Gavel — Medium Linux machine walkthrough cover

Gavel — HackTheBox Retired Walkthrough

Gavel chains an exposed git repo, a subtle PDO prepared statement SQL injection, and a creative PHP sandbox escape — overwriting the php.ini from inside the sandbox itself — to reach root.

March 7, 2026 · 9 min · Logan Dawson
Appointment — Very Easy Linux machine walkthrough cover

Appointment — HackTheBox Starting Point Walkthrough

Appointment is a deceptively simple box that teaches one of the most fundamental web vulnerabilities: SQL injection authentication bypass. One payload, one flag — but the lesson lasts a career.

February 1, 2026 · 5 min · Logan Dawson
Vaccine — Very Easy Linux machine walkthrough cover

Vaccine — HackTheBox Starting Point Walkthrough

Vaccine chains together anonymous FTP access, zip cracking, hardcoded credentials, and a PostgreSQL SQL injection into a full compromise — then escapes to root through a classic vi sudo misconfiguration.

January 31, 2026 · 5 min · Logan Dawson