Monitorsfour — Medium Windows machine walkthrough cover

Monitorsfour — HackTheBox Walkthrough

MonitorsFour chains a fresh Cacti RCE vulnerability with an exposed Docker API to go from web login to full Windows host compromise — a great lesson in container escape methodology.

February 6, 2026 · 6 min · Logan Dawson
Responder — Very Easy Windows machine walkthrough cover

Responder — HackTheBox Starting Point Walkthrough

A deceptively instructive box that chains LFI with NTLM hash theft — Responder shows how a single vulnerable parameter on a Windows web server can hand you administrator credentials.

February 1, 2026 · 5 min · Logan Dawson
Oopsie — HackTheBox Linux machine walkthrough cover

Oopsie — HackTheBox Starting Point Walkthrough

Oopsie chains credential reuse, a cookie-based IDOR, and a file upload to land a shell — then a SUID binary with an unsafe PATH gets us root. A masterclass in chained misconfigurations.

January 31, 2026 · 7 min · Logan Dawson
Unified — Very Easy Linux machine walkthrough cover

Unified — HackTheBox Starting Point Walkthrough

Unified is a Very Easy Linux box that weaponizes the infamous Log4Shell vulnerability against an unpatched UniFi Network controller, then chains unauthenticated MongoDB access to go from nobody to root.

January 31, 2026 · 5 min · Logan Dawson
Archetype — HackTheBox Windows machine walkthrough cover

Archetype — HackTheBox Starting Point Walkthrough

Archetype shows how a single misconfigured SMB share cascades into full domain compromise — SSIS config files, xp_cmdshell, and PowerShell history all play a role.

January 30, 2026 · 6 min · Logan Dawson
NanoCorp — HackTheBox Windows machine walkthrough cover

NanoCorp — HackTheBox Walkthrough

NanoCorp chains a sneaky NTLM capture through a hiring portal’s file upload, Active Directory ACL abuse via BloodHound, and a Checkmk MSI repair privilege escalation — all on a fully patched Windows Server 2022 DC.

8 min · Logan Dawson