Loading...
Articles
54
Tags
52
Categories
2
Home
Writeups
Articles
Cheatsheets
Quiz
UnChleuHacker
HTB - PingPong
Search
Home
Writeups
Articles
Cheatsheets
Quiz
HTB - PingPong
Created
2026-08-22
|
Updated
2026-09-14
|
writeups
|
Post Views:
Entrez le mdp pour accéder au writeup.
Decrypt
Previous
HTB - Pirate
Credential Discovery and KerberoastingWe start with the credentials pentest / p3nt3st2025!&. An initial LDAP enumeration using BloodHound and a kerberoasting attack allow us to map the domain pirate.htb: 1bloodhound-python -u pentest -p 'p3nt3st2025!&' -d pirate.htb -ns 10.129.244.95 -c all In particular, the Kerberoasting reveals the account a.white_adm (a member of the group IT) as well as the managed service account gMSA_ADFS_prod$ (a member of Remote Management Users):...
Next
HTB - PaperWork
UnChleuHacker
Articles
54
Tags
52
Categories
2
Follow Me
Contents
1.
ESC13
2.
Compromise of Pong_GMSA$
3.
JEA bypass
4.
SeImpersonate exploit
5.
Cross-forest bounce
Recent Posts
HTB - Pirate
2026-08-22
HTB - PingPong
2026-08-22
HTB - PaperWork
2026-08-22
HTB - Bedside
2026-08-22
HTB - DanglingTree
2026-08-20
Search
Loading Database