Skip to content

Repository files navigation

Hack The Box Lab Writeups

Starting out in Cybersecurity, HackTheBox (HTB) has been the go-to resource provided to me or anyone interested in Penetration Testing and Ethical Hacking for that matter.

Contents

  1. Explore - Android (Easy)
  2. Lame - Linux (Easy)
  3. Shocker - Linux (Easy)
  4. Nibbles - Linux (Easy)
  5. Bashed - Linux (Easy)
  6. Valentine - Linux (Easy)
  7. Beep - Linux (Easy)
  8. Swagshop - Linux (Easy)
  9. Sense - Linux (Easy)
  10. Knife - Linux (Easy)
  11. Armageddon - Linux (Easy)
  12. ScriptKiddie - Linux (Easy)
  13. OpenAdmin - Linux (Easy)
  14. Traverxec - Linux (Easy)
  15. Networked - Linux (Easy)
  16. Mirai - Linux (Easy)

Retired Machines vs Active Machines

HTB's Active Machines are free to access, upon signing up. Accessing the retired machines, which come with a HTB issued walkthrough PDF as well as an associated walkthrough from Ippsec are exclusive to paid subscribers.

HackTheBox doesn't provide writeups for Active Machines and as a result, I will not be doing so either. Having said that, I might include some later on, albeit password-protected PDF's to maintain integrity.

HackTheBox in relation to OSCP Prep

Another reason for myself attempting the boxes on the HTB platform is to help me prepare for the OSCP course & exam. As a result, my writeups will have an additional vector to root machines - manual exploitation and privilege escalation in addition to automated exploitation with tools like Metasploit, which are not allowed in the OSCP exam.

Accessing the VM's

The HTB platform uses an OpenVPN connection to access the labs and machines. Once signed up, the connection pack can be downloaded as an .ovpn file and imported using the OpenVPN client.

TJnull's OSCP Prep VM's

TJnull and the team at NetSec Focus have compiled a list of HackTheBox VM's that are a pathway to getting started, building practical skills and preparing for the OSCP in the HTB tab.

I have extracted the table and fed it into this repository and will be ticking off the columns as I move down the line.

Linux VM's

Linux BoxesDifficultyTagsCompleted
LameEasyInjection, CMS ExploitCompleted
BrainfuckInsaneCryptography
ShockerEasyPerl, Injection, Web - ShellshockCompleted
BashedEasyFile Misconfiguration, WebCompleted
NibblesEasyFile Misconfiguration, Web - Nibble BlogCompleted
BeepEasyLFI, Web - /vtigercrm in ElastixCompleted
CronosMediumPHP, SQL, DNS Zone Transfer, SQLi, Web
NinevehMediumPHP, Port Knocking, LFI, Web
SenseEasyFreeBSD, Injection, WebCompleted
SolidstateMediumFile Misconfiguration, Web
KotarakHardArbitrary File Upload, Web
NodeMediumAPI Fuzzing, JSON, File Misconfiguration, Web
ValentineEasyPatch Management, WebCompleted
PoisonMediumPHP, Log Poisoning, FreeBSD, Web
SundayEasySolaris, File Misconfiguration
TartaresauceMediumC, Sandbox Escape, RFI, Web
IrkedEasyCryptography, Web
FriendzoneEasyLFI, DNS Zone Transfer, File Misconfiguration, Web
SwagshopEasySQL, SQLi, WebCompleted
NetworkedEasyPHP, Arbitrary File Upload, Injection, WebCompleted
JarvisMediumSQL, SQLi, Web, Injection
MiraiEasyLinux, Network, Default Creds, File System Forensics, WebCompleted
PopcornMediumPHP, Web
HaircutMediumPHP, Injection, Web
BlockyEasyPHP, Web
FrolicEasyC, Cryptography
PostmanEasyFile Misconfiguration, Web
MangoMediumPHP, Injection, Web
TraverxecEasyFile Misconfiguration, WebCompleted
OpenAdminEasyFile Misconfiguration, WebCompleted
MagicMediumPHP, SQLi, SQL, Arbitrary File Upload, Web
AdmirerEasySQL, Web
BlunderEasyWindows, Bash, Account Misconfiguration, Web
TabbyEasyBash, Account Misconfiguration, Sandbox Escape, Web
DoctorEasyBash, SSTI, Outdated Software, Account Misconfiguration, Web
SneakyMailerMediumBash, Client Side Attack, Web
PassageMediumBash, File Misconfiguration, Web
LuanneEasyBash, Injection, Web Fuzzing, File Misconfiguration, Web
TimeMediumJavaScript, Deserialization, File Misconfiguration, Web
ReadyMediumBash, Account Misconfiguration
DeliveryEasyBash, Account Misconfiguration
OphiuchiMediumJava, Deserialization, Golang, Source Code Review
ScriptKiddieEasyOutdated SoftwareCompleted
ArmageddonEasyOutdated Software, Linux, Web, PHP, CMS Exploit, Password Reuse, CVE, Weak PasswordCompleted
KnifeEasyPHP, GTFOBins, BackdoorCompleted
PitMediumPHP, Bash, CMS Exploit, Arbitrary File Upload, Outdated Software, Process Inspection, RCE, CVE
Seal (Linux)MediumFile Misconfiguration

Windows VM's

Windows BoxesDifficultyTagsCompleted
LegacyEasyInjection, Eternal Blue
BlueEasyPatch Management, Eternal Blue
DevelEasyFTP, Arbitrary File Upload
OptimumEasyWeb
BastardMediumPHP, Patch Management, Web
GrannyEasyPatch Management, Web
ArcticEasyArbitrary File Upload, Patch Management, Web
GrandpaEasyPatch Management, Web
SiloMediumArbitrary File Upload
BountyEasyVBScript. C, Patch Management, Web
JerryEasyArbitrary File Upload, File Misconfiguration, Web
ConcealHardC, Arbitrary File Upload
ChatterboxMediumPowershell
ForestEasyKerberoasting, Powershell, Active Directory, Windows
BankRobberInsaneWindows, C, XSS, LFI, SQLi, JavaScript, Web
SecnotesMediumCSRF, Windows, SQL, PHP, Powershell, SQLi, Web
BastionEasyWindows, Powershell, File Misconfiguration
BuffEasyWindows, Powershell, Web
ServmonEasyWindows, Powershell, API Fuzzing, Web
ActiveEasyWindows, Kerberoasting, Active Directory, Powershell
RemoteEasyWindows, Web
FuseMediumWindows, Powershell, Active Directory
OmniEasyPowershell, Patch Management, File Misconfig, Web
WorkerMediumWindows, Powershell, Cloud, Web
LoveEasyWindows, CVE, SSRF, RCE, AppLocker Bypass
IntelligenceMediumWindows, Active Directory, Network, Weak Password, Kerberoasting, SMB
APTInsaneWindows, Powershell

About

A step-by-step walkthrough of different machines "pwned" on the CTF-like platform, HackTheBox.

Topics

Resources

Stars

75 stars

Watchers

4 watching

Forks

Releases

Packages

Contributors

Languages