Blog

  • 15th December 2025

TombWatcher writeup

TombWatcher is a Windows Active Directory box that involves lateral movement through multiple user accounts, Kerberoasting, shadow credential attacks, and certificate template abuse. We will perform BloodHound enumeration, set a service principal name for Alfred, Kerberoast to obtain Alfred’s hash, then leverage GenericAll permissions to manipulate SAM, John, and CERT_ADMIN accounts, finally using ESC1 vulnerability to request a certificate as the domain administrator.

Read more 
  • 13th December 2025

MILCTF2025 writeups

Hi, here are the writeups for the challenges I’ve made for the Military CTF 2025

Read more 
  • 1st December 2025

How to add GPU passthrough support to QubesOS

I found a way to use GPU in your QubesOS VMs. Now cracking/rendering on Qubes might be more realistic than ever.

Read more 
  • 15th November 2025

Moving files to and from your phone in Qubes OS

This is a repost of a beautiful parulin’s post with minor additions. Helpful if your phone doesn’t mount to the VMs using standard options

Read more 
  • 28th October 2025