JTJeff Tonginwind010.hashnode.dev00Hack the Box - Season 10 - Season of the Underground2d ago · 4 min read · Season 10 - Season of the Underground This was a rough season. Moved to a new property towards the end of the season which dropped me in the rankings. Surprised that I bumped back up with just one boxJoin discussion
YPYogesh Peelainexploitnotes.hashnode.dev00HackTheBox - TwoMillion: A Complete WalkthroughMay 27 · 5 min read · Overview TwoMillion is a nostalgic HackTheBox machine themed around the old HTB platform. The attack chain involves reverse-engineering obfuscated JavaScript to discover invite code logic, abusing a bJoin discussion
YPYogesh Peelainexploitnotes.hashnode.dev00HackTheBox: MonitorsFour - Full WalkthroughMay 27 · 6 min read · Introduction If you've been grinding HTB long enough, you start recognizing a pattern: one small oversight compounds into another until the entire system is wide open. MonitorsFour is a textbook exampJoin discussion
YPYogesh Peelainexploitnotes.hashnode.dev00HackTheBox: Support - From Credentials to Domain AdminMay 27 · 6 min read · Introduction The HackTheBox "Support" machine is a masterclass in realistic Active Directory exploitation. It demonstrates how a single exposed credential can cascade through misconfigured permissionsJoin discussion
NINeville Iregiinm0ng00s3-blog.hashnode.dev00Hack The Box: VaccineMay 25 · 11 min read · Penetration testing is not simple, it requires lots of technical knowledge and the capability to think outside of the box. Sometimes you will find simple yet dangerous vulnerabilities, other times youJoin discussion
APAmal PKinblog.amalpk.in00Hackthebox Fluffy Walkthrough — Windows Seasonal BoxMay 8 · 7 min read · Fluffy is a realistic Windows Active Directory (AD) machine on Hack The Box's Seasonal track that simulates a corporate environment with common misconfigurations and vulnerabilities often seen in realJoin discussion
Aameya0xinameya0x.hashnode.dev00Silentium: From AI Password Reset to Root via Symlink SorceryMay 2 · 5 min read · 1. Recon — The Usual Ritual nmap -sCV 10.129.45.122 -A -T 4 Open ports: 22 (SSH) and 80 (Nginx). The web server redirects to silentium.htb, so we add it to /etc/hosts like responsible adults. NothiJoin discussion
Aameya0xinameya0x.hashnode.dev00Kobold: When the AI Dev Tool Hands You a ShellApr 26 · 7 min read · Reconnaissance We start where every good story begins — with nmap and absolutely no idea what we're walking into. nmap -sCV -A 10.129.40.208 -p- Results come back with four open ports: Port ServJoin discussion
MSMOHIT SINGH PAPOLAinblog.reapsec.com00AirTouchApr 19 · 11 min read · OVERVIEW So as always we are given an IP so let’s start the enumeration using NMAP ENUMERATION So there are only two ports that are opened one is SSH and other one is SNMP so if you do script scaJoin discussion
Sshkzinmyhack.tech30Reaching the Top Ranks on Hack The Box, and What Changed Along the WayApr 16 · 5 min read · After 6 or 7 years on Hack The Box, competing, failing, learning, and coming back again, I finally reached the Top 7 worldwide. The number itself is not what matters most, but everything behind it: tiJoin discussion