Rooted
Credencial verificada - ControlVigente

BM::n4h

Yuval Miller

@n4h · Pro Hacker · Israel

Penetration Tester & Security Researcher

EnglishHebrew
CONTROL4RANGO
RANGO
4 · Pro Hacker
Puntos verificados
3,055
Hack The Box
Pro Hacker · 2 owns
CVEs acreditados
6 · CVSS 9.8
Herramientas públicas
162 ★
Emitida
2026-08-25
Vence
2027-08-29
Posición
13 de 132
Certificaciones
OSCPOSCP+OSWP
Conocimiento demostrado

Habilidades

Cada señal nace de respuestas únicas del Daily. La dificultad y la evidencia sostenida la hacen crecer; las repeticiones nunca.

10respuestas únicas
Señal más fuerte · Web y AppSec · 59/100 · Operativo
WEB

Web y AppSec

59/100
Operativo86% de precisión6/7 correctasDifícil superadaestable

3 puntos de señal para Sólido · evidencia creciente

NETWORK

Redes y protocolos

24/100
En desarrollo100% de precisión1/1 correctasMedia superadaseñal nueva

16 puntos de señal para Operativo · señal inicial

AD

Active Directory

22/100
En desarrollo50% de precisión1/2 correctasFácil superadaseñal nueva

18 puntos de señal para Operativo · señal inicial

Annex — how this was earned

19 entries. Nothing scores without one.

3,055 total
Credentials3,000

11 entriescapped at 3,000

Quizzes and labs55

8 entries

Estos totales se apoyan en 19 entradas del registro. El detalle completo lo ven el titular y la revisión de Rooted.

Where your proof lands

Derived from what each verified ledger entry actually covers. You have nothing in cryptography, forensics & dfir, recon & osint, cloud & containers.

  • Web & AppSec1,773
    Evidence
    CVE-2026-64628
    CVE-2026-64954
    OSCP+
    CVE-2026-19200
    CVE-2026-18972
    CVE-2026-65008
    CVE-2026-65007
    OSCP
    The search route parameterises q but concatenates sort directly into `ORDER BY ${sort}`. A
    An API accepts a JWT whose header was changed from RS256 to HS256 and signed with the publ
    A PDF preview endpoint accepts a URL. Supplying http://169.254.169.254/latest/meta-data/ c
    A comment containing `<script>alert(1)</script>` runs for every visitor. What is the bug?
    A page on another site can submit a form that changes your email while you are logged in.
    An image-from-URL feature can fetch http://127.0.0.1/admin from the server. What is this?
  • Code & tooling1,538
    Evidence
    CVE-2026-64628
    CVE-2026-64954
    CVE-2026-19200
    CVE-2026-18972
    CVE-2026-65008
    CVE-2026-65007
    YuvalMil
  • Networks & protocols802
    Evidence
    OSCP+
    OSWP
    1675716
    OSCP
    A workstation sends hundreds of long, unique TXT queries under one domain every 30 seconds
  • Active Directory178
    Evidence
    1675716
    A service account has an SPN and a weak password. Which common attack tries to crack its s
  • Cryptographyno proof yet
  • Forensics & DFIRno proof yet
  • Recon & OSINTno proof yet
  • Cloud & containersno proof yet

The road to Exploit Hunter

945 pts short

Everything below is priced. Pick the cheapest one and the gap closes.

  1. Connect TryHackMe

    Points and completed rooms.

    +180
    points
    19% of the gap
  2. Clear another lab

    8 lab entries scored. 1,945 points left before the lab ceiling.

    +60
    points
    6% of the gap
  3. Publish a write-up

    Explain the bug, impact and fix. Peer-reviewed write-ups score after approval.

    +180
    points
    19% of the gap
  4. Submit a vulnerability report

    A confirmed low, medium, high or critical report is the cleanest path up the ladder.

    +160
    points
    17% of the gap
  5. Own 10 more machines

    Each user or system own is worth 4 points, and rank bonuses compound.

    +40
    points
    4% of the gap
  6. Earn Security+

    Verified against your credential URL.

    +80
    points
    8% of the gap

Not one figure above was typed in by n4h.

Read how points are earned
Get your credential
Rank requirements beyond points
  • Rank 4+ - One verified credential or one confirmed report
  • Rank 7+ - One confirmed report or one credited CVE
  • Rank 9+ - A credited CVE at CVSS 9.0+, or three critical confirmed reports