
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Bukhari&#39;s Archive </title>
      <link>https://b3ta-blocker.github.io/blog</link>
      <description>A hands-on hacking blog covering penetration testing walkthroughs by Hassaan Ali Bukhari.</description>
      <language>en-us</language>
      <managingEditor>root.b3ta.blocker@gmail.com (Hassaan Ali Bukhari)</managingEditor>
      <webMaster>root.b3ta.blocker@gmail.com (Hassaan Ali Bukhari)</webMaster>
      <lastBuildDate>Thu, 13 Nov 2025 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://b3ta-blocker.github.io/tags/windows/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://b3ta-blocker.github.io/blog/blue</guid>
    <title>EternalBlue (MS17-010) — Windows 7 SP1 Exploitation Walkthrough</title>
    <link>https://b3ta-blocker.github.io/blog/blue</link>
    <description>Compromise of a Windows 7 SP1 lab machine by exploiting the MS17-010 EternalBlue SMB vulnerability via Metasploit to obtain a SYSTEM-level Meterpreter shell and extract password hashes, followed by a manual exploitation attempt using AutoBlue that resulted in a BSOD.</description>
    <pubDate>Thu, 13 Nov 2025 00:00:00 GMT</pubDate>
    <author>root.b3ta.blocker@gmail.com (Hassaan Ali Bukhari)</author>
    <category>windows</category><category>easy</category><category>ms17-010</category><category>eternalblue</category>
  </item>

  <item>
    <guid>https://b3ta-blocker.github.io/blog/butler</guid>
    <title>Butler Machine (TCM Security) — Step-by-Step Walkthrough</title>
    <link>https://b3ta-blocker.github.io/blog/butler</link>
    <description>Compromise of a Windows machine via Jenkins default credentials and Groovy script RCE, followed by privilege escalