# Eslam Ali Akl @eslam3kl

## Eslam Ali Akl @eslam3kl

- [Welcome!](https://eslam3kl.gitbook.io/blog/welcome.md): ⚠️ Caution: This blog is mine alone. Everything posted here reflects my personal views only. Nothing I say represents my employer or any other organization I’m affiliated with. Don’t confuse the two.
- [Web Application Findings](https://eslam3kl.gitbook.io/blog/web-application-findings.md): Bug Bounty Hunting and Penetration Testing findings from public and private programs.
- [\[CVE-2026-38450\] Aetopia DAM Server-Side Template Injection](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2026-38450-aetopia-dam-server-side-template-injection.md): https://www.cve.org/CVERecord?id=CVE-2026-38450
- [\[CVE-2025-65239\] USSD Gateway Broken Access Control - Logs](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65239-ussd-gateway-broken-access-control-logs.md): https://www.cve.org/CVERecord?id=CVE-2025-65239
- [\[CVE-2025-65238\] USSD Gateway Broken Access Control - Sessions](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65238-ussd-gateway-broken-access-control-sessions.md): https://www.cve.org/CVERecord?id=CVE-2025-65238
- [\[CVE-2025-65237\] USSD Gateway Reflected Cross-Site Scripting](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65237-ussd-gateway-reflected-cross-site-scripting.md): https://www.cve.org/CVERecord?id=CVE-2025-65237
- [\[CVE-2025-65236\] USSD Gateway SQL Injection - Sessions](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65236-ussd-gateway-sql-injection-sessions.md): https://www.cve.org/CVERecord?id=CVE-2025-65236
- [\[CVE-2025-65235\] USSD GW SQL Injection - SubUsers](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65235-ussd-gw-sql-injection-subusers.md): https://www.cve.org/CVERecord?id=CVE-2025-65235
- [\[CVE-2021-34786\] Cisco BroadWorks - Delete Admin Account](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2021-34786-cisco-broadworks-delete-admin-account.md): https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-broadworks-dJ9JT67N
- [\[CVE-2021–34785\] Cisco BroadWorks - Privileged Escalation](https://eslam3kl.gitbook.io/blog/web-application-findings/cve-2021-34785-cisco-broadworks-privileged-escalation.md): https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-broadworks-dJ9JT67N
- [Authentication bypass using empty parameters.](https://eslam3kl.gitbook.io/blog/web-application-findings/authentication-bypass-using-empty-parameters..md): Exploiting Authentication Bypass vulnerability with a tricky technique.
- [IDOR at Login function leads to leak user’s PII data](https://eslam3kl.gitbook.io/blog/web-application-findings/idor-at-login-function-leads-to-leak-users-pii-data.md): Vulnerable Login function leads to leaking PII data for all registered users.
- [Recon automation and more](https://eslam3kl.gitbook.io/blog/recon-automation-and-more.md): Recon/Information Gathering tips and tricks
- [RoboWrecker AI tool](https://eslam3kl.gitbook.io/blog/recon-automation-and-more/robowrecker-ai-tool.md): The post contains the documentations for the RoboWrecker tool that created by Eslam Akl and Hamed Ashraf.
- [How to write a simple script to automate finding bugs](https://eslam3kl.gitbook.io/blog/recon-automation-and-more/how-to-write-a-simple-script-to-automate-finding-bugs.md): Simple way to write python script to automate finding bugs
- [Simple Recon Methodology](https://eslam3kl.gitbook.io/blog/recon-automation-and-more/simple-recon-methodology.md): Simple and effective recon methodology for beginners.
