Eighteen — HackTheBox Windows machine walkthrough cover

Eighteen — HackTheBox Walkthrough

Eighteen is a Windows Server 2025 Domain Controller box that chains MSSQL impersonation, Werkzeug hash cracking, and the newly-disclosed BadSuccessor vulnerability (CVE-2025-53779) to achieve full domain compromise — a rare chance to exploit a live DC in a lab environment.

February 27, 2026 · 9 min · Logan Dawson
Pirate — Hard Windows machine walkthrough cover

Pirate — HackTheBox Season 10 Walkthrough

Pirate is a brutal Hard-rated Windows Domain Controller that chains together gMSA password extraction, ADFS internals abuse, NTLM relay over a Hyper-V double-pivot, and SPN hijacking to reach Domain Admin — a genuine enterprise attack simulation.

February 27, 2026 · 14 min · Logan Dawson
Archetype — HackTheBox Windows machine walkthrough cover

Archetype — HackTheBox Starting Point Walkthrough

Archetype shows how a single misconfigured SMB share cascades into full domain compromise — SSIS config files, xp_cmdshell, and PowerShell history all play a role.

January 30, 2026 · 6 min · Logan Dawson
Overwatch — Medium Windows machine walkthrough cover

Overwatch — HackTheBox Walkthrough

Overwatch chains MSSQL linked server credential capture via DNS poisoning with a WCF service PowerShell injection to go from unauthenticated to Domain Admin on a Windows Server 2022 DC.

January 24, 2026 · 8 min · Logan Dawson