> For the complete documentation index, see [llms.txt](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://dev-angelist.gitbook.io/writeups-and-walkthroughs/writeups-and-walkthroughs.md).

# Writeups and Walkthroughs

<figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F6IukinHp9AM22kd9aldv%2Fimage.png?alt=media&amp;token=507950b2-aa9f-414a-8840-ecb4ee6b5e38" alt=""><figcaption></figcaption></figure>

## Try Hack Me (THM)

<div align="left" data-full-width="false"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FVpnpicJPZ603qnyrJwls%2Fspaces_EhofjMfYbx3gOUSReXD7_uploads_git-blob-d6717517efcd6cf2abc36234ddf89ae069267bc7_image-20230205151515316.webp?alt=media&amp;token=e6dc66d3-3665-4cf3-b8ef-5820408dfcca" alt=""><figcaption><p>tryhackme.com - © TryHackMe</p></figcaption></figure></div>

### Rooms

* [OWASP](/writeups-and-walkthroughs/thm/owasp.md)

#### Active Directory

* [Active Directory Basics](/writeups-and-walkthroughs/thm/active-directory-basics.md) (This room will introduce the basic concepts and functionality provided by Active Directory)
* [AD: Basic Enumeration](/writeups-and-walkthroughs/thm/ad-basic-enumeration.md) (This room covers various Active Directory enumeration techniques, their use cases as well as drawbacks)
* [Enumerating Active Directory](/writeups-and-walkthroughs/thm/enumerating-active-directory.md) (This room covers various Active Directory enumeration techniques, their use cases as well as drawbacks)
* [Breaching Active Directory](/writeups-and-walkthroughs/thm/breaching-active-directory.md) (This network covers techniques and tools that can be used to acquire that first set of AD credentials that can then be used to enumerate AD)
* [Attacking Kerberos](/writeups-and-walkthroughs/thm/attacking-kerberos.md) (Learn how to abuse the Kerberos Ticket Granting Service inside of a Windows Domain Controller)
* [Attacktive Directory](/writeups-and-walkthroughs/thm/attacktive-directory.md) (99% of Corporate networks run off of AD. But can you exploit a vulnerable Domain Controller?)
* [Exploiting Active Directory](/writeups-and-walkthroughs/thm/exploiting-active-directory.md) (Learn common AD exploitation techniques that can allow you to reach your goal in an AD environment)
* [Post-Exploitation Basics ](/writeups-and-walkthroughs/thm/post-exploitation-basics.md)(Learn the basics of post-exploitation and maintaining access with mimikatz, bloodhound, powerview and msfvenom)
* [Lateral Movement and Pivoting](/writeups-and-walkthroughs/thm/lateral-movement-and-pivoting.md) (Learn about common techniques used to move laterally across a Windows network).

### CTFs

* [RootMe](/writeups-and-walkthroughs/thm/rootme.md)
* [Simple CTF](/writeups-and-walkthroughs/thm/simple-ctf.md)
* [Eternal Blue](/writeups-and-walkthroughs/thm/eternal-blue.md)
* [Vulnversity](/writeups-and-walkthroughs/thm/vulnversity.md)
* [Pickle Rick](/writeups-and-walkthroughs/thm/pickle-rick.md)
* [Brooklyn Nine Nine](/writeups-and-walkthroughs/thm/brooklyn-nine-nine.md)
* [Kenobi](/writeups-and-walkthroughs/thm/kenobi.md)
* [Bounty Hacker](/writeups-and-walkthroughs/thm/bounty-hacker.md)
* [Overpass](/writeups-and-walkthroughs/thm/overpass.md)
* [LazyAdmin](/writeups-and-walkthroughs/thm/lazyadmin.md)
* [Ignite](/writeups-and-walkthroughs/thm/ignite.md)
* [Bolt](/writeups-and-walkthroughs/thm/bolt.md)
* [Agent Sudo](/writeups-and-walkthroughs/thm/agent-sudo.md)
* [Startup](/writeups-and-walkthroughs/thm/startup.md)
* [Wgel](/writeups-and-walkthroughs/thm/wgel.md)
* [Blog](/writeups-and-walkthroughs/thm/blog.md)
* [ColdBox](/writeups-and-walkthroughs/thm/coldbox.md)
* [Lian\_Yu](/writeups-and-walkthroughs/thm/lian_yu.md)
* [Blaster](/writeups-and-walkthroughs/thm/blaster.md)
* [Ice](/writeups-and-walkthroughs/thm/ice.md)
* [The Sticker Shop](/writeups-and-walkthroughs/thm/the-sticker-shop.md)

***

## Hack The Box (HTB)

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2Fcf0DWgm15WPR4ngjY6Ia%2Fspaces_EhofjMfYbx3gOUSReXD7_uploads_git-blob-4d6d836c187ed06d910d94a8c98eab79e10bce11_logo-htb2.webp?alt=media&amp;token=d45a63fc-c10b-466f-8160-cccdabe26f43" alt=""><figcaption><p>hackthebox.com - © HACKTHEBOX</p></figcaption></figure></div>

