Vulnlab Profile Banner
Vulnlab Profile
Vulnlab

@vulnlab_eu

Followers
4,463
Following
1,310
Media
62
Statuses
126

Labs & Training by @xct_de | | You are welcome to join the community @

EU
Joined September 2021
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
@vulnlab_eu
Vulnlab
1 year
Vulnlab just released a new Active Directory lab called Wutai! Like Shinra, it’s a simulated corporate environment with about 15 machines spread across multiple networks, domains & forests. The lab focuses on exploiting misconfigurations & users - not CVEs.
10
158
563
@vulnlab_eu
Vulnlab
9 months
A new Red Team Lab, Shiva, is coming to Vulnlab next week! This time you get to test a hardened Hybrid-AD environment that involves: - Hybrid-AD with 10+ machines & active users - Cloud exploitation - SIEM, EDR on Clients & Servers - Common enterprise software - No CVEs
Tweet media one
3
111
511
@vulnlab_eu
Vulnlab
2 months
They finally arrived 👀
Tweet media one
16
17
296
@vulnlab_eu
Vulnlab
1 year
Another Active Directory Chain by @xct_de is getting released on Thursday! This one is rated easy and once again inspired by a real pentest.
Tweet media one
2
31
224
@vulnlab_eu
Vulnlab
4 months
Hey Vulnlab Community! Just taking a moment to reflect on how far we've come together. It's been about a year since Vulnlab first launched, and now we've got around 100 vulnerable machines spread across 50 labs, 2300 Discord members and more than 700 lab users! The main focus
7
30
176
@vulnlab_eu
Vulnlab
21 days
The next Red Team Lab on Vulnlab will be released on August 8, 2024. This lab features over 10 machines and is rated Easy. The Active Directory environment mirrors what you typically encounter in penetration tests and is complemented by a robust SOC.
Tweet media one
3
40
175
@vulnlab_eu
Vulnlab
1 year
Prepare your debugger and expect to see some blue screens - Reaper is coming to Vulnlab this week!
Tweet media one
2
17
157
@vulnlab_eu
Vulnlab
3 months
An Active Directory Chain by @snowscan is arriving on Vulnlab this week! This one is rated "Insane" and completing it will teach some new tricks that you can use on your next engagement 🐛
Tweet media one
0
27
137
@vulnlab_eu
Vulnlab
1 month
Fresh Active Directory content is coming to Vulnlab this week! Don't miss "Phantom" by @_ar0x4 , launching tomorrow!
Tweet media one
1
20
135
@vulnlab_eu
Vulnlab
1 year
A new Active Directory machine is coming to Vulnlab on Thursday👀. This one is suited for the beginner to intermediate level and involves some nice concepts we didn't cover before!
Tweet media one
2
17
118
@vulnlab_eu
Vulnlab
2 months
A new beginner-friendly machine by @Fumenoid will be coming to the lab this week! Once again inspired by a real pentest!
Tweet media one
0
13
115
@vulnlab_eu
Vulnlab
1 year
Great walkthrough by @macz01590714 and @k0zmer on Reaper, a Windows binary exploitation focused machine on Vulnlab. It involves x64 userland exploitation (ASLR & DEP) and a kernel exploit targeting a custom driver.
0
33
109
@vulnlab_eu
Vulnlab
7 months
🚨 Kaiju Invasion in the lab! Get ready to face a medium-difficulty Active Directory chain this week. This one is once again inspired by a real engagement and involves 3 machines.
Tweet media one
1
23
106
@vulnlab_eu
Vulnlab
4 months
Just in time for @offensive_con Reaper2 will be released on Vulnlab! This one is rated "Insane" and features both browser & kernel exploitation on Windows. First🩸will get a lab voucher!
Tweet media one
3
15
106
@vulnlab_eu
Vulnlab
11 months
Delegate by @Geiseric4 is coming to Vulnlab this week! Expect some quality AD content 🔥
Tweet media one
5
20
102
@vulnlab_eu
Vulnlab
8 months
Happy New Year everyone and big thanks for all your support! We’re kicking off the new year with a medium-level Active Directory chain by @k0zmer . This one's packed with the kind of software and configurations you'd bump into in enterprise networks.
Tweet media one
2
12
100
@vulnlab_eu
Vulnlab
4 months
A new AD chain by @_ar0x4 is coming to Vulnlab on Monday 🔥 This one has both Linux & Windows machines and involves a pretty unique attack vector.
Tweet media one
2
13
101
@vulnlab_eu
Vulnlab
1 year
A new Active Directory machine by @0xr0BIT is coming to the lab this week! Retro is a beginner friendly machine that teaches something you can use on real engagements.
