Logging - HTB
Logging starts with a routine Active Directory assessment, where seemingly ordinary artifacts and a bit of intuition gradually reveal a chain of misconfigurations leading to full compromise.
Silentium - HTB
An easy Linux machine featuring web enumeration, password reset vulnerability, container escaping, and internal service access.
DevArea - HTB
A medium-difficulty Linux machine featuring SOAP services, middleware exploitation, and multiple privilege escalation vectors.
Kobold - HTB
An easy-difficulty Linux machine featuring multiple web vulnerabilities.
Planning - HTB
An easy Linux machine featuring web enumeration, subdomain fuzzing, Grafana exploitation, and Docker container escape for privilege escalation.
DarkZero - HTB
Windows AD box starting with SQL Server access, linked-server command execution, local exploit for SYSTEM, ticket capture with Rubeus, and DCSync to Domain Admin.
No Credentials
No Credentials techniques and commands for Active Directory security assessment.
Facts - HTB
Easy Linux target exploiting a Cameleon LFI to steal an SSH key, crack its passphrase, then abuse facter custom facts for root.