Skip to main content

Mantis

$ tldr Enum SMB/MSSQL → xp_cmdshell con cred → CVE-2014-6324 (Kerberos PAC) → DA

CVE / Bulletins: MS14-068 ↗

Writeups

Skill resources

Curated documentation for each technique listed in the Skills column above. Sources: HackTricks, GTFOBins, PortSwigger, etc. Kerberoasting · DCSync · AS-REP Roasting · Group Policy Preferences (GPP) · GetNPUsers (Impacket)

If you liked this machine, try


Comments & tips

Did the official writeup not work? Found a smarter trick? Share it here — comments live in GitHub Discussions.
Last updated: 2026-06-07