Tweet media one
4
14
97
@vulnlab_eu
Vulnlab
3 months
New video by @snowscan on Klendathu! In this one you'll learn about a lesser known method of coercing authentication from MSSQL, Mixed Vendor Kerberos Stacks & Domain Backup Keys!
4
25
98
@vulnlab_eu
Vulnlab
1 year
New windows machine coming soon! Job2 will be released next Tuesday at 17:00 UTC.
Tweet media one
1
10
94
@vulnlab_eu
Vulnlab
7 months
A new machine is coming to Vulnlab this week! Lock by @k0zmer & @xct_de is a beginner-friendly windows machine that covers some topics we saw on recent engagements.
Tweet media one
2
12
93
@vulnlab_eu
Vulnlab
1 year
Intercept by @xct_de is coming to the lab next Thursday! It’s rated hard and involves some AD concepts that are useful in real engagements but not often seen in labs. This puts the lab at over 50 machines!
Tweet media one
2
19
93
@vulnlab_eu
Vulnlab
11 months
Push by @k0zmer & @xct_de is coming to Vulnlab on Thursday! This Active Directory chain focuses on initial access & exploiting common enterprise software.
Tweet media one
1
14
91
@vulnlab_eu
Vulnlab
1 year
We just published the video walkthrough on Retro by @0xr0BIT ! Retro is one of the more beginner-friendly AD machines on Vulnlab - you'll learn about Pre-Created Computer Accounts & ADCS.
1
13
83
@vulnlab_eu
Vulnlab
5 months
A new AD chain is coming to Vulnlab tomorrow! Tengu by @0xr0BIT is a 3-machine chain with both Windows & Linux machines. It contains parts of a real-life assessment.
Tweet media one
0
9
82
@vulnlab_eu
Vulnlab
1 year
A new Active Directory Chain by @0xr0BIT & @xct_de is getting released today at 18:00 UTC. Can you get DA?
Tweet media one
4
10
82
@vulnlab_eu
Vulnlab
2 months
A new Active Directory chain is coming to Vulnlab this week! Heron will be released on June 13th - just in time for @x33fcon ! If you manage to solve it during the conference, swing by the @MantodeaSec booth for some swag.
Tweet media one
0
14
79
@vulnlab_eu
Vulnlab
5 months
We're welcoming Sendai, a new Active Directory machine, to the lab this week! This one got multiple paths to explore. Think you can exploit them all? Let's find out!
Tweet media one
0
11
79
@vulnlab_eu
Vulnlab
1 year
Great walkthrough by @secure_sec77 on one of our Windows lab machines. This one involves DLL Hijacking & Kerberos Relaying:
0
23
78
@vulnlab_eu
Vulnlab
6 months
A new machine is coming to Vulnlab this week! Sweep is a medium-rated Active Directory machine by @Yeeb_ that covers an interesting real-life attack vector.
Tweet media one
3
13
78
@vulnlab_eu
Vulnlab
9 months
Next up is an Active Directory Chain by @Geiseric4 ! Definitely worth diving into if you're up for a challenge!
Tweet media one
0
16
76
@vulnlab_eu
Vulnlab
1 year
New linux machine coming up! Bamboo will be released next Tuesday at 17:00 UTC.
Tweet media one
9
13
75
@vulnlab_eu
Vulnlab
9 months
This week it’s time for a beginner friendly machine - Forgotten is coming to Vulnlab tomorrow!
Tweet media one
1
15
72
@vulnlab_eu
Vulnlab
6 months
Time to escape🍹A new beginner-friendly machine will be arriving in the lab this week! This one requires some creative thinking & will test your language skills.
Tweet media one
0
14
73
@vulnlab_eu
Vulnlab
1 year
Control by @ATeamJKR is getting released on Thursday - this is the first full linux chain on Vulnlab!
Tweet media one
1
6
72
@vulnlab_eu
Vulnlab
8 months
It’s time for a new Linux machine - Race will be released tomorrow! Thank you @ATeamJKR for creating the machine!
Tweet media one
0
10
67
@vulnlab_eu
Vulnlab
30 days
A brand-new machine is coming to Vulnlab tomorrow! Watcher, created by @Dark___CaT and whatev3n, is a medium-difficulty Linux machine that combines recent vulnerabilities with a nice red teaming perspective.
Tweet media one
0
16
65
@vulnlab_eu
Vulnlab
11 months
A new machine is coming to the lab this week🎉Media by @csenox1 is getting released on Thursday and will teach some nice Windows tricks.
