HTB CAPE Review: I Passed the Final Boss, Then the Second Phase Started
My no-spoiler HTB CAPE review: final-boss energy, 15h+ days, RSI, PowerView over BloodHound, community, and why CAPE changed how I work in Active Directory.
THE NOTEBOOK
The Active Directory study notes and reflections from my HTB CAPE learning journey.
13 articles · Newest first
My no-spoiler HTB CAPE review: final-boss energy, 15h+ days, RSI, PowerView over BloodHound, community, and why CAPE changed how I work in Active Directory.
A practical look at Active Directory trust relationships, why misconfigurations matter, and how defenders can reduce cross-domain attack paths.
ADCS is a critical identity component. This article explains why certificate-service misconfigurations matter and how to think about detection, hardening, and risk.
Advanced DACL notes focused on misconfiguration impact, privilege paths, and how defenders can identify dangerous permissions.
An introduction to DACL security in Active Directory: permissions, abuse paths, and why access-control hygiene matters.
Kerberos security notes for Active Directory environments, covering ticket-based authentication concepts, common risks, and practical defensive awareness.
Windows lateral-movement concepts from a lab perspective, with emphasis on how movement paths are discovered, validated, and defended.
BloodHound-focused notes on mapping Active Directory relationships, finding attack paths, and turning graph data into useful remediation guidance.
CrackMapExec methodology for authorized network assessments: enumeration, validation, and responsible reporting without losing sight of defensive value.