~/mbt
Writeups

Security Writeups

CTF writeups, machine walkthroughs, and security challenge solutions.

All Writeups

28 available
tryhackmemediumLinux

VulnNet: dotpy

01

Scanned target with nmap

02

Enumerated Python web application

tryhackmemediumWindows

VulnNet: Roasted

01

AD enumeration

02

Identified ASREPRoastable accounts

tryhackmeeasyLinux

VulnNet: Node

01

Nmap scan revealed Node.js application

02

Enumerated API endpoints

tryhackmemediumWindows

VulnNet: Internal

01

Network enumeration

02

Identified internal services

tryhackmemediumWindows

VulnNet: Active

01

AD enumeration with BloodHound

02

Identified Kerberoastable accounts

tryhackmemediumLinux

Sustah

01

Initial enumeration

02

Discovered web application

tryhackmeeasyLinux

Reset

01

Nmap scan revealed services

02

Enumerated web server

tryhackmemediumLinux

RazorBlack

01

Scanned target with nmap

02

Enumerated web application

tryhackmehardWindows

Operation Endgame

01

Comprehensive enumeration

02

Identified multiple attack vectors

tryhackmemediumLinux

One Piece

01

Nmap scan revealed services

02

Enumerated web application

tryhackmeeasyLinux

Message to Garcia

01

Scanned target with nmap

02

Enumerated services

tryhackmeeasyLinux

Lumberjack Turtle

01

Nmap scan revealed open ports

02

Enumerated web server

tryhackmemediumLinux

Ledger

01

Initial nmap scan

02

Enumerated web application

tryhackmeeasyLinux

Jack

01

Scanned target with nmap

02

Enumerated running services

tryhackmemediumLinux

IronShade

01

Nmap scan revealed services

02

Enumerated web server

tryhackmemediumLinux

Inferno

01

Scanned target with nmap

02

Enumerated web application

tryhackmeeasyLinux

Hopper Origins

01

Initial enumeration with nmap

02

Discovered web application

tryhackmemediumLinux

Exfilibur

01

Nmap scan revealed web services

02

Enumerated application for data exfiltration vectors

tryhackmehardWindows

Enterprise

01

Performed comprehensive AD enumeration

02

Identified misconfigurations in Group Policy

tryhackmeeasyLinux

Eavesdropper

01

Scanned target with nmap

02

Enumerated web server and found exposed files

tryhackmemediumLinux

Devie

01

Initial enumeration with nmap

02

Discovered web application with development endpoints

tryhackmemediumLinux

Debug

01

Nmap scan revealed multiple services

02

Enumerated web application for debugging endpoints

tryhackmemediumLinux

CupidCards

01

Scanned target with nmap

02

Enumerated web application endpoints

tryhackmemediumLinux

Chains of Love

01

Enumerated web application for SSRF vulnerabilities

02

Discovered internal services through SSRF

tryhackmemediumLinux

Brute

01

Scanned target with nmap

02

Enumerated web application for input vectors

tryhackmeeasyLinux

Biblioteca

01

Performed nmap scan to identify web server

02

Discovered hidden directory through manual enumeration

tryhackmemediumWindows

Attacktive Directory

01

Enumerated AD environment using BloodHound

02

Identified Kerberoastable service accounts

tryhackmeeasyLinux

Annie

01

Ran nmap scan to discover open ports (SSH, HTTP)

02

Enumerated web directory and found WordPress installation