๐ŸงŸTombWatcher

https://app.hackthebox.com/machines/664

Machine Information

As is common in real life Windows pentests, you will start the TombWatcher box with credentials for the following account: henry / H3nry_987TGV!

Recon

We start the basic recon

Website

The website is just a default IEE-Server

Active Directory

We gonna check the permission of the given User in the AD

User

So let's download targetedKerberoastarrow-up-right

We gonna crack that hash

We gonna dump the gMSA arrow-up-rightpassword,

Root

Last updated