HTB: Escape

Active Directory machine demonstrating MSSQL abuse leading to credential leakage and AD CS certificate abuse for full domain compromise.

November 9, 2025 · 7 min

HTB: Blackfield

Active Directory machine demonstrating AS-REP Roasting, BloodHound-driven lateral movement, LSASS credential extraction, and Backup Operators abuse.

November 4, 2025 · 7 min

HTB: Monteverde

Azure AD Connect misconfiguration leading to credential extraction and domain compromise.

October 27, 2025 · 5 min

HTB: Sauna

Active Directory machine demonstrating username generation, AS-REP Roasting, AutoLogon credential discovery, and DCSync-based domain compromise.

October 27, 2025 · 5 min