* [Devel](/writeups-and-walkthroughs/hackthebox/devel.md)
* [Delivery](/writeups-and-walkthroughs/hackthebox/delivery.md)
* [Active](/writeups-and-walkthroughs/hackthebox/active.md)
* [Analytics](/writeups-and-walkthroughs/hackthebox/analytics.md)
* [Bashed](/writeups-and-walkthroughs/hackthebox/bashed.md)
* [Valentine](/writeups-and-walkthroughs/hackthebox/valentine.md)
* [Sau](/writeups-and-walkthroughs/hackthebox/sau.md)
* [Sunday](/writeups-and-walkthroughs/hackthebox/sunday.md)
* [Cap](/writeups-and-walkthroughs/hackthebox/cap.md)
* [Bizness](/writeups-and-walkthroughs/hackthebox/bizness.md)
* Chemistry - OnGoing
* Celestial - OnGoing
* Poison - OnGoing

***

## VulnHub

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F6IpChF90swzwIqLuNP9H%2Fimage.png?alt=media&amp;token=91a2042d-26b9-431a-86fc-714a0a703a66" alt="" width="330"><figcaption><p><a href="https://www.vulnhub.com/">https://www.vulnhub.com/</a></p></figcaption></figure></div>

* [Brainpain (BoF)](/writeups-and-walkthroughs/vulnhub/brainpain-bof.md)

***

## Vulnix

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FAmVSancr18Ehtg684Krq%2Fimage.png?alt=media&amp;token=421b0f61-4e6c-48a0-af64-8ebdd3fdadc5" alt="" width="375"><figcaption><p>© VulNyx</p></figcaption></figure></div>

* Admin

## DockerLabs

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2F7gjYVbKjUZfnLDN8l3bR%2Fimage.png?alt=media&amp;token=cbb2fcd8-f006-4a63-99e0-e91d133f954d" alt="" width="144"><figcaption><p><a href="https://dockerlabs.es/">https://dockerlabs.es/</a></p></figcaption></figure></div>

* [Trust](/writeups-and-walkthroughs/dockerlabs/trust.md)
* [Upload](/writeups-and-walkthroughs/dockerlabs/upload.md)
* [Vacaciones](/writeups-and-walkthroughs/dockerlabs/vacaciones.md)

***

## HomeMade Labs 🏠🔬

* [Active Directory](/writeups-and-walkthroughs/homemade-labs/active-directory.md)
* [Pivoting](https://app.gitbook.com/o/s2H3MdEB0Qp2IbE58Gxw/s/rRWtuMw6xkkeDjZfkcWC/~/changes/174/homemade-labs/pivoting)
* [Buffer Overflow (BoF)](https://app.gitbook.com/o/s2H3MdEB0Qp2IbE58Gxw/s/rRWtuMw6xkkeDjZfkcWC/~/changes/174/homemade-labs/buffer-overflow-bof)

***

## WAPT

### Portswigger Web Security Academy

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FUE6tRU42bCa2xhopE1tl%2Fimage.png?alt=media&amp;token=e54c9347-1776-4e3d-98fc-8c0abc74236e" alt=""><figcaption><p>@PortSwigger Ltd</p></figcaption></figure></div>

[PortSwigger - Web Security Academy (My Walkthrough)](/writeups-and-walkthroughs/portswigger-web-security-academy.md)

***

### DVWA&#x20;

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FZWr61c113qrGv30T9kHT%2Fdvwa-logo-500x500.png?alt=media&amp;token=d52a157a-1dae-4b05-a033-84b37fe3f4ae" alt="" width="250"><figcaption><p><a href="https://github.com/digininja/DVWA">https://github.com/digininja/DVWA</a></p></figcaption></figure></div>

* [Install and configure DVWA](/writeups-and-walkthroughs/dvwa/install-and-configure-dvwa.md)
* [Command Injection](/writeups-and-walkthroughs/dvwa/command-injection.md)
* [Cross Site Request Forgery (CSRF)](/writeups-and-walkthroughs/dvwa/csrf.md)
* [File Inclusion (LFI + RFI)](/writeups-and-walkthroughs/dvwa/file-inclusion.md)
* [SQL Injection (SQLi)](/writeups-and-walkthroughs/dvwa/sql-injection.md)

***

### OWASP - Mutillidae II

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FDDMW3tHPjUy1MfJZrano%2Fimage.png?alt=media&amp;token=717f2d87-2d2b-4678-900d-2c4b30d69320" alt=""><figcaption><p><a href="https://owasp.org/www-project-mutillidae-ii/">https://owasp.org/www-project-mutillidae-ii/</a></p></figcaption></figure></div>

* [Install & configure OWASP Mutillidae II](/writeups-and-walkthroughs/mutillidae-ii/install-and-configure-owasp-mutillidae-ii.md)
* [SQL Injection (SQLi)](/writeups-and-walkthroughs/mutillidae-ii/sqli.md)
* [Command Injection](/writeups-and-walkthroughs/mutillidae-ii/command-injection.md)
* [IDOR & File Inclusion](/writeups-and-walkthroughs/mutillidae-ii/idor-and-file-inclusion.md)
* [Cross-Site Scripting (XSS)](/writeups-and-walkthroughs/mutillidae-ii/xss.md)

***

### OWASP - SecureBank

<div align="left"><figure><img src="https://677614291-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FrRWtuMw6xkkeDjZfkcWC%2Fuploads%2FAlfISyRQkSRO5XKWlrqj%2Fimage.png?alt=media&amp;token=58d4c7ab-bfaa-42c3-a87f-d33cbeb74cca" alt=""><figcaption><p><a href="https://owasp.org/www-project-securebank/">https://owasp.org/www-project-securebank/</a></p></figcaption></figure></div>

* Install and configure OWASP Secure Bank
