HTB easy machine
Curling Walkthrough (HackTheBox) by yag1n3 objetives user flag root flag Reconnaissance nmap website we see that it's using Joomla thanks to Wappalizer let's check the source code omg someone has to be fired we access that endpoint, there is a string that looks like base64 we decode it and it surely looks like a password on the posts posted on the root of t