DefCamp Quals 2024 — CTF Infrastructure Vulnerability13 October 2024·374 words·2 minsAugustoDefCamp 2024 Infra Kubernetes Gcp Cloud PwnFrom a popped shell to full Kubernetes cluster compromise — exploiting GCP metadata, kubelet credentials, and CSR auto-approval to bypass RBAC.
DefCamp Quals 2024 — Alternating13 October 2024·469 words·3 minsDefCamp 2024 Forensics Rar File-FormatRecovering a hidden file from a RAR v5 archive by patching a service header into a file header.