HTB CDSA
Certified Defensive Security Analyst by Academy. Get started now!
Machine Synopsis
Nunchucks is a easy machine that explores a NodeJS-based Server Side Template Injection (SSTI) leading to an AppArmor bug which disregards the binary's AppArmor profile while executing scripts that include the shebang of the profiled application.
Machine Matrix