- [Hack The Box Machines](https://eslam3kl.gitbook.io/blog/hack-the-box-machines.md)
- [Feline Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/feline-walkthrough.md)
- [Reel2 Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/reel2-walkthrough.md)
- [Active Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/active-walkthrough.md)
- [PopCorn Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/popcorn-walkthrough.md)
- [Jewel Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/jewel-walkthrough.md)
- [Passage Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/passage-walkthrough.md)
- [Time Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/time-walkthrough.md)
- [Devel Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/devel-walkthrough.md)
- [Lame Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/lame-walkthrough.md)
- [Beep Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/beep-walkthrough.md)
- [Blue Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/blue-walkthrough.md)
- [Jerry Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/jerry-walkthrough.md)
- [Optimum Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/optimum-walkthrough.md)
- [Grandpa Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/grandpa-walkthrough.md)
- [Legacy Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/legacy-walkthrough.md)
- [Mirai Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/mirai-walkthrough.md)
- [Valentine Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/valentine-walkthrough.md)
- [Shocker Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/shocker-walkthrough.md)
- [Netmon Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/netmon-walkthrough.md)
- [Bank Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/bank-walkthrough.md)
- [Granny Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/granny-walkthrough.md)
- [Tabby Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/tabby-walkthrough.md)
- [Access Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/access-walkthrough.md)
- [Swagshop Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/swagshop-walkthrough.md)
- [OpenAdmin Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/openadmin-walkthrough.md)
- [Remote Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/remote-walkthrough.md)
- [Sauna Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/sauna-walkthrough.md)
- [FriendZone Walkthrough](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/friendzone-walkthrough.md)
- [Hack The Box — Networked](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/hack-the-box-networked.md)
- [Hack The Box — Forest](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/hack-the-box-forest.md)
- [Hack The Box — WriteUP](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/hack-the-box-writeup.md)
- [Hack The Box — Academy](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/hack-the-box-academy.md)
- [Hack The Box — Luanne](https://eslam3kl.gitbook.io/blog/hack-the-box-machines/hack-the-box-luanne.md)
- [Certificates Reviews](https://eslam3kl.gitbook.io/blog/certificates-reviews.md)
- [HTB Certified Offensive AI Expert - COAE](https://eslam3kl.gitbook.io/blog/certificates-reviews/htb-certified-offensive-ai-expert-coae.md): Quick and honest review of COAE without wasting your time :)
- [Cloud Security](https://eslam3kl.gitbook.io/blog/cloud-security.md): If you secured your cloud enviroment, it means you protected your backbone.
- [\[Azure\] Real Example to know different types of app concepts in Azure](https://eslam3kl.gitbook.io/blog/cloud-security/azure-real-example-to-know-different-types-of-app-concepts-in-azure.md): We will discuss the differences between App Registration, Service Principle, App Service, and Function app.
- [\[Azure\] What To Do If?](https://eslam3kl.gitbook.io/blog/cloud-security/azure-what-to-do-if.md): "What To Do If" is a blog that will be updated continuously to contain valuable information about Azure Cloud resources exploit.
- [CTF Challenges](https://eslam3kl.gitbook.io/blog/ctf-challenges.md)
- [CTF CyberTalents  — Bypass the world Writeup](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-cybertalents-bypass-the-world-writeup.md)
- [CTF CyberTalents — Admin Gate First](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-cybertalents-admin-gate-first.md)
- [CTF CyberTalents — Inbox](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-cybertalents-inbox.md)
- [CTFlearn — Inj3ction Time](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctflearn-inj3ction-time.md)
- [CTF ringzer0ctf — Challenge Access List](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-ringzer0ctf-challenge-access-list.md)
- [CTF ringzer0ctf — Login portal 2](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-ringzer0ctf-login-portal-2.md)
- [CTF ringzer0ctf — SQLi challenges — part 1](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-ringzer0ctf-sqli-challenges-part-1.md)
- [CTF ringZer0ctf — Login form](https://eslam3kl.gitbook.io/blog/ctf-challenges/ctf-ringzer0ctf-login-form.md)
- [Red Teaming Tips & Tricks](https://eslam3kl.gitbook.io/blog/red-teaming-tips-and-tricks.md): Welcome to the most important section "Red Teaming Tips and tricks"
- [MOTW Defensive and Bypass techniques](https://eslam3kl.gitbook.io/blog/red-teaming-tips-and-tricks/motw-defensive-and-bypass-techniques.md): Mark of the Web "MOTW" defensive and bypass techniques.
