A curated collection of essential payloads, commands, and resources for Hack The Box and general penetration testing.
Hack The Box Eighteen writeup. Exploiting MSSQL impersonation, extracting hashes, and WinRM password spraying for initial foothold.
Hack The Box Expressway writeup. Enumerating UDP port 500 for IKE/IPSec, cracking PSK, and exploiting a custom sudo vulnerability (CVE-2025-32463) for root.
Hack The Box Tabby writeup. Exploiting Local File Inclusion (LFI) to read Tomcat configuration files and extract sensitive credentials.
themes