<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://b1lal.com/posts/cyberexam-challenge-cronjob/</loc>
<lastmod>2025-05-13T15:36:56+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/tryhackme-gitLab-cve-2023-7028/</loc>
<lastmod>2025-06-05T15:03:58+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-underpass/</loc>
<lastmod>2025-06-05T15:03:58+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/nextjs-cve-2025-29927/</loc>
<lastmod>2025-06-05T15:03:58+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-twomillion/</loc>
<lastmod>2025-06-05T15:03:58+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/dirty-pipe-cve-2022-0847/</loc>
<lastmod>2025-06-05T15:03:58+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-javascript-deobfuscation/</loc>
<lastmod>2025-06-05T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/really-simple-security-plugin-cve-2024-10924/</loc>
<lastmod>2025-06-10T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-server-side-attacks/</loc>
<lastmod>2025-06-27T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/sudo-chwoot-cve-2025-32463/</loc>
<lastmod>2025-07-02T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/writable-symlink-below-cve-2025-27591/</loc>
<lastmod>2025-07-19T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-web-attacks/</loc>
<lastmod>2025-09-02T21:36:17+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/roundcube-remote-code-execution/</loc>
<lastmod>2025-08-25T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-certified-web-exploitation-specialist-degerlendirmesi/</loc>
<lastmod>2025-09-02T22:25:45+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/wordpress-ai-engine-plugin-cve-2025-11749/</loc>
<lastmod>2025-11-09T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/wordpress-flex-qr-code-generator/</loc>
<lastmod>2025-12-14T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hardware-hacking-zte_zxhn_h108n-1/</loc>
<lastmod>2026-01-20T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-debugging-interface-challenge-solution/</loc>
<lastmod>2026-02-16T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/hackthebox-SpookyPass-challenge-solution/</loc>
<lastmod>2026-02-23T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/posts/active-directory-asreproasting-attack/</loc>
<lastmod>2026-03-07T00:00:00+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/categories/</loc>
<lastmod>2026-03-23T18:31:42+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/tags/</loc>
<lastmod>2026-03-23T18:31:42+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/archives/</loc>
<lastmod>2026-03-23T18:31:42+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/about/</loc>
<lastmod>2026-03-23T18:31:42+03:00</lastmod>
</url>
<url>
<loc>https://b1lal.com/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/linux/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/privilege-escalation/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cronjob/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/gitlab/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2023-7028/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/bug-bounty/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/hackthebox/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/snmp/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/daloradius/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/mosh/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/next-js/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/framework/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/tryhackme/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/vulnerability-research/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-29927/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/api/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/javascript/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/js-obfuscation/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/curl/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/kernel/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2023-0386/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/php/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/command-injection/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2022-0847/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/poc/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/dirty-pipe/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/deobfuscation/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/eval/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/packer/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/skills-assessment/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2024-10924/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/2fa/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/wordpress/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cms/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/plugin/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/wordpress-plugin/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/authentication-bypass/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/server-side-attacks/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/ssti/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/ssrf/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-32463/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/chroot/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/chwoot/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/sudo/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/zero-day/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/exploit/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-27591/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/symlink/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/below/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/outbound/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/web-attacks/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/idor/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/xxe/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/http-verb-tampering/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-49113/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/roundcube/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cbbh/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cwes/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/web-security/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/web-exploitation/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/certification/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-11749/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/ai/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/ai-engine/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/information-exposure/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/research/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/poc/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/bearer-token/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/wordfence/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/cve-2025-12673/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/rce/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/file-upload/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/unauthenticated/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/flex-qr-code-generator/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/qr-code/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/hardware/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/hacking/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/zte/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/uart/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/zxhn-h108n/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/hardware-hacking/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/usb-to-ttl/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/serial-communication/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/realtek/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/sal/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/baud-rate/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/saleae/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/logic-analyzer/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/saleae-logic-analyzer/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/debugging-interface/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/reversing/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/spookypass/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/challenge/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/reversing-challenge/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/strings/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/objdump/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/active-directory/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/asreproasting/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/attack/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/security/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/pentesting/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/red-team/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/ad/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/kerberos/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/password-spraying/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/hashcat/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/kerbrute/</loc>
</url>
<url>
<loc>https://b1lal.com/tags/rubeus/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/cyberexam/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/cve/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/2023/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/hackthebox/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/ctf/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/2025/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/2022/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/skills-assessment/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/2024/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/cwes/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/hardware-hacking/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/reversing/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/purple/</loc>
</url>
<url>
<loc>https://b1lal.com/categories/active-directory/</loc>
</url>
<url>
<loc>https://b1lal.com/page2/</loc>
</url>
</urlset>
