
HTB_Nexus Penetration Test Report – Comprehensive security assessment documenting credential leakage from Gitea, CVE-2026-38526 exploitation in Krayin CRM, and privilege escalation via Gitea template sync directory traversal. Mapped to MITRE ATT&CK and NSA D3FEND frameworks with actionable remediation roadmap and full evidence appendix.
This repository contains a comprehensive penetration test report for the Hack The Box machine Nexus.
3290dde5fca195ea451632d54d4b60dac25914b5b518500d1c71da5c8331ac9dView the complete report: Nexus.md