Skip to main content

Blog

HackTheBox Driver walkthrough
·1757 words·9 mins· loading · loading
A HackTheBox Windows machine involving NTLM hash capture through a firmware review workflow and privilege escalation via a vulnerable Ricoh printer driver.
HTB Active Writeup
·2115 words·10 mins· loading · loading
An Active Directory machine involving GPP password leakage, Kerberoasting, and domain admin compromise.
HackTheBox Cicada Writeup
·2907 words·14 mins· loading · loading
A Medium difficulty Active Directory machine involving SMB enumeration, credential exposure, and privilege abuse leading to full domain compromise.
HackTheBox Principal walkthrough
·2188 words·11 mins· loading · loading
A Linux machine involving JWT authentication bypass, credential reuse, and SSH CA key abuse to gain root access.
HTB Support Writeup
·1629 words·8 mins· loading · loading
An Active Directory machine involving SMB enumeration, credential extraction, and RBCD-based domain privilege escalation.
Dream Job-2
·1109 words·6 mins· loading · loading
An in-depth Threat Intelligence investigation of the Hack The Box Sherlocks challenge Dream Job-2, focused on malware used by the Lazarus Group during Operation Dream Job. This analysis covers malware lineage, macro-based initial access, payload staging, and defensive detection opportunities
TryHack3M: Bricks Heist
·1486 words·7 mins· loading · loading
Crack the code, command the exploit! Dive into the heart of the system with just an RCE CVE as your key.
Sherlock: PhishNet (HTB Challenge)
·696 words·4 mins· loading · loading
An in-depth forensic investigation of a phishing email from the HTB Sherlocks series. We analyze email headers, SPF validation, and a disguised malicious attachment used in a spearphishing attack.
Cypher
·608 words·3 mins· loading · loading
A full walkthrough of the Hack The Box ‘Cypher’ challenge from Season 7
linux cut command
·1192 words·6 mins· loading · loading
A comprehensive guide to the linux cut command