Published onMarch 5, 2025IAM WriteupSSRFCloudLinuxHacking-ClubIAM Machine has the CVE-2021-40438 vulnerability, which allows SSRF in Apache, resulting in temporary AWS credentials and privilege escalation to root.
Published onJune 29, 2024Reader WriteupSSRFRFILinuxHacking-ClubThe Reader machine has SSRF and RFI vulnerabilities that allow RCE and privilege escalation to root via capabilities in the Perl binary.