<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://freyxfi.github.io/</id><title>Frey's CyberSec Blog</title><subtitle>A minimal, responsive and feature-rich Jekyll theme for technical writing.</subtitle> <updated>2026-03-03T08:57:55+05:30</updated> <author> <name>Frey</name> <uri>https://freyxfi.github.io/</uri> </author><link rel="self" type="application/atom+xml" href="https://freyxfi.github.io/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://freyxfi.github.io/"/> <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator> <rights> © 2026 Frey </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>Easiest 2FA Bypass</title><link href="https://freyxfi.github.io/posts/Broken-2FA/" rel="alternate" type="text/html" title="Easiest 2FA Bypass" /><published>2026-03-03T05:00:00+05:30</published> <updated>2026-03-03T05:00:00+05:30</updated> <id>https://freyxfi.github.io/posts/Broken-2FA/</id> <content type="text/html" src="https://freyxfi.github.io/posts/Broken-2FA/" /> <author> <name>Frey</name> </author> <category term="Web Security" /> <summary>Introduction Hello there, everyone! And guess what? We’re in 2026 awesome, right? I hope you’re all doing great in your own timelines. This blog is about a bug I found last month: the simplest 2FA bypass ever. I wanted to share it now because I finally fixed my laptop and I’m back to writing a lot again. Oh, and one more thing I updated my username from freyxfi to offsecrunner. Maybe playing...</summary> </entry> <entry><title>THM - Soupedecode 01</title><link href="https://freyxfi.github.io/posts/soupedecode01/" rel="alternate" type="text/html" title="THM - Soupedecode 01 " /><published>2025-08-15T19:49:00+05:30</published> <updated>2025-08-15T19:49:00+05:30</updated> <id>https://freyxfi.github.io/posts/soupedecode01/</id> <content type="text/html" src="https://freyxfi.github.io/posts/soupedecode01/" /> <author> <name>Frey</name> </author> <category term="Active Directory" /> <summary>CTF Writeup: SOUPEDECODE #1 Overview This writeup documents the steps taken to complete a Capture The Flag (CTF) challenge targeting a Windows Server 2022 domain controller in the SOUPEDECODE.LOCAL domain. The objective was to gain initial access, escalate privileges, and retrieve the user.txt and root.txt flags. The process involved network scanning, enumeration, credential discovery, and priv...</summary> </entry> <entry><title>Week #9 Rice it Fuck up</title><link href="https://freyxfi.github.io/posts/Week9-Rice-it-Fuck-up/" rel="alternate" type="text/html" title="Week #9 Rice it Fuck up" /><published>2025-03-01T16:54:00+05:30</published> <updated>2025-03-01T16:54:00+05:30</updated> <id>https://freyxfi.github.io/posts/Week9-Rice-it-Fuck-up/</id> <content type="text/html" src="https://freyxfi.github.io/posts/Week9-Rice-it-Fuck-up/" /> <author> <name>Frey</name> </author> <category term="Ricing" /> <summary>Another Note I failed and then I started again as I know this is a part of life, not the ending. Btw, in this blog, I will show how I riced up my Vim from the ordinary to the nerdy cool one. As other blogs were all about what I am doing, this will be about giving something to the community. Despite web security or Active Directory, can we talk about computers for once? What Happened Last Week...</summary> </entry> <entry><title>Week #8 Focusing On Myself</title><link href="https://freyxfi.github.io/posts/Week8-focusing/" rel="alternate" type="text/html" title="Week #8 Focusing On Myself" /><published>2025-02-23T13:27:00+05:30</published> <updated>2025-02-23T13:27:00+05:30</updated> <id>https://freyxfi.github.io/posts/Week8-focusing/</id> <content type="text/html" src="https://freyxfi.github.io/posts/Week8-focusing/" /> <author> <name>Frey</name> </author> <category term="Web Security" /> <summary>Another Note Before starting, I must say this week was cool, and I learned that I am still far away from being called a pro! I looked around myself and found hyenas, but I don’t want to be in that crowd. So, I should leave all that behind and keep developing myself in the dark alley. I need to force myself to do the hard tasks. What Happened Last Week? Found 4 Bugs (actually 5) Got a ch...</summary> </entry> <entry><title>Week #7 Love Me Again</title><link href="https://freyxfi.github.io/posts/Week7-Love-Me-Again/" rel="alternate" type="text/html" title="Week #7 Love Me Again" /><published>2025-02-16T19:00:00+05:30</published> <updated>2025-02-16T19:00:00+05:30</updated> <id>https://freyxfi.github.io/posts/Week7-Love-Me-Again/</id> <content type="text/html" src="https://freyxfi.github.io/posts/Week7-Love-Me-Again/" /> <author> <name>Frey</name> </author> <category term="Active Directory" /> <category term="Web Security" /> <summary>What Happened Last Week? Catching up with HTB Season 7. I made another YouTube video, lol. That was so funny. Ruby rank achieved on HTB Season 7. 50 machines done. OS command injection. Path traversal. Another cool duplicate of another cool bug. Job work should be private. Wireless hacking coming soon. Learning Russian and Spanish side by side. C programming is God. Wa...</summary> </entry> </feed>
