All latest news and releases on Hack The Box platforms.
New release
Product update
Exclusive

New exclusive Machines are available in Dedicated Labs.

jack avatar
Shared by jack • October 22, 2024

Three (3) new exclusive Machines landed in Dedicated Labs, focusing on CVE exploitation, Privilege Escalation, NTLM Relaying & SQL Server Abuse, and more!

Cup

Learn how to exploit multiple vulnerabilities in the CUPS printing system, from initial foothold via a crafted request to privilege escalation through remote printer creation. You’ll leverage these flaws for lateral movement, obtaining full system privileges by exploiting various CVEs and insecure configurations.

Slashed

Explore how an Apache Web Server vulnerability (CVE-2024-38472) leaks NTLMv2 hashes, which can then be relayed to escalate privileges via Microsoft SQL Server, showcasing the dangers of credential exposure and improper authentication mechanisms.

Peeps

Learn how to exploit an Apache ACL bypass vulnerability to gain SSH access with leaked credentials, and then see how Docker group access can be abused for privilege escalation, emphasizing the importance of securing access controls and container permissions.