Ok if I wasn’t already obsessed enough with GOAD, my addiction has deepened even more with NHA - Ninja Hacker Academy! It’s another lab you can spin up quickly with Ludus, and promises to be a good challenge:
NINJA HACKER ACADEMY (NHA) is written as a training challenge where GOAD was written as a lab with a maximum of vulns.
You should find your way in to get domain admin on the 2 domains (academy.ninja.lan and ninja.hack)
Starting point is on srv01 : 192.168.58.21
Flags are disposed on each machine, try to grab all. Be careful all the machines are up to date with defender enabled.
Some exploits needs to modify path so this lab is not very multi-players compliant (unless you do it as a team ;))
Obviously do not cheat by looking at the passwords and flags in the recipe files, the lab must start without user to full compromise.
In today’s Tuesday TOOLSday (CONTAINS SPOILERS!), I attempt to gain initial access to the NHA network starting with no creds!
-Brian
Share this post