Skip to main content

Quick

$ tldr HTTP/3 enum → Esigate ESI injection RCE → POS print server hijack

Writeups

Skill resources

Curated documentation for each technique listed in the Skills column above. Sources: HackTricks, GTFOBins, PortSwigger, etc. Local File Inclusion (LFI) · Remote File Inclusion (RFI) · Shellshock (CVE-2014-6271) · SQL Injection · Server-Side Request Forgery

If you liked this machine, try

  • Reel2 — Windows, Hard
  • Zetta — Linux, Hard
  • CTF — Linux, Insane
  • Frolic — Linux, Easy
  • Hawk — Linux, Medium

Comments & tips

Did the official writeup not work? Found a smarter trick? Share it here — comments live in GitHub Discussions.
Last updated: 2026-06-07