# Writeups and Walkthroughs

<figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F6IukinHp9AM22kd9aldv%2Fimage.png?alt=media&#x26;token=507950b2-aa9f-414a-8840-ecb4ee6b5e38" alt=""><figcaption></figcaption></figure>

## Try Hack Me (THM)

<div align="left" data-full-width="false"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FVpnpicJPZ603qnyrJwls%2Fspaces_EhofjMfYbx3gOUSReXD7_uploads_git-blob-d6717517efcd6cf2abc36234ddf89ae069267bc7_image-20230205151515316.webp?alt=media&#x26;token=e6dc66d3-3665-4cf3-b8ef-5820408dfcca" alt=""><figcaption><p>tryhackme.com - © TryHackMe</p></figcaption></figure></div>

### Rooms

* [OWASP](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/owasp)

#### Active Directory

* [Active Directory Basics](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/active-directory-basics) (This room will introduce the basic concepts and functionality provided by Active Directory)
* [AD: Basic Enumeration](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/ad-basic-enumeration) (This room covers various Active Directory enumeration techniques, their use cases as well as drawbacks)
* [Enumerating Active Directory](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/enumerating-active-directory) (This room covers various Active Directory enumeration techniques, their use cases as well as drawbacks)
* [Breaching Active Directory](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/breaching-active-directory) (This network covers techniques and tools that can be used to acquire that first set of AD credentials that can then be used to enumerate AD)
* [Attacking Kerberos](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/attacking-kerberos) (Learn how to abuse the Kerberos Ticket Granting Service inside of a Windows Domain Controller)
* [Attacktive Directory](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/attacktive-directory) (99% of Corporate networks run off of AD. But can you exploit a vulnerable Domain Controller?)
* [Exploiting Active Directory](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/exploiting-active-directory) (Learn common AD exploitation techniques that can allow you to reach your goal in an AD environment)
* [Post-Exploitation Basics ](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/post-exploitation-basics)(Learn the basics of post-exploitation and maintaining access with mimikatz, bloodhound, powerview and msfvenom)
* [Lateral Movement and Pivoting](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/lateral-movement-and-pivoting) (Learn about common techniques used to move laterally across a Windows network).

### CTFs

* [RootMe](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/rootme)
* [Simple CTF](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/simple-ctf)
* [Eternal Blue](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/eternal-blue)
* [Vulnversity](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/vulnversity)
* [Pickle Rick](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/pickle-rick)
* [Brooklyn Nine Nine](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/brooklyn-nine-nine)
* [Kenobi](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/kenobi)
* [Bounty Hacker](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/bounty-hacker)
* [Overpass](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/overpass)
* [LazyAdmin](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/lazyadmin)
* [Ignite](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/ignite)
* [Bolt](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/bolt)
* [Agent Sudo](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/agent-sudo)
* [Startup](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/startup)
* [Wgel](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/wgel)
* [Blog](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/blog)
* [ColdBox](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/coldbox)
* [Lian\_Yu](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/lian_yu)
* [Blaster](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/blaster)
* [Ice](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/ice)
* [The Sticker Shop](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/thm/the-sticker-shop)

***

## Hack The Box (HTB)

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2Fcf0DWgm15WPR4ngjY6Ia%2Fspaces_EhofjMfYbx3gOUSReXD7_uploads_git-blob-4d6d836c187ed06d910d94a8c98eab79e10bce11_logo-htb2.webp?alt=media&#x26;token=d45a63fc-c10b-466f-8160-cccdabe26f43" alt=""><figcaption><p>hackthebox.com - © HACKTHEBOX</p></figcaption></figure></div>

* [Devel](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/devel)
* [Delivery](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/delivery)
* [Active](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/active)
* [Analytics](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/analytics)
* [Bashed](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/bashed)
* [Valentine](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/valentine)
* [Sau](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/sau)
* [Sunday](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/sunday)
* [Cap](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/cap)
* [Bizness](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/hackthebox/bizness)
* Chemistry - OnGoing
* Celestial - OnGoing
* Poison - OnGoing

