capture The Flag

247CTF - The Encrypted Password Walkthrough

You won't find the admin's secret password in this binary. We even encrypted it with a secure one-time-pad. Can you still recover the password?

·L0WK3Y
Threat Intelligence vs. Threat Hunting: Distinct Roles, Unified Defense
Defensive Security

Threat Intelligence vs. Threat Hunting: Distinct Roles, Unified Defense

This blog aims to provide a clear and comprehensive understanding of threat intelligence and threat hunting, their differences and how they work together.

·L0WK3Y
TIS-100 | Self-Test Diagnostic
Guides

TIS-100 | Self-Test Diagnostic

TIS-100 is an open-ended programming game by Zachtronics, the creators of SpaceChem and Infinifactory, in which you rewrite corrupted code segments to repair the TIS-100 and unlock its secrets. It’s the assembly language programming game you never asked for!

·L0WK3Y
Malware Report: CrowdStrike's BSOD Bug and the Rise of Fake Support Scams
Research

Malware Report: CrowdStrike's BSOD Bug and the Rise of Fake Support Scams

In a dramatic turn of events, CrowdStrike's latest update inadvertently triggered the dreaded Blue Screen of Death (BSOD) for numerous users. As if the chaos wasn't enough, opportunistic threat actors seized the moment, posing as CrowdStrike support to distribute malware...

·L0WK3Y
PicoCTF - Speeds and Feeds Walkthrough
Capture The Flag

PicoCTF - Speeds and Feeds Walkthrough

There is something on my shop network running at `nc mercury.picoctf.net 16524`, but I can't tell what it is. Can you?

·L0WK3Y
What Is: The EICAR Test File?
Defensive Security

What Is: The EICAR Test File?

Testing and validation form a part of the life cycle of every security system in the cybersecurity world. In the ever-increasing pantheon of tools at the disposal of security researchers stands one that has grown to become a de facto standard for testing...

·L0WK3Y
TryHackMe - Friday Overtime Walkthrough
Capture The Flag

TryHackMe - Friday Overtime Walkthrough

It's a Friday evening at PandaProbe Intelligence when a notification appears on your CTI platform. While most are already looking forward to the weekend, you realize you must pull overtime because SwiftSpend Finance has opened a new ticket, raising concerns about potential malware threats.

·L0WK3Y
Tryhackme - Searchlight IMINT Walkthrough
Capture The Flag

Tryhackme - Searchlight IMINT Walkthrough

·L0WK3Y
Malware Report: Wannacry Ransomware
Malware Analysis/RE

Malware Report: Wannacry Ransomware

Wannacry is a ransomware that utilized the EternalBlue exploit to propagate through the targets network and attacked outdated Windows computers globally in May of 2017.

·L0WK3Y
What Is Malware Analysis?
Defensive Security

What Is Malware Analysis?

Malware analysis is a crucial discipline within the field of cybersecurity that involves the in-depth examination of malicious software, often referred to as "malware."

·L0WK3Y
Tryhackme - REloaded Walkthrough
Capture The Flag

Tryhackme - REloaded Walkthrough

This room is dedicated for the RE challenges, each challenge has unique concepts divided in each binaries. As if now only phase 1 is added will decide about phase 2 on response. Developed by WhiteHeart and tested by IslaMukheef

·L0WK3Y
Hackthebox - Subatomic Walkthrough
Capture The Flag

Hackthebox - Subatomic Walkthrough

Forela is in need of your assistance. They were informed by an employee that their Discord account had been used to send a message with a link to a file they suspect is malware...

·L0WK3Y