LazyTitan (@lazytitan33) 's Twitter Profile
LazyTitan

@lazytitan33

Pentester | eWPTXv2 | eCPTXv2 | eCPPTv2 | CNPen | eWPT | eJPT

ID: 495341216

linkhttps://github.com/LazyTitan33 calendar_today17-02-2012 21:22:34

1,1K Tweet

1,1K Followers

312 Following

LazyTitan (@lazytitan33) 's Twitter Profile Photo

Here are my writeups for this year's Snyk Fetch the Flag 2025 #FetchTheFlag. I don't think there would be any big surprises, but let me know if you had alternative solutions to any of them: github.com/LazyTitan33/CT…

LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Cypher on Hack The Box! I almost forgot today is Saturday so I started a bit later but this was a nice and interesting box. I liked the new stuff we had to exploit. Kinda easy though. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

I just pwned Cypher on <a href="/hackthebox_eu/">Hack The Box</a>! I almost forgot today is Saturday so I started a bit later but this was a nice and interesting box. I liked the new stuff we had to exploit. Kinda easy though. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
LazyTitan (@lazytitan33) 's Twitter Profile Photo

#FetchTheFlag 2025 was a great #CTF by Snyk and I'm overjoyed to see some of my writeups posted here by them. Thank you very much. If you're not using their vscode extension or cli tool, you definitely should. Also, always search their website for CVEs and other vulns!!!

LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Dog on Hack The Box! Super easy. It's good to have these from time to time. It makes for a relaxing weekend & doesn't take too much time away from family/SO 😅 #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

I just pwned Dog on <a href="/hackthebox_eu/">Hack The Box</a>!  Super easy. It's good to have these from time to time. It makes for a relaxing weekend &amp; doesn't take too much time away from family/SO 😅 #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
Project Sekai CTF (@projectsekaictf) 's Twitter Profile Photo

🎁Monthly Giveaway🎁 Hack The Box 1-year VIP+ & 3-month Prolab - Follow, Like, and Retweet to join! - Winners will be picked randomly on 18 Mar. #hackthebox #giveaway #projectsekaictf

🎁Monthly Giveaway🎁

Hack The Box 1-year VIP+ &amp; 3-month Prolab
- Follow, Like, and Retweet to join!
- Winners will be picked randomly on 18 Mar. 

#hackthebox #giveaway #projectsekaictf
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned TheFrizz on Hack The Box ! In 4 years, this is the first time I'm getting #Blood on a machine. Feel good!!! This was a great machine that requires careful enumeration. For now this also puts me in 1st in the season leaderboard #HackTheBox #htb #CyberSecurity

I just pwned TheFrizz on <a href="/hackthebox_eu/">Hack The Box</a> !  In 4 years, this is the first time I'm getting #Blood on a machine. Feel good!!! This was a great machine that requires careful enumeration. For now this also puts me in 1st in the season leaderboard #HackTheBox #htb #CyberSecurity
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Code on Hack The Box! I was much slower this week. I'm a bit disappointed in myself but I guess my brain is a bit mush from CyberApocalypse. In any case, didn't like the foothold, not realistic. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

I just pwned Code on <a href="/hackthebox_eu/">Hack The Box</a>! I was much slower this week. I'm a bit disappointed in myself but I guess my brain is a bit mush from CyberApocalypse. In any case, didn't like the foothold, not realistic.   #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
LazyTitan (@lazytitan33) 's Twitter Profile Photo

Good news, a CVE ID was assigned and soon there will be something published about it. It's a nice little finding. It will be my first CVE and I'm happy it will make the internet and some companies a little safer 😁🎉

LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Haze on Hack The Box! I thoroughly enjoyed this box. It takes good enumeration and lots of lateral movement. Keep your eye on the ball, don't stray to far from the path and you'll easily get there. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec

I just pwned Haze on <a href="/hackthebox_eu/">Hack The Box</a>! I thoroughly enjoyed this box. It takes good enumeration and lots of lateral movement. Keep your eye on the ball, don't stray to far from the path and you'll easily get there.  #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned WhiteRabbit on Hack The Box! I have to be honest, I didn't like this box. It wasn't because of the difficulty. There were just parts of it that weren't fun for me, design wise. But overall it was my best season so far. Great experience! #HackTheBox #HTB

I just pwned WhiteRabbit on <a href="/hackthebox_eu/">Hack The Box</a>! I have to be honest, I didn't like this box. It wasn't because of the difficulty. There were just parts of it that weren't fun for me, design wise. But overall it was my best season so far. Great experience!  #HackTheBox #HTB
LazyTitan (@lazytitan33) 's Twitter Profile Photo

