HackTheBox: Unintended Pro Lab
Full walkthrough of the HackTheBox Unintended Pro Lab. Six-machine environment compromised via XXE file read exposing internal cre…
Full walkthrough of the HackTheBox Unintended Pro Lab. Six-machine environment compromised via XXE file read exposing internal cre…
Complete walkthrough of the HackTheBox P.O.O. Pro Lab. Five-machine Windows AD environment compromised via IIS web.config.bak cred…
Complete walkthrough of the HackTheBox Puppet Pro Lab. Six-machine Windows/Linux AD environment compromised via WordPress WP File …
Complete walkthrough of the Mythical HackTheBox Mini Pro Lab (FREE). Covers Apache LFI log poisoning via User-Agent injection for …
Complete Mini Pro Lab walkthrough for Intercept on HackTheBox. Covers LLMNR/NBNS poisoning with Responder to capture NetNTLMv2 has…
Complete Mini Pro Lab walkthrough for Reflection on HackTheBox. Covers Server-Side Request Forgery chained with NTLM relay to MSSQ…
Complete Mini Pro Lab walkthrough for Trusted on HackTheBox. Covers ADCS ESC1 (arbitrary SAN certificate abuse), ESC3 (enrollment …
Complete Pro Lab walkthrough for the Dante network on HackTheBox. Covers external initial foothold via WordPress CVE-2020-25213, D…
Full walkthrough of the HackTheBox Jet Fortress. Covers AES-ECB ciphertext block swap for admin token forgery, TOCTOU race conditi…
Full walkthrough of the HackTheBox Faraday Fortress. Covers hardcoded API key in JavaScript source, IDOR on vulnerability reports,…