Rex Kyris
banner
rexkyris.bsky.social
Rex Kyris
@rexkyris.bsky.social
HackTheBox - Certificate write-up
> File upload
> Password reuse
> Kerberos pre-auth timestamp
decryption
> Adcs ESC3
> CA certificate
rexkyris.github.io/posts/certif...
#HackTheBox #penetesting #redteaming #hacking #infosec
HTB - Certificate
by using zip concatenation we will bypass the file upload restrictions and upload a php webshell to gain the initial access, after upgrading the access to silver beacon we will setup a port forward to...
rexkyris.github.io
October 19, 2025 at 7:36 PM
HackTheBox - Haze write-up
> splunk CVE-2024-36991
> password spraying
> shadow credentials
> SeImpersonatePrivilege
#HackTheBox #CVE #infosec #Pentesting #redteam #Hacking
rexkyris.github.io/posts/haze/
HTB - Haze
by exploiting an lfi vulnerability in splunk, we will retrieve paul’s encrypted password inside authentication.conf file, after decrypting the password and spraying it, we find that the user mark is u...
rexkyris.github.io
August 30, 2025 at 9:42 PM
Beaconing From Browsers, chaining
> browser cache smuggling
> filefix
> com hijacking
For initial access and persistence.
#CyberSecurity #activedirectory #infosec #Pentesting #Hacking
rexkyris.github.io/posts/beacon...
Initial Access - Beaconing From Browsers
in todays blog post, i will chain browser cache smuggling, filefix and com-hijacking for initial access and persistence at the same time. the end objective of this chain is to make google chrome and m...
rexkyris.github.io
August 24, 2025 at 11:08 PM
Hackthebox - Scepter writeup.
> unauthenticated nfs share
> bruteforcing certificate password
> adcs esc14
> dcsync
rexkyris.github.io/posts/scepter/
#hackthebox #htb #pentesting #cybersecurity #hacking #infosec #activedirectory
HTB - Scepter
starting with an nfs share, we will grab pfx certificate files and use crackpkcs12 to recover their passwords, after recovering the password, we will use the certificate to authenticate to the domain ...
rexkyris.github.io
August 2, 2025 at 2:26 PM