Legal
Disclaimer
Educational purpose only
Everything published here — writeups, payloads, exploitation techniques — documents work done against deliberately vulnerable CTF challenges, in environments built for that purpose. It's shared for learning: to help others understand how a vulnerability class works and how to find it.
Get authorization first
Do not run these techniques against any system you don't own or don't have explicit, written permission to test. Unauthorized access to computer systems is illegal in most jurisdictions, regardless of intent. If in doubt, don't.
No warranty
Content here is provided as-is, without warranty of any kind. It may be incomplete, outdated, or specific to a challenge that no longer exists in the state described. Nothing here is a guarantee that a technique will work elsewhere.
Not liable for misuse
Kishor Kumar is not responsible for how anyone else chooses to use the information on this site. Responsibility for lawful, authorized use rests entirely with the reader.
Personal opinions
Views expressed here are personal and don't represent the position of any current or former employer, including TCS.
External links
Links to external tools, platforms, or documentation are provided for convenience. Their content and availability aren't controlled by this site.