Pentest One Liners

A list of one line commands for Windows to download and execute payloads.

Credential Interception Using Malicious SMB Shares

Intercepting NTLM-SSP credentials for offline cracking.

Casino Royale CTF

A walkthrough for VulnHub’s Casino Royale CTF.

Software Restriction Policies

Configuring SRP in Windows 10.

GoldenEye CTF

A VulnHub CTF challenge write-up.

Extracting Windows Credentials Using Native Tools

Extracting credentials using built in commands.

Kerberoasting

Kerbroasting to extract service account credentials.

Lateral Movement With Named Pipes

A demonstraton of named pipe communication using Meterpreter.

Session Enumeration With NetSessionEnum API

Using the NetSessionEnum API to find remotely logged in users.

BloodHound

Using BloodHound to exploit Active Directory based networks.

Active Directory Honey Tokens

Detecting AD account enumeration.

Linux WPA2 Enterprise Access Points

Creating a wireless access point using hostapd.