
Offline-first dashboard for tracking CTF machines and labs, with attack lifecycle management, dynamic reverse shell builder, and embedded writeup studio for HTB and THM.
929 Machines (415 HTB Retired + 514 THM CTF) · Daniel Dayan's 55 Verified Solves · 100% HTB & THM ToS Compliant
⭐️ If you find ZeroBox useful, please consider giving it a star on GitHub! It helps support ongoing development and community features. ⭐️
ZeroBox is a high-performance, cybersecurity-themed dashboard engineered for penetration testers, security researchers, and CTF competitors targeting Hack The Box (HTB), TryHackMe (THM), and custom offline labs.
Built with an offline-first architecture (Zustand + LocalStorage/IndexedDB), zero backend dependency, and instantaneous command palette (Ctrl+K) navigation.
Target BacklogActive Recon (Port & service discovery)Foothold Obtained (Initial user shell)System Pwned (Root / SYSTEM flag captured)Completed & Logged (Retired / writeup archived)••••••••) with one-click copy and instant verification.Time-to-User and Time-to-Root metrics.LHOST, LPORT, TARGET_IP, INTERFACE) dynamically interpolate into all commands simultaneously!nmap, masscan, rustscan)ffuf, gobuster, feroxbuster, nikto, wpscan)sqlmap, LFI wrappers, one-liners).md files into Obsidian vaults or GitBook documentation repositories.#0B0F19), Slate Cards (#111827), Glowing Emerald (#10B981 HTB), Crimson (#EF4444 THM), Cyan (#06B6D4 Tech), and Purple (#8B5CF6 AD).# Clone the repository
git clone https://github.com/xXDNDXx/ctf-tracker.git
cd ctf-tracker
# Install dependencies
npm install
# Start local development server
npm run dev
# Build production bundle
npm run build
# Preview production build locally
npm run preview
ZeroBox is designed, engineered, and maintained by Daniel Dayan (@xXDNDXx) — Cybersecurity Researcher, Penetration Tester, and Offensive Security Architect.
ZeroBox is engineered to strictly uphold the Terms of Service, Acceptable Use Policies, and Community Guidelines of Hack The Box (HTB) and TryHackMe (THM):
THM{flag_captured_daniel_dayan}) rather than raw live challenge flags.zerobox_vault_db).ZeroBox is an independent open-source tracking and educational dashboard created by Daniel Dayan. ZeroBox is not affiliated with, endorsed by, sponsored by, or associated with Hack The Box Ltd or TryHackMe Ltd. "Hack The Box", "HTB", "TryHackMe", and "THM" are trademarks or registered trademarks of their respective owners. All target metadata, room links, and writeup hyperlinks are referenced solely for non-commercial educational tracking and study under fair use.
ZeroBox is released under the ZeroBox Source-Available Non-Commercial & Educational License (ZNSL 1.0).
Copyright © 2026 Daniel Dayan (@xXDNDXx). All Rights Reserved.
For the full legal text, see the official LICENSE file.
Ctrl+K): Jump to any box, cheatsheet command, or execute actions from anywhere.msfvenomLinPEAS, SUID, getcap, sudo -l)BloodHound, PowerView, Mimikatz, impacket, NetExec, Evil-WinRM)Chisel, SSH Dynamic Forwarding, Ligolo-ng, socat relays)python3 http, certutil, powershell, smbserver)| Channel | Identifier | Link |
|---|
| 🌐 Official Portfolio | Daniel Dayan Security & Research | xXDNDXx.github.io |
| 💼 LinkedIn Profile | daniel-dayan-a66322352 | Connect on LinkedIn |
| 💻 GitHub Repositories | @xXDNDXx | Follow on GitHub |
| 📝 CTF Write-ups & Docs | THM & HTB Research Vault | Read GitBook Writeups |
| ☕ Buy Me a Coffee | xxdndxx | Support on Buy Me a Coffee |
| Permission / Restriction | Status | Details |
|---|
| Personal & Educational Use | ✅ ALLOWED | You may inspect, clone, build, and use ZeroBox locally for individual study, practice labs, and CTF preparation. |
| Commercial Exploitation | ❌ FORBIDDEN | You may NOT sell, rent, monetize, sub-license, or charge fees for this platform or any portion thereof. |
| Public Re-Publishing / SaaS | ❌ FORBIDDEN | You may NOT host a public web instance, re-publish, or distribute modified copies under your name without written consent. |
| Course Bundling / Paid Training | ❌ FORBIDDEN | You may NOT include ZeroBox in any paid course, bootcamp, or commercial subscription service. |
| Attribution Requirement | ⚠️ MANDATORY | All permitted educational mentions or references must prominently cite Daniel Dayan (xXDNDXx.github.io). |