Hack The Box: University Machine Walkthrough – Insane Walkthrough

Compromised university.htb by exploiting ReportLab RCE (CVE-2023-33733) to gain initial access as wao. Forged a professor certificate to impersonate george, then uploaded a malicious lecture to compromise Martin.T.

Escalated privileges by exploiting a scheduled task with a malicious .url file, used LocalPotato (CVE-2023-21746) for elevation on WS-3, and abused SeBackupPrivilege to extract NTDS.dit, ultimately retrieving Domain Admin credentials.

šŸ” A great hands-on challenge combining web exploitation, privilege escalation, and Active Directory abuse.

#CyberSecurity #RedTeam #CTF #PrivilegeEscalation #HTB #InfoSec #WindowsExploitation #PenetrationTesting #EthicalHacking #HackTheBox

The post Hack The Box: University Machine Walkthrough – Insane Walkthrough appeared first on Threatninja.net.

August 9, 2025
Read More >>

‘Not A Single Pakistani Aircraft Was Hit Or Destroyed By Indian,’ Claims Khawaja Asif

Pakistan’s Defence Minister Khawaja Asif has strongly denied that any Pakistani military aircraft were hit or destroyed by Indian forces during the recent conflict known as Operation Sindoor.He described the Indian Air Force (IAF) Chief Marshal Amar Preet Singh’s claims of shooting down five Pakistani fighter jets and one large aircraft as "implausible" and "ill-timed."Asif asserted that Pakistan

August 9, 2025
Read More >>

‘Were Able To Take Care of Ghost Of Balakot’: Air Force Chief On Showing Evidence of Operation Sindoor Success

Air Chief Marshal AP Singh, Chief of the Air Staff of the Indian Air Force (IAF), has acknowledged that during the 2019 Balakot airstrike, the armed forces had human intelligence confirming significant damage to terrorist camps and the neutralisation of many terrorists.However, the IAF was unable to provide concrete visual evidence from inside Balakot, which made it difficult to convince the

August 9, 2025
Read More >>