Nov. 1, 2023, 7:05 p.m. | Ryan Yager

System Weakness - Medium systemweakness.com

Today we will be looking at Domain Controller on HTB, machine is called Search. If you look at other writeups we are going to do this one differently and not utilize the p12 certificate because we did our proper enumeration beforehand.

Starting off with a scan of the open ports we find the following:

rustscan --ulimit 5000 -a 10.10.11.129 -- -Pn

We can see that HTTP and HTTPS is open, which is strange for a DC. Lets first grab the …

active directory security hacking hackthebox htb search

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)