/HackTheBox-Writeups

Writeups for Hack The Box machines/challenges

Hack the Box - Writeups

Starting point

  • Oopsie [Linux, Web, Cookies]
  • Vaccine [Linux, Web, John, SQL Injection]
  • Shield [Windows, Wordpress, Metasploit]
  • Pathfinder [Windows, Active Directory, Kerberos, Attack Graph]
  • Included [Linux, Web, LFI, Upload, lxc]
  • Markup [Windows, XXE]
  • Guard [Linux, Restricted Shell, Cracking]
  • Base [Linux, PHP authentication, Directory Discovery]

Machines

  • Lame [Linux, smb]
  • Legacy [Windows, well known vulnerability]
  • Beep [Linux, LFI, FreePBX, elastix, vtigerCRM, SMTP]
  • Devel [Windows, IIS, Priv-Esc]
  • Optimum [Windows, HttpFileServer, Priv-Esc]
  • Bank [Linux, DNS, Routing]
  • Blocky [Linux, SQL, Wordpress]
  • Shocker [Linux, well known vulnerability, cgi]
  • Mirai [Linux, well known vulnerability, data recovery]
  • Valentine [Linux, well known vulnerability]
  • Laboratory [Linux, Gitlab RCE/LFI]
  • Academy [Linux, Laravel]
  • Doctor[Linux, SSTI, splunk]

Challenges