· 20 min hard Linux Holiday
HTB: Holiday
A Linux box combining SQL injection for credential extraction, stored XSS with aggressive filter bypass to steal an admin cookie, command injection through a character-restricted export endpoint, and sudo npm install for root.
#htb
#linux
#xss
#stored-xss +3