
HTB - Web Challenge Writeup
Some writeup for a web challenge on Hack The Box Lab.
Read the postprogramming / security / research
/fərst/ · adjective
f1rst is a research-oriented blog documenting my journey through programming, cybersecurity, and all things tech. It serves as a learning archive — a place where experiments, technical deep-dives, and breakthroughs are captured and shared.

Some writeup for a web challenge on Hack The Box Lab.
Read the postArchive
Technical analysis of a live General Motors careers phishing deployment and the kit behind it: cloned brand pages, a collection form, a fake identity provider, and a Socket.IO console that lets an operator steer the victim. 245 captures across 108 registrable domains, with detection opportunities and indicators.
Notes on writing a lightweight CTFd container plugin for a university CTF, including per-team flags and flag sharing detection.
Reflections on solving SocratesPanel, the differences between CTFs and the real world, and how AI agents are changing the game for security researchers.
Topics