HTB: Builder

Linux machine demonstrating Jenkins CLI arbitrary file read, Jenkins user hash extraction, credential cracking, and SSH key abuse for root access.

February 21, 2026 · 5 min

HTB: Escape

Active Directory machine demonstrating MSSQL abuse leading to credential leakage and AD CS certificate abuse for full domain compromise.

November 9, 2025 · 7 min

HTB: Forest

Active Directory machine demonstrating anonymous LDAP enumeration, AS-REP Roasting, nested group abuse, and DCSync-based domain compromise.

November 5, 2025 · 6 min

HTB: Blackfield

Active Directory machine demonstrating AS-REP Roasting, BloodHound-driven lateral movement, LSASS credential extraction, and Backup Operators abuse.

November 4, 2025 · 7 min

HTB: Flight

Active Directory machine demonstrating NTLM hash capture, SMB abuse, password reuse, IIS pivoting, and SeImpersonatePrivilege escalation.

November 1, 2025 · 9 min

HTB: Sauna

Active Directory machine demonstrating username generation, AS-REP Roasting, AutoLogon credential discovery, and DCSync-based domain compromise.

October 27, 2025 · 5 min

HTB: Active

Classic Active Directory machine demonstrating GPP credential exposure leading to Kerberoasting and domain compromise.

October 17, 2025 · 4 min

VulnLab: Data

Linux machine demonstrating Grafana arbitrary file read, Grafana credential cracking, SSH access, and Docker privileged container abuse.

May 20, 2025 · 6 min

VulnLab: Sync

Linux machine demonstrating anonymous rsync access, salted MD5 cracking, FTP-based SSH key placement, password reuse, and cronjob abuse.

May 12, 2025 · 5 min