File Nº 0x6D / Subject: m0rgxn
Local --:--:--
§ 02 — Evidence locker12 exhibits

Notes


Exhibit L · 04 Sept 2026

SQL Injection

PortSwigger Web Security Academy notes on detecting and exploiting SQL injection, from UNION attacks to blind and out-of-band techniques

Filed
Exhibit K · 18 Aug 2026 · Azure Security

Modeling Managed-Identity Privilege Escalation as an Attack Graph

A framework for treating Azure managed-identity abuse in hybrid Entra ID environments as a graph-reachability problem. I define the node and edge types, ground each edge in Azure RBAC semantics, show how my tool Fenrir uses the model to answer one question conservatively, and work through a case study in my own lab. Framework and systematization, not an empirical study.

Filed
Exhibit H · 10 Jun 2026 · HTB Academy

Shells & Payloads

Master shell types, reverse shells, bind shells, payload crafting with MSFvenom, and web shells for penetration testing

Filed