Skip to content

Hacking Articles

Raj Chandel’s Blog

  • Courses We Offer
  • CTF Challenges
  • Penetration Testing
  • Web Penetration Testing
  • Red Teaming
  • Donate us
Red Teaming

MimiKatz for Pentester: Kerberos

July 11, 2022 by raj5 Min Reading

Mimikatz for Pentester: Kerberos is a powerful tool used in penetration testing to exploit vulnerabilities in the Kerberos authentication protocol. In this article, we will

Red Teaming

Caldera: Red Team Emulation (Part 1)

June 16, 2022 by raj5 Min Reading

Caldera is an open-source framework that assists in Red Team Emulation. This tool is invaluable for conducting adversary simulations based on the MITRE ATT&CK framework,

Domain Escalation, Privilege Escalation, Red Teaming

Domain Escalation: Unconstrained Delegation

May 28, 2022April 18, 2026 by raj8 Min Reading

This research article documents a complete Active Directory domain compromise achieved through the abuse of Kerberos Unconstrained Delegation. Starting with a low-privileged domain user account

Persistence

Domain Persistence: Silver Ticket Attack

May 14, 2022 by raj8 Min Reading

Benjamin Delpy (the creator of mimikatz) introduced the silver ticket attack in Blackhat 2014 in his abusing Kerberos session. An attacker forges silver tickets or

Red Teaming

A Detailed Guide on Rubeus

May 11, 2022 by raj19 Min Reading

Rubeus is a C# toolkit for Kerberos interaction and abuse. Kerberos, as we all know, is a ticket-based network authentication protocol used in Active Directories.

Defense Evasion, Red Teaming

Process Herpaderping (Mitre:T1055)

April 24, 2022 by raj5 Min Reading

Johnny Shaw demonstrated a defense evasion technique known as process herpaderping in which an attacker is able to inject malicious code into the mapped memory

Password Cracking

A Detailed Guide on Hydra

April 22, 2022 by raj13 Min Reading

Hello! Pentesters, this article is about a brute-forcing tool Hydra. Hydra is one of the favourite tools of security researchers and consultants. Being an excellent

Red Teaming

A Detailed Guide on HTML Smuggling

April 19, 2022 by raj9 Min Reading

HTML Smuggling is an evasive payload delivery method that helps an attacker smuggle payload past content filters and firewalls by hiding malicious payloads inside of

Password Cracking

A Detailed Guide on Medusa

April 15, 2022 by raj9 Min Reading

Hi Pentesters! Let’s learn about a different tool Medusa, which is intended to be a speedy, parallel and modular, login brute forcer. The goal of

Posts pagination

Previous 1 … 16 17 18 … 159 Next

Categories

Join Our WhatsApp Channel

Join Our Training Program

Join Our Telegram Channel

Join Our Discord Channel

Cyber Security Mindmap

Follow us on Twitter

Follow us on Linkedin

© All Rights Reserved 2021 Theme: Prefer by Template Sell.