Tweet media one
0
11
62
@vulnlab_eu
Vulnlab
4 months
New ⛓️ hitting the lab tomorrow! This one consists of 3 machines and is pure Linux. Thank you @_kavigihan for creating it!
Tweet media one
1
3
59
@vulnlab_eu
Vulnlab
10 months
Thanks to all the @vulnlab_eu machine & challenge creators 💙 @secure_sec77 @ATeamJKR @macz01590714 @k0zmer @Geiseric4 @csenox1 @0xr0BIT VL is open for community submissions! If you want to contribute, reach out to @xct_de on discord.
1
8
58
@vulnlab_eu
Vulnlab
3 months
That was a really fun CTF - thank you everyone for playing & @hackthebox_eu for organizing! Congrats to @Synacktiv & @gmo_ierae !
@hackthebox_eu
Hack The Box
3 months
📣 Give it up to the brave ones who made it to the vault of hope 📣 #BusinessCTF24 has come to an end, and these are its champions: 🥇 @Synacktiv 🥈 GMO Cybersecurity by IERAE 🥉 @vulnlab_eu Thank you, everyone, for participating in the epic #CTF , and of course, stay tuned for
Tweet media one
0
5
53
0
1
57
@vulnlab_eu
Vulnlab
6 months
Both parts of the video walkthroughs for Kaiju are now out! Check them out if you want to learn about Filezilla, KeePass Plugins, Port Bending & ESC8! Thanks to @0xr0BIT for recording the 2nd part!
0
9
53
@vulnlab_eu
Vulnlab
10 months
It’s been a while since the last Linux machine so here we go - Slonik will be released on Thursday! This is the last machine before something “big” hits the lab soon :)
Tweet media one
0
7
53
@vulnlab_eu
Vulnlab
7 months
The walkthrough is now up! This one features Gitea Access Tokens, mRemoteNG & a nice vulnerability in PDF24 found by @sec_consult .
@vulnlab_eu
Vulnlab
7 months
A new machine is coming to Vulnlab this week! Lock by @k0zmer & @xct_de is a beginner-friendly windows machine that covers some topics we saw on recent engagements.
Tweet media one
2
12
93
0
8
50
@vulnlab_eu
Vulnlab
4 months
Together with Reaper2, we'll release a beginner-friendly box next week as well! Build is an "Easy" Linux machine that dives into CI/CD topics & legacy protocols seen again and again in production networks.
Tweet media one
0
14
48
@vulnlab_eu
Vulnlab
1 year
Atlas by @secure_sec77 is coming to Vulnlab on Thursday - prepare some ☕️ and join the action!
Tweet media one
0
10
46
@vulnlab_eu
Vulnlab
1 year
The journey continues.. We are looting stored browser passwords and then get access to an ESXi server. This allows us to hop onto a Bitwarden server where we backdoor the login page to get even more credentials.
0
5
46
@vulnlab_eu
Vulnlab
1 year
Next Wutai Video is up! We are reversing a small Windows binary to obtain a password and are using it to access ManageEngine. This then allows us to move laterally to a client machine.
0
7
44
@vulnlab_eu
Vulnlab
1 year
Sync, an easy Linux Box by @xct_de will be released today at 17:00 UTC.
Tweet media one
1
5
43
@vulnlab_eu
Vulnlab
1 year
And the last video on Wutai is out. We loot secrets from DPAPI and are then getting DA via Shadow Credentials. Like with Shinra, I won't show the rest of the lab so there is something left to explore on your own.
0
5
43
@vulnlab_eu
Vulnlab
5 months
Congrats @k0zmer , @_Sm1l3z & @Yeeb_ for getting the first bloods one this one! Thanks @0xr0BIT for building it :)
Tweet media one
@vulnlab_eu
Vulnlab
5 months
A new AD chain is coming to Vulnlab tomorrow! Tengu by @0xr0BIT is a 3-machine chain with both Windows & Linux machines. It contains parts of a real-life assessment.
Tweet media one
0
9
82
2
5
42
@vulnlab_eu
Vulnlab
1 year
Big congrats to... @macz01590714 @szymex73 @Jester_Hacks @CarlNykvist @Sh4NaC1 @k0zmer ...for being the first ones to complete the Shinra Lab by obtaining all 12 flags 🎉
1
3
38
@vulnlab_eu
Vulnlab
1 year
Congrats to @szymex73 & @macz01590714 for being the first ones to finish the new lab 🎉
2
1
37
@vulnlab_eu
Vulnlab
1 year
We just hit 1000 users on the Discord server - thank you everyone! 🎉
1
1
34
@vulnlab_eu
Vulnlab
1 year
Congrats @macz01590714 for getting both first bloods after just one day!
