Principal — Medium Linux machine walkthrough cover

Principal — HackTheBox Walkthrough

Principal chains a fresh CVE in pac4j-jwt — where encryption was mistaken for authentication — with SSH CA key abuse to go from zero to root on a Java Spring Boot platform.

March 12, 2026 · 7 min · Logan Dawson
Gavel — Medium Linux machine walkthrough cover

Gavel — HackTheBox Walkthrough

Gavel chains an exposed git repo, a subtle PDO prepared statement SQL injection, and a creative PHP sandbox escape — overwriting the php.ini from inside the sandbox itself — to reach root.

March 7, 2026 · 9 min · Logan Dawson
AirTouch — Medium Linux machine walkthrough cover

AirTouch — HackTheBox Walkthrough

AirTouch is a unique HTB medium box where you pivot through three network segments entirely over WiFi — cracking WPA-PSK, stealing session cookies from decrypted traffic, and pulling off a real-cert evil twin attack to capture MSCHAPv2 credentials.

March 6, 2026 · 9 min · Logan Dawson
Eighteen — HackTheBox Windows machine walkthrough cover

Eighteen — HackTheBox Walkthrough

Eighteen is a Windows Server 2025 Domain Controller box that chains MSSQL impersonation, Werkzeug hash cracking, and the newly-disclosed BadSuccessor vulnerability (CVE-2025-53779) to achieve full domain compromise — a rare chance to exploit a live DC in a lab environment.

February 27, 2026 · 9 min · Logan Dawson
Monitorsfour — Medium Windows machine walkthrough cover

Monitorsfour — HackTheBox Walkthrough

MonitorsFour chains a fresh Cacti RCE vulnerability with an exposed Docker API to go from web login to full Windows host compromise — a great lesson in container escape methodology.

February 6, 2026 · 6 min · Logan Dawson
Overwatch — Medium Windows machine walkthrough cover

Overwatch — HackTheBox Walkthrough

Overwatch chains MSSQL linked server credential capture via DNS poisoning with a WCF service PowerShell injection to go from unauthenticated to Domain Admin on a Windows Server 2022 DC.

January 24, 2026 · 8 min · Logan Dawson
Browsed — Medium Linux machine walkthrough cover

Browsed — HackTheBox Walkthrough

Browsed is a devious medium Linux box where you weaponize a Chrome extension upload feature to chain browser automation, bash arithmetic injection, and Python bytecode poisoning into a full root compromise.

January 10, 2026 · 9 min · Logan Dawson
Eloquia — Insane Windows machine walkthrough cover

Eloquia — HackTheBox Walkthrough

An Insane-rated Windows box chaining AngularJS CSTI, a subtle OAuth logical flaw, SQLite’s load_extension for DLL-based RCE, Edge DPAPI credential decryption, and .NET AppDomainManager injection to reach SYSTEM.

December 13, 2025 · 13 min · Logan Dawson
Fries — Hard Windows machine walkthrough cover

Fries — HackTheBox Walkthrough

Fries is a Hard Windows box that takes you through a dense multi-layer attack chain: credential leaks in Gitea, authenticated RCE in pgAdmin, Docker CA key theft, LDAP credential poisoning, and finally ADCS certificate abuse to own the domain.

November 22, 2025 · 9 min · Logan Dawson
Conversor — Easy Linux machine walkthrough cover

Conversor — HackTheBox Walkthrough

A Flask-based XML/XSLT converter with exposed source code, an unsanitized file upload, and a cron-powered RCE — topped off with a fresh needrestart CVE for root.

October 25, 2025 · 6 min · Logan Dawson