· 22 min insane Linux Brainfuck
HTB: Brainfuck
A six-step attack chain across WordPress, SMTP, POP3, a Flarum forum with Vigenere encryption, SSH key cracking, and RSA cryptanalysis delivers the root flag without ever gaining a root shell.
#htb
#linux
#wordpress
#smtp +4
· 22 min hard Linux Charon
HTB: Charon
A multi-stage Linux box requiring two SQL injection points, a case-sensitive keyword filter bypass, a hidden base64 upload field, RSA key factorisation, and a SUID binary with a newline injection to reach root.
#htb
#linux
#sql-injection
#rsa +2