Skip to main content

APT

$ tldr RPC IPv6 enum → SMB hash spray → NTDS dump → DA

Writeups

Skill resources

Curated documentation for each technique listed in the Skills column above. Sources: HackTricks, GTFOBins, PortSwigger, etc. Brute Force / Rate-Limit Bypass · Active Directory · EternalBlue (MS17-010) · MS08-067 (NetAPI)

If you liked this machine, try


Comments & tips

Did the official writeup not work? Found a smarter trick? Share it here — comments live in GitHub Discussions.
Last updated: 2026-07-13