HTB Writeup – Certificate
Posted on 2025-06-01
From SeManageVolumePrivilege to Golden Cert Attack
CVE-2025-24071 to spoof Windows File Explorer & ESC16 in ADCS
Privilege Escalation practise in a Windows Active Directory
From NTLM to Kerberos Relaying Attack, Spoofing UPNs to privesc
Windows AD CS exploitation for Red Teaming practise with ESC4
Red team exploitation on some pre-Windows 2000 “old” machine.
Red Teaming practice on GenericWrite with Targeted Kerberoasting Attack
Post-exploitation on AD CS, with PKINITtools and abusing ESC9