Tweet media one
4
1
32
@vulnlab_eu
Vulnlab
1 year
Congrats to @ATeamJKR for getting user & root first blood on Store!
Tweet media one
0
1
29
@vulnlab_eu
Vulnlab
1 year
Upon completion, you can earn a shiny badge :)
0
1
27
@vulnlab_eu
Vulnlab
13 days
Ifrit has been solved! Congrats on the first bloods @Geiseric4 @rootjaxk NLTE!
Tweet media one
0
5
27
@vulnlab_eu
Vulnlab
11 months
Great walkthrough by @k0zmer ! Push brings SCCM and ClickOnce applications to the lab.
@k0zmer
kozie
11 months
Push is a chain playable @vulnlab_eu made by myself and @xct_de , which focuses on initial access & exploiting common enterprise software. Walkthrough available here:
3
11
45
0
3
24
@vulnlab_eu
Vulnlab
1 year
Updated the website to show some more details & a short intro video on how the labs work.
2
2
23
@vulnlab_eu
Vulnlab
3 months
@Synacktiv Congrats :)
0
0
23
@vulnlab_eu
Vulnlab
9 months
There will be once again videos on big parts of the lab after it has been solved and some time has passed.
1
0
22
@vulnlab_eu
Vulnlab
1 year
New machine "Dump" is going live today! Thank you @ATeamJKR for creating this machine for Vulnlab! This is already the second jkr box on the platform 🍾
0
1
20
@vulnlab_eu
Vulnlab
9 months
The lab is now live and the first few flags have been found 🎉
Tweet media one
1
2
20
@vulnlab_eu
Vulnlab
5 days
Retro2 is making its way to the lab this Thursday! This Active Directory machine promises to be an easy yet nostalgic challenge that might stir up some memories.
Tweet media one
1
16
93
@vulnlab_eu
Vulnlab
1 year
What kind of content and labs do you want to see next? Please comment for other suggestions :)
Active Directory Chains
53
Large Red Team Labs
73
Linux Kernel Exploitation
18
Win Kernel Exploitation
24
4
2
12
@vulnlab_eu
Vulnlab
1 year
@0xr0BIT And another first blood for @ATeamJKR 🔥
1
2
11
@vulnlab_eu
Vulnlab
1 year
@ATeamJKR Congrats @k0zmer , @macz01590714 & NLTE for getting 🩸 on this one!
0
1
11
@vulnlab_eu
Vulnlab
11 months
Check out the @MantodeaSec booth at @brucon for a lab voucher! If you solve any machine before the conference ends you'll get a hoodie :)
1
0
8
@vulnlab_eu
Vulnlab
1 year
@0xr0BIT @xct_de Congrats partyparrot & @Pzz02 for getting first bloods on this one🎉
0
2
8
@vulnlab_eu
Vulnlab
1 year
And both bloods go to @szymex73 🔥 Congrats!
0
0
7
@vulnlab_eu
Vulnlab
1 year
@xct_de @ATeamJKR And congrats to @szymex73 for the root blood🩸
0
1
7
@vulnlab_eu
Vulnlab
1 year
@xct_de Congrats @ATeamJKR for getting the first 2 bloods🔥 One more up for grabs!
1
0
6
@vulnlab_eu
Vulnlab
1 year
@xct_de Congrats @ATeamJKR for both bloods 🔥
0
0
6
@vulnlab_eu
Vulnlab
11 months
@Geiseric4 And the 🩸 goes to @toonii_14 and @ATeamJKR . Good job! Thank you @Geiseric4 for creating the box!
0
1
4
@vulnlab_eu
Vulnlab
1 year
@ElsaWainblum Congrats🎉
1
0
3
@vulnlab_eu
Vulnlab
1 year
Congrats @ATeamJKR for both user & root bloods! 🔥
0
0
3
@vulnlab_eu
Vulnlab
1 year
0
0
2
@vulnlab_eu
Vulnlab
1 year
@l1v1n9h311 Probably around 30 - maybe a bit more.
1
0
1
@vulnlab_eu
Vulnlab
1 year
@Fumenoid Good idea!
0
0
1
@vulnlab_eu
Vulnlab
7 months
@RainAngel19 @k0zmer @xct_de There will be videos on all new releases :)
0
0
1
@vulnlab_eu
Vulnlab
11 months
@MantodeaSec @brucon Almost all hoodies gone👀
0
0
1
@vulnlab_eu
Vulnlab
1 year
@___t0___ Opened some new spots a bit earlier today :)
0
0
1