TombWatcher HTB image

TombWatcher — HackTheBox Writeup

Henry → targeted Kerberoast on Alfred → AddSelf to INFRASTRUCTURE → ReadGMSAPassword on ansible_dev$ → Sam → John → WinRM pivot → reanimate tombstoned cert_admin via John’s GenericAll on OU=ADCS → ESC15 (CVE-2024-49019) on the WebServer template → Administrator.

April 29, 2026 · 8 min · Basil9099
Administrator HTB image

Administrator — HackTheBox Writeup

Olivia → BloodHound ACL chain (ForceChangePassword) → Benjamin → FTP .psafe3 → hashcat → password spray to Emily → targetedKerberoast on Ethan → DCSync Administrator.

April 28, 2026 · 6 min · Basil9099

Pentest workflow (Windows AD)

Step-by-step notes from a homelab penetration test: discovery, enumeration, Kerberos user discovery, brute force, and admin shell with Evil-WinRM. Includes commands used and outputs captured during the exercise.

September 18, 2025 · 2 min

Windows Server with Active Directory (AD) — Homelab

Overview of my Active Directory homelab: domain setup, users, security exercises, and next steps for monitoring and detection.

September 18, 2025 · 3 min · Basil9099