PortSwigger Web Security Academy: basic server-side template injection in an ERB message parameter, escalated to command execution.
Basic Server-Side Template Injection

whoami
Cybersecurity professional focused on information security, governance, compliance, and data protection, with a Master’s degree in cybersecurity and certifications including CISSP, OSCP, and CDPSE. The work I enjoy most is the whole loop: finding the weaknesses, then working with the team to fix them. It’s a purple-team mindset, attacking and defending the same system, and it depends on staying as close to the teams outside security as to the ones inside it.
cat skills.md
ls ~/ # where to next
Start here: new to the blog? Try the Shakabrah machine walkthrough , the SSTI lab series , or my recon tool Cataract .

PortSwigger Web Security Academy: basic server-side template injection in an ERB message parameter, escalated to command execution.

PortSwigger Web Security Academy: blind OS command injection where the output is redirected to a file in the web root and retrieved through the image endpoint.

PortSwigger Web Security Academy: blind OS command injection detected with a time delay, injecting ping into the feedback email parameter.

PortSwigger Web Security Academy: OS command injection (simple case). Injecting whoami into an unsanitized stock-checker storeID parameter with Burp.

An easy OffSec Proving Grounds Linux box chaining an exposed source backup, a PHP type-juggling auth bypass, LFI in the admin panel, hash cracking, and a sudo wildcard to root.