
HTB: ACTIVE
CyberGuider writeup of retired "ACTIVE" box - about enumerating ACTIVE Directory and use Kerberoasting to find Admin creds for service acct.
CyberGuider writeup of retired "ACTIVE" box - about enumerating ACTIVE Directory and use Kerberoasting to find Admin creds for service acct.
We may not know all things about penetration testing or hacking but what we do know is OUR WILLINGNESS to constantly share what we know with you. They are probably better ways to hack the VulnHub WarZone2 Virtual Machine (VM)…
As a Penetration Tester, the constant need to practice our skills is required in order to improve our penetration testing (PT) abilities. Thus, making this process a deliberate and willful one in order to be better at our craft, as…
From the people who brought you WHAT THE CTF, CyberGuider is please to present its official walkthrough of DC1:1 from VulnHUB. This system was a lot of fun and shows that simple misconfigurations can cause the system to be compromised.…
In the last post we found that Windows Defender uses a black list to stop known hacking tools such as Mimikatz. We were able to easily bypass the restriction with some word replacements but it took time, trail and…
I was on a penetration test when I was able to acquire a set of admin credentials. This wasn’t a red team engagement, so there were no issues lighting up their AV with some of our tools, but I always…
The average computer user does not think much about the amount of information they share with others whether in-person, online or at random venues. They just want to be seen and heard because that is how the world works now.…
Often times as information technology (IT) security professionals (a.k.a. Security Pros), we meet others who are interested in what we do for a living. The transfer of knowledge serves as a good way to promote IT security and often kick-starts…
As I sat waiting on the examination table to begin my annual physical, I browsed the Internet from my iPhone on the office’s FREE Wi-Fi. At the time I thought, this is can’t get any worse, but then I heard…
It has been said time and time again that if you can’t detect it, you can’t protect it, but what the heck does that really mean? Many organizational leaders’ get their wires crossed on this matter by believing that they…