Hi, I’m Cyberzilla
I’m an Offensive Security Certified Professional (OSCP) and Web Expert (OSWE) with 5 years of experience in the field. My mission is to bridge the gap between complex vulnerabilities and practical security solutions.
I believe that everyone deserves the peace of mind that comes with knowing their digital assets are secure and their data protected, and I’m passionate about using my expertise to make that a reality. This site serves as a digital garden where I document my methodology, research, and ongoing journey through the world of offensive security.
What you’ll find here
- HTB Writeups: Detailed walkthroughs of retired machines.
- Code Reviews: Deep dives into source code to find hidden logic flaws.
- Exploitation Methodology: Breaking down the “why” behind the attack.
Disclaimer: All content provided here is strictly for educational purposes. Always obtain explicit permission before performing any security testing.
Contact
If you’d like to reach out, the fastest way is on Discord:
Discord: cyberzillaDevHub
MCPJam RCE (CVE-2026-23744) with exposed Jupyter session to exploit backend backdoors.
Connected
FreePBX unauthenticated RCE (CVE-2025-57819) chained with five distinct incrond-based privilege …
WingData
WingFTP Server exploitation chain leading to remote code execution and privilege escalation on a Windows target.
Cap
IDOR vulnerability exposes other users' PCAP files containing cleartext FTP credentials, leading to cap_setuid privilege escalation.