DarkZeroReturns - HTB
A two-forest Active Directory maze that only starts at a Node.js web app.
Logging - HTB
Logging starts with a routine Active Directory assessment, where seemingly ordinary artifacts and a bit of intuition gradually reveal a chain of misconfigurations leading to full compromise.
Silentium - HTB
An easy Linux machine featuring web enumeration, password reset vulnerability, container escaping, and internal service access.
DevArea - HTB
A medium-difficulty Linux machine featuring SOAP services, middleware exploitation, and multiple privilege escalation vectors.
Environment - HTB
Medium Linux box abusing an env parameter to bypass login, then file upload to webshell and GPG key decryption to SSH, finishing with BASH_ENV sudo abuse.
Outbound - HTB
Easy Linux machine with Roundcube RCE (CVE-2025-49113), session/DB credential recovery, and below symlink privesc (CVE-2025-27591).
timewrap: A Handy faketime Alias Using NTP
A shell function to run commands with time spoofing using faketime and NTP servers
DarkZero - HTB
Windows AD box starting with SQL Server access, linked-server command execution, local exploit for SYSTEM, ticket capture with Rubeus, and DCSync to Domain Admin.