***

## VulnHub

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F6IpChF90swzwIqLuNP9H%2Fimage.png?alt=media&#x26;token=91a2042d-26b9-431a-86fc-714a0a703a66" alt="" width="330"><figcaption><p><a href="https://www.vulnhub.com/">https://www.vulnhub.com/</a></p></figcaption></figure></div>

* [Brainpain (BoF)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/vulnhub/brainpain-bof)

***

## Vulnix

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FAmVSancr18Ehtg684Krq%2Fimage.png?alt=media&#x26;token=421b0f61-4e6c-48a0-af64-8ebdd3fdadc5" alt="" width="375"><figcaption><p>© VulNyx</p></figcaption></figure></div>

* Admin

## DockerLabs

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F7gjYVbKjUZfnLDN8l3bR%2Fimage.png?alt=media&#x26;token=cbb2fcd8-f006-4a63-99e0-e91d133f954d" alt="" width="144"><figcaption><p><a href="https://dockerlabs.es/">https://dockerlabs.es/</a></p></figcaption></figure></div>

* [Trust](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dockerlabs/trust)
* [Upload](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dockerlabs/upload)
* [Vacaciones](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dockerlabs/vacaciones)

***

## HomeMade Labs 🏠🔬

* [Active Directory](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/homemade-labs/active-directory)
* [Pivoting](https://app.gitbook.com/o/s2H3MdEB0Qp2IbE58Gxw/s/rRWtuMw6xkkeDjZfkcWC/~/changes/174/homemade-labs/pivoting)
* [Buffer Overflow (BoF)](https://app.gitbook.com/o/s2H3MdEB0Qp2IbE58Gxw/s/rRWtuMw6xkkeDjZfkcWC/~/changes/174/homemade-labs/buffer-overflow-bof)

***

## WAPT

### Portswigger Web Security Academy

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FUE6tRU42bCa2xhopE1tl%2Fimage.png?alt=media&#x26;token=e54c9347-1776-4e3d-98fc-8c0abc74236e" alt=""><figcaption><p>@PortSwigger Ltd</p></figcaption></figure></div>

[PortSwigger - Web Security Academy (My Walkthrough)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/portswigger-web-security-academy)

***

### DVWA&#x20;

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FZWr61c113qrGv30T9kHT%2Fdvwa-logo-500x500.png?alt=media&#x26;token=d52a157a-1dae-4b05-a033-84b37fe3f4ae" alt="" width="250"><figcaption><p><a href="https://github.com/digininja/DVWA">https://github.com/digininja/DVWA</a></p></figcaption></figure></div>

* [Install and configure DVWA](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dvwa/install-and-configure-dvwa)
* [Command Injection](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dvwa/command-injection)
* [Cross Site Request Forgery (CSRF)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dvwa/csrf)
* [File Inclusion (LFI + RFI)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dvwa/file-inclusion)
* [SQL Injection (SQLi)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/dvwa/sql-injection)

***

### OWASP - Mutillidae II

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FDDMW3tHPjUy1MfJZrano%2Fimage.png?alt=media&#x26;token=717f2d87-2d2b-4678-900d-2c4b30d69320" alt=""><figcaption><p><a href="https://owasp.org/www-project-mutillidae-ii/">https://owasp.org/www-project-mutillidae-ii/</a></p></figcaption></figure></div>

* [Install & configure OWASP Mutillidae II](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/mutillidae-ii/install-and-configure-owasp-mutillidae-ii)
* [SQL Injection (SQLi)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/mutillidae-ii/sqli)
* [Command Injection](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/mutillidae-ii/command-injection)
* [IDOR & File Inclusion](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/mutillidae-ii/idor-and-file-inclusion)
* [Cross-Site Scripting (XSS)](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/mutillidae-ii/xss)

***

### OWASP - SecureBank

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FAlfISyRQkSRO5XKWlrqj%2Fimage.png?alt=media&#x26;token=58d4c7ab-bfaa-42c3-a87f-d33cbeb74cca" alt=""><figcaption><p><a href="https://owasp.org/www-project-securebank/">https://owasp.org/www-project-securebank/</a></p></figcaption></figure></div>

* Install and configure OWASP Secure Bank
