
DCOMIllusionist
DCOM in memory and fileless lateral movement techniques through .Net deserilization
authenticationcommand-and-controlexploitation+7
293

DCOM in memory and fileless lateral movement techniques through .Net deserilization

HackTheBox TwoMillion machine writeup — API abuse, command injection & CVE-2023-0386

CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)

CVE-2025-33073

Generates meeting requests taking advantage of CVE-2023-23397. This requires the outlook thick client to send.

Kerberos relay framework for Windows environments enabling authentication relay, privilege escalation, and lateral movement via LDAP, SMB, HTTP, and…