-
Notifications
You must be signed in to change notification settings - Fork 14
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
generated from commit 4b34a3a
- Loading branch information
Showing
724 changed files
with
33,038 additions
and
40,186 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,25 +1,19 @@ | ||
<?xml version="1.0" encoding="utf-8" standalone="yes"?> | ||
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"> | ||
<channel> | ||
<title>agiorgianni on Facile.it Engineering</title> | ||
<title>Agiorgianni on Facile.it Engineering</title> | ||
<link>https://engineering.facile.it/authors/agiorgianni/</link> | ||
<description>Recent content in agiorgianni on Facile.it Engineering</description> | ||
<generator>Hugo -- gohugo.io</generator> | ||
<description>Recent content in Agiorgianni on Facile.it Engineering</description> | ||
<generator>Hugo</generator> | ||
<language>en-us</language> | ||
<lastBuildDate>Thu, 30 May 2024 17:00:00 +0000</lastBuildDate> | ||
|
||
<atom:link href="https://engineering.facile.it/authors/agiorgianni/index.xml" rel="self" type="application/rss+xml" /> | ||
|
||
|
||
<atom:link href="https://engineering.facile.it/authors/agiorgianni/index.xml" rel="self" type="application/rss+xml" /> | ||
<item> | ||
<title>Hack the Box Experience</title> | ||
<link>https://engineering.facile.it/blog/eng/hack-the-box-experience/</link> | ||
<pubDate>Thu, 30 May 2024 17:00:00 +0000</pubDate> | ||
|
||
<guid>https://engineering.facile.it/blog/eng/hack-the-box-experience/</guid> | ||
<description>After the successful experience of having a code challenge in March 2024, we decided to go further in delivering experiences to our colleagues. | ||
Scouting around, I turned to Alessio Giorgianni, a developer with a passion for white hat hacking competition. We agree to try an experience using a platform called Hack the Box. Hack the Box Academy offers lots of information and training about IT Security and, in our case, some exercises we can use for hacking dummy applications, with a whitebox example (i.</description> | ||
<description><p>After the successful experience of <a href="https://engineering.facile.it/blog/eng/v-protetto8-3-2024/" title="Previously, on Venerdì Protetto... a code challenge!">having a code challenge in March 2024</a>, we decided to go further in delivering experiences to our colleagues.</p>
<p>Scouting around, I turned to Alessio Giorgianni, a developer with a passion for white hat hacking competition. We agree to try an experience using a platform called <a href="https://academy.hackthebox.com/">Hack the Box</a>. Hack the Box Academy offers lots of information and training about IT Security and, in our case, some exercises we can use for hacking dummy applications, with a whitebox example (i.e., an example where all the code is undisclosed to us. <a href="https://www.eccouncil.org/cybersecurity-exchange/penetration-testing/black-box-gray-box-and-white-box-penetration-testing-importance-and-uses/#:~:text=Objectives%3A%20Black%2Dbox%20testers%20seek,somewhere%20between%20these%20two%20extremes">There are also different kind of pentest</a>). We agreed upon using a non-trivial quest, called <a href="https://www.hackthebox.com/achievement/challenge/48545/638">Jerrytok</a>. Jerrytok is a WAPT (Web App Penetration Testing) whitebox challenge. We got a simple web-application, written in PHP, which disclose the harm of using template engines in a not-proper way. It&rsquo;s a good introduction to SSTI, <a href="https://portswigger.net/web-security/server-side-template-injection">Server Side Template Injection</a>.</p></description> | ||
</item> | ||
|
||
</channel> | ||
</rss> | ||
</rss> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1,10 @@ | ||
<!DOCTYPE html><html><head><title>https://engineering.facile.it/authors/agiorgianni/</title><link rel="canonical" href="https://engineering.facile.it/authors/agiorgianni/"/><meta name="robots" content="noindex"><meta charset="utf-8" /><meta http-equiv="refresh" content="0; url=https://engineering.facile.it/authors/agiorgianni/" /></head></html> | ||
<!DOCTYPE html> | ||
<html lang="en-us"> | ||
<head> | ||
<title>https://engineering.facile.it/authors/agiorgianni/</title> | ||
<link rel="canonical" href="https://engineering.facile.it/authors/agiorgianni/"> | ||
<meta name="robots" content="noindex"> | ||
<meta charset="utf-8"> | ||
<meta http-equiv="refresh" content="0; url=https://engineering.facile.it/authors/agiorgianni/"> | ||
</head> | ||
</html> |
Oops, something went wrong.