Skip to content

Hacking Articles

Raj Chandel's Blog

  • Courses We Offer
  • CTF Challenges
  • Penetration Testing
  • Web Penetration Testing
  • Red Teaming
  • Donate us
CTF Challenges, HackTheBox

Return HackTheBox Walkthrough

October 18, 2022 by raj4 Min Reading

Return is a Windows machine on HTB and is rated as easy, this box is designed over windows that have Weak Service Permission. If summarized,

Penetration Testing

Containers Vulnerability Scanner: Trivy

August 7, 2022 by raj4 Min Reading

This article talks about Trivy, which is a simple and comprehensive vulnerability scanner for containers and other artifacts, suitable for Continuous Integration and Testing. Table

Red Teaming

MimiKatz for Pentester: Kerberos

July 11, 2022 by raj5 Min Reading

Mimikatz for Pentester: Kerberos is a powerful tool used in penetration testing to exploit vulnerabilities in the Kerberos authentication protocol. In this article, we will

Red Teaming

Caldera: Red Team Emulation (Part 1)

June 16, 2022 by raj5 Min Reading

Caldera is an open-source framework that assists in Red Team Emulation. This tool is invaluable for conducting adversary simulations based on the MITRE ATT&CK framework,

Domain Escalation, Privilege Escalation, Red Teaming

Domain Escalation: Unconstrained Delegation

May 28, 2022April 1, 2026 by raj8 Min Reading

This research article documents a complete Active Directory domain compromise achieved through the abuse of Kerberos Unconstrained Delegation. Starting with a low-privileged domain user account

Persistence

Domain Persistence: Silver Ticket Attack

May 14, 2022 by raj8 Min Reading

Benjamin Delpy (the creator of mimikatz) introduced the silver ticket attack in Blackhat 2014 in his abusing Kerberos session. An attacker forges silver tickets or

Red Teaming

A Detailed Guide on Rubeus

May 11, 2022 by raj19 Min Reading

Rubeus is a C# toolkit for Kerberos interaction and abuse. Kerberos, as we all know, is a ticket-based network authentication protocol used in Active Directories.

Defense Evasion, Red Teaming

Process Herpaderping (Mitre:T1055)

April 24, 2022 by raj5 Min Reading

Johnny Shaw demonstrated a defense evasion technique known as process herpaderping in which an attacker is able to inject malicious code into the mapped memory

Password Cracking

A Detailed Guide on Hydra

April 22, 2022 by raj13 Min Reading

Hello! Pentesters, this article is about a brute-forcing tool Hydra. Hydra is one of the favourite tools of security researchers and consultants. Being an excellent

Posts pagination

Previous 1 … 13 14 15 … 156 Next

Categories

Join Our Training Program

Join Our Telegram Channel

Join Our Discord Channel

Cyber Security Mindmap

Follow us on Twitter

Follow us on Linkedin

© All Rights Reserved 2021 Theme: Prefer by Template Sell.