Skip to main content
taktak.hu

Archive

Browse case studies

Reviewed, evidence-based case studies from Hack The Box machines and Sherlocks, covering Windows, Linux, DFIR and SOC work where available. Search or filter by category and topic.

Case-study explorer

72 published case studies. Narrow by focus or keyword.

Showing 12 of 72

Linux machine

Principal

A Medium Linux Hack The Box machine where a pac4j-jwt JWE authentication bypass opens the dashboard, the exposed encryption key doubles as an SSH password, and a leaked SSH CA private key yields root.

htblinuxmachinejwt
DFIR / Sherlock

HTB Sherlock: Holmes 2025 2: The Watchman's Residue

DFIR notes from a medium-difficulty Sherlock where a decommissioned host was used to prompt-inject an MSP helpdesk AI, then remotely access a workstation to dump credentials, add persistence, and exfiltrate files.

dfirsocwindowsthreat-hunting
Linux machine

Broker — ActiveMQ OpenWire RCE and Unsafe Daemon Sudo

An Apache ActiveMQ deployment with a vulnerable OpenWire service and default console credentials yields a service-account shell; unrestricted nginx sudo enables a root file-write path.

linuxactivemqsudoconfiguration-security