<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://0x5chltz.github.io/</id><title>0x5chltz</title><subtitle>A minimal, responsive and feature-rich Jekyll theme for technical writing.</subtitle> <updated>2026-01-05T12:44:01+07:00</updated> <author> <name>Muhammad Sulthon Nurbahari</name> <uri>https://0x5chltz.github.io/</uri> </author><link rel="self" type="application/atom+xml" href="https://0x5chltz.github.io/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://0x5chltz.github.io/"/> <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator> <rights> © 2026 Muhammad Sulthon Nurbahari </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>HacktraceRanges - Nightforge</title><link href="https://0x5chltz.github.io/posts/htr-nightforge/" rel="alternate" type="text/html" title="HacktraceRanges - Nightforge" /><published>2025-10-24T00:00:00+07:00</published> <updated>2025-10-24T00:00:00+07:00</updated> <id>https://0x5chltz.github.io/posts/htr-nightforge/</id> <content type="text/html" src="https://0x5chltz.github.io/posts/htr-nightforge/" /> <author> <name>Muhammad Sulthon Nurbahari</name> </author> <category term="HacktraceRanges" /> <category term="Windows Easy" /> <summary>Overview NightForge is a machine that runs Windows with an Easy difficulty level. Performed network port/service discovery on target 10.1.2.172 to identify exposed services (SSH, SMB, RPC/Print Spooler, etc.). Enumerated SMB shares as an unauthenticated/guest user and downloaded files from a publicly readable PUBLIC share for analysis. Found a printer maintainer credential encoded in base64; de...</summary> </entry> <entry><title>HackTheBox - Backfire</title><link href="https://0x5chltz.github.io/posts/htb-backfire/" rel="alternate" type="text/html" title="HackTheBox - Backfire" /><published>2025-05-25T00:00:00+07:00</published> <updated>2025-05-25T00:00:00+07:00</updated> <id>https://0x5chltz.github.io/posts/htb-backfire/</id> <content type="text/html" src="https://0x5chltz.github.io/posts/htb-backfire/" /> <author> <name>Muhammad Sulthon Nurbahari</name> </author> <category term="HackTheBox" /> <category term="Linux Medium" /> <summary>Overview This engagement involved a comprehensive penetration test against target IP 10.10.11.49 to identify security vulnerabilities and potential privilege escalation paths within an infrastructure running multiple Command and Control (C2) frameworks. The testing focused on exploiting recently published vulnerabilities, analyzing insecure configurations, and demonstrating privilege escalatio...</summary> </entry> <entry><title>HackTheBox - Fluffy</title><link href="https://0x5chltz.github.io/posts/htb-fluffy/" rel="alternate" type="text/html" title="HackTheBox - Fluffy" /><published>2025-05-25T00:00:00+07:00</published> <updated>2025-05-25T00:00:00+07:00</updated> <id>https://0x5chltz.github.io/posts/htb-fluffy/</id> <content type="text/html" src="https://0x5chltz.github.io/posts/htb-fluffy/" /> <author> <name>Muhammad Sulthon Nurbahari</name> </author> <category term="HackTheBox" /> <category term="Windows Easy" /> <summary>Overview Fluffy is a Windows-based Active Directory environment that demonstrates the complete journey from limited access to full domain control through a series of interconnected vulnerability exploits. Starting with basic SMB credentials, I exploited unpatched CVE-2025-24071 to steal NTLM hashes, then compromised them through password spraying. BloodHound analysis uncovered a critical permi...</summary> </entry> <entry><title>HackTheBox - EscapeTwo</title><link href="https://0x5chltz.github.io/posts/htb-escapetwo/" rel="alternate" type="text/html" title="HackTheBox - EscapeTwo" /><published>2025-05-25T00:00:00+07:00</published> <updated>2026-01-03T23:57:15+07:00</updated> <id>https://0x5chltz.github.io/posts/htb-escapetwo/</id> <content type="text/html" src="https://0x5chltz.github.io/posts/htb-escapetwo/" /> <author> <name>Muhammad Sulthon Nurbahari</name> </author> <category term="HackTheBox" /> <category term="Windows Easy" /> <summary>Overview EscapeTwo is a Windows-based Active Directory environment demonstrating common security misconfigurations including credential exposure, insecure certificate template configurations, and privilege escalation vectors through DACL modification. The path to domain compromise involves MSSQL service account compromise, certificate template manipulation, and shadow credential attacks. Recon...</summary> </entry> <entry><title>HackTheBox - Heal</title><link href="https://0x5chltz.github.io/posts/htb-heal/" rel="alternate" type="text/html" title="HackTheBox - Heal" /><published>2025-05-15T00:00:00+07:00</published> <updated>2025-05-19T13:45:43+07:00</updated> <id>https://0x5chltz.github.io/posts/htb-heal/</id> <content type="text/html" src="https://0x5chltz.github.io/posts/htb-heal/" /> <author> <name>Muhammad Sulthon Nurbahari</name> </author> <category term="HackTheBox" /> <category term="Linux Medium" /> <summary>Overview Heal is a machine that runs Linux with a Medium difficulty level. Demonstrates a multi-layered attack surface involving web application vulnerabilities, credential reuse, and privilege escalation via exposed services. The engagement began with subdomain enumeration and culminated in full root access through a chain of exploits targeting Ruby on Rails, LimeSurvey, and HashiCorp Consul. ...</summary> </entry> </feed>
