Pentesting commands — cheat sheet

Quick-reference commands for recon, enumeration, exploitation, and post-exploit work on Linux and Windows targets.

May 8, 2026 · 5 min
TombWatcher HTB image

TombWatcher — HackTheBox Writeup

Henry → targeted Kerberoast on Alfred → AddSelf to INFRASTRUCTURE → ReadGMSAPassword on ansible_dev$ → Sam → John → WinRM pivot → reanimate tombstoned cert_admin via John’s GenericAll on OU=ADCS → ESC15 (CVE-2024-49019) on the WebServer template → Administrator.

April 29, 2026 · 8 min · Basil9099
Administrator HTB image

Administrator — HackTheBox Writeup

Olivia → BloodHound ACL chain (ForceChangePassword) → Benjamin → FTP .psafe3 → hashcat → password spray to Emily → targetedKerberoast on Ethan → DCSync Administrator.

April 28, 2026 · 6 min · Basil9099

Splunk Enterprise — Windows Homelab Deployment

Centralised logging and detection engineering in my Windows homelab using Splunk Enterprise and Universal Forwarders.

September 18, 2025 · 2 min · Basil9099

Windows Server with Active Directory (AD) — Homelab

Overview of my Active Directory homelab: domain setup, users, security exercises, and next steps for monitoring and detection.

September 18, 2025 · 3 min · Basil9099
Blue HTB image

Blue (HTB) — Walkthrough

Exploiting MS17-010 (EternalBlue) on a Windows 7 SP1 target. Recon, SMB enumeration, exploitation, and proof of SYSTEM access.

September 17, 2025 · 2 min