Playing Hacks and Stuffs!

The Hack The Box platform provides a wealth of challenges - in the form of virtual machines - simulating real-world security issues and vulnerabilities that are constantly provided and updated by the community. Some of them simulate real-world scenarios, and some lean more towards a CTF style of approach.<hr>
Command Injection, Reverse Engineering, SudoAnsible Vault, PWM, ADCSSSRF, Command Injection, SudoGIT, RCESource Code Analysis, File Inclusion, Nginx Misconfiguration, Redis, Python Format String VulnerabilityEnumeration, AWS, RCEWeb Socket, SQLite InjectionPython Code Injection, Gitea, Source Code AnalysisLFI, Source Code Review, Command Injection, Cypher InjectionCacti RCE, SUID, CVEIcinga CVE, Path Transversal, RCE, Pivoting, Windows Joined DomainFile Upload, Directory Transveral, Spring, AnsibleSource Code Review, LFI, File Upload Vuln, PHP Dfunc Bypass, Python Code Injection, Sudo LFI, IDOR, Sudo EditSMB, MSSQl, Log File Review, Certificate Template AbuseNOSQl Injection, XXE, NodeJS Insecure Deserialization, MongoDBWordpress, LFI, GdbServer, ScreenPHP 8.1.0-dev Exploit, SudoLFI, Reverse Engineering, Json Insecure Deserialization, DotnetOpenNetAdmin, MYSQL, Port Forwarding, SudoCommand Injection, Path HijackLFI, GIT, SSRF, PHP Filter Chain, GIT Indent, Service Abuse SNMP, PandoraFMS, SQli, Suid, Reverse Engineering, Path HijackWordpress, RocketChat, RCE, KernelAuth Bypass, LFI, SQli, Fail2banSMB, Openssl, LAPSSMB, Reverse Engineering, Not Completed Yet ............HeartBleed, Openssl, TmuxShellshock, SudoPi, SudoWordpress, Java Reverse Engineering, SudoDNS, File Upload, SuidEternalBlue, MsfNibbleBlog, SudoPhp Bash, CronCSRF, Linux SubsystemWebdav, MetasploitWebdav, MetasploitDrupal, Mysql, SnapSCF Attack, Outdated DriverNoSQl Auth Bypass, LFI, MisconfigurationCommand Injection, Cron, Outlook, Windows Event Logs, Reverse EngineeringColdFusion, RCECommand InjectionLFI, HydraFile Upload, RCEMetasploitMetasploit, Command InjectionMsfvenom, Command Injection, Sudo