Rhino Security Labs

Strategic Blog

CloudGoat: New Scenario and Walkthrough (sns_secrets)

Tyler Ramsbey
October 15, 2024

This is a full walkthrough for the new sns_secrets scenario on CloudGoat. 
CloudGoat allows people to hone their cloud security skills by completing several “capture-the-flag” challenges. Full set-up instructions are on the CloudGoat…

CloudGoat Official Walkthrough Series: ‘glue_privesc’

Vestaboard: Exploring Broken Access Controls and Privilege Escalation

CVE-2024-1212:
Unauthenticated Command Injection
In Progress Kemp LoadMaster

David Yesland

While researching the Progress Kemp LoadMaster load balancer we discovered an unauthenticated command injection in the administrator web interface of the appliance. This allowed full compromise of the LoadMaster if you could reach the…