Finished 13th in Season 7 from Hack The Box. This is a personal record for me in major part due to the root blood I got. Best season so far. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Finished 13th in Season 7 from <a href="/hackthebox_eu/">Hack The Box</a>. This is a personal record for me in major part due to the root blood I got. Best season so far. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Scepter on Hack The Box! This one was fun. Battled through it until I got user eventually but I got hard stuck on root privesc. Thanks to serioton I was able to push through and get it done. Much appreciated. #HackTheBox #htb #CyberSecurity #EthicalHacking

I just pwned Scepter on <a href="/hackthebox_eu/">Hack The Box</a>! This one was fun. Battled through it until I got user eventually but I got hard stuck on root privesc. Thanks to <a href="/seriotonctf/">serioton</a> I was able to push through and get it done. Much appreciated. #HackTheBox #htb #CyberSecurity #EthicalHacking
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Eureka on Hack The Box! Getting the user was fun, just some regular enumeration at first, reading some blog and docs, then a lot of fiddling with the payload to get the callback. Root privesc was too easy. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec

I just pwned Eureka on <a href="/hackthebox_eu/">Hack The Box</a>! Getting the user was fun, just some regular enumeration at first, reading some blog and docs, then a lot of fiddling with the payload to get the callback. Root privesc was too easy. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec
LazyTitan (@lazytitan33) 's Twitter Profile Photo

During an engagement, I was pwd spraying with Beau Bullock's tool and later, after getting DA through other means, I realized that it didn't find an Expired Password for a Domain Admin. I made a PR. It now filters based on LDAP codes. Hope you like it. github.com/LazyTitan33/Do…

During an engagement, I was pwd spraying with <a href="/dafthack/">Beau Bullock</a>'s tool and later, after getting DA through other means, I realized that it didn't find an Expired Password for a Domain Admin.  I made a PR. It now filters based on LDAP codes. Hope you like it. 
github.com/LazyTitan33/Do…
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Puppy on Jamie! This was a fun Assumed Breach scenario. The box is well designed and satisfying to complete. I should've finished it quicker but I was enumerating in the wrong place. A 🐰hole of my own. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec

I just pwned Puppy on <a href="/hackthebox/">Jamie</a>!  This was a fun Assumed Breach scenario. The box is well designed and satisfying to complete. I should've finished it quicker but I was enumerating in the wrong place. A 🐰hole of my own. #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec
Yuval Gordon (@yug0rd) 's Twitter Profile Photo

Many missed this on #BadSuccessor: it’s also a credential dumper. I wrote a simple PowerShell script that uses Rubeus to dump Kerberos keys and NTLM hashes for every principal-krbtgt, users, machines. no DCSync required, no code execution on DC.

LazyTitan (@lazytitan33) 's Twitter Profile Photo

Ranked #1 in Romania on Hack The Box today. It takes consistency & perseverance. I hope more skilled Romanian hackers get active—HTB is an amazing place to learn and practice. What are you waiting for?! #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Ranked #1 in Romania on <a href="/hackthebox_eu/">Hack The Box</a> today. It takes consistency &amp; perseverance. I hope more skilled Romanian hackers get active—HTB is an amazing place to learn and practice. What are you waiting for?!
#HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting
LazyTitan (@lazytitan33) 's Twitter Profile Photo

Excellent article from Synacktiv detailing CVE-2025-33073. It's an easy peasy LPE on any server where SMB signing is not enforced. I have already replicated it and works a charm. If you still aren't enforcing SMB signing... what are you doing?! Harden your environment & patch!

Excellent article from <a href="/Synacktiv/">Synacktiv</a> detailing CVE-2025-33073. It's an easy peasy LPE on any server where SMB signing is not enforced. I have already replicated it and works a charm. If you still aren't enforcing SMB signing... what are you doing?! Harden your environment &amp; patch!
LazyTitan (@lazytitan33) 's Twitter Profile Photo

Just pwned Sorcery on Hack The Box! This box is insanely complex—not just the attack chain, but the whole setup Dimitrie-Toma Furdui crafted. Couldn’t have done it solo. Don’t try alone—team up and bring the patience of a dozen saints. #HackTheBox #HTB #CyberSecurity #EthicalHacking

Just pwned Sorcery on <a href="/hackthebox_eu/">Hack The Box</a>! This box is insanely complex—not just the attack chain, but the whole setup <a href="/tomadimitrie/">Dimitrie-Toma Furdui</a> crafted. Couldn’t have done it solo. Don’t try alone—team up and bring the patience of a dozen saints. #HackTheBox #HTB #CyberSecurity #EthicalHacking