Skip to main content

Releases

Sherlocks

Name                                                                                                                               DifficultyAssociated WriteupHTB LinkCovered Topics
ROGUEONEEasyWriteuphttps://app.hackthebox.com/sherlocks/RogueOne
  • Volatility
  • Forensics

Linux Machines

Name                                                                                                                               DifficultyAssociated WriteupHTB LinkCovered Topics
TWOMILLIONEasyWriteuphttps://app.hackthebox.com/machines/twomillion
  • API (enumeration & exploitation)
  • Javascript Obfuscation
  • Cryptanalysis
  • PHP Code Injection
LAMEEasyWriteuphttps://app.hackthebox.com/machines/LAME
  • CVE Exploitation
  • SUID Bit
AGILEMediumWriteuphttps://app.hackthebox.com/machines/AGILE
  • Directory Traversal
  • Flask Debug
  • CVE Exploitation
WIFINETICEasyWriteuphttps://app.hackthebox.com/machines/WIFINETIC
  • FTP Enumeration
  • Wifi Cracking via WPS
SANDWORMMediumWriteuphttps://app.hackthebox.com/machines/SANDWORM
  • PGP/GPG
  • SSTI
  • Flask
  • Firejail CVE
  • Sudoers
TOPOLOGYEasyWriteuphttps://app.hackthebox.com/machines/TOPOLOGY
  • Web Enumeration
  • LFI
  • LaTex
HEADLESSEasyWriteuphttps://app.hackthebox.com/machines/HEADLESS
  • Web enumeration
  • XSS
  • Command injection
  • Sudoers and IDOR
BLOCKYEasyWriteuphttps://app.hackthebox.com/machines/BLOCKY
  • Web enumeration
  • Java Decompilation
  • Bad practices
  • Wordpress
  • Sudoers

Windows Machines

Name                                                                                                                               DifficultyAssociated WriteupHTB LinkCovered Topics
TIMELAPSEEasyWriteuphttps://app.hackthebox.com/machines/timelapse
  • SMB Shares Enumeration
  • ZIP & PFX Cracking
  • Certificates
  • Powershell History
  • LAPS
CASCADEMediumWriteuphttps://app.hackthebox.com/machines/cascade
  • LDAP Enumeration
  • SMB Enumeration
  • Cryptanalysis
  • Drive Mapping
  • Reverse Engineering
  • AD Recycle Bin
FORESTMediumWriteuphttps://app.hackthebox.com/machines/forest
  • LDAP Enumeration
  • Kerberos
  • AS-REP Roasting
  • Bloodhound
  • AD Privilege Escalation
ACTIVEEasyWriteuphttps://app.hackthebox.com/machines/active
  • SMB Enumeration
  • AD Privilege Escalation via GPP
  • Kerberoast
  • TGS
SAUNAEasyWriteuphttps://app.hackthebox.com/machines/sauna
  • Kerberos Enumeration
  • AS-REP Roasting
  • AutoLogon Exploit
  • winPEAS
  • Pass-the-Hash
INTELLIGENCEEasyWriteuphttps://app.hackthebox.com/machines/intelligence
  • WEB Enumeration
  • Password Spray
  • Forensic
  • gMSA abuse
  • Kerberos Unconstrained Delegation
AUTHORITYMediumWriteuphttps://app.hackthebox.com/machines/intelligence
  • WEB Enumeration
  • SMB Enumeration
  • Ansible
  • Cryptanalysis
  • AD CS abuse
  • ESC1