VulnCicada
VulnCicada
VulnCicada 677
VulnCicada
RETIRED MACHINE

VulnCicada

VulnCicada - Windows Windows
VulnCicada - Medium Medium

3.9

MACHINE RATING

108

USER OWNS

110

SYSTEM OWNS

03/07/2025

RELEASED
Created by xct

Machine Synopsis

VulnCicada is a Medium Windows Active Directory machine that involves discovering a password inside an image on a public share. With that password an attacker is able to discover that the machine is vulnerable to ESC8 and can use Kerberos relaying to bypass self-relay restrictions in order to get a certificate as the machine account itself. With this new certificate, we are able to dump the hashes of the `Administrator` user and thus compromise the whole domain.

Machine Matrix

Ready to start your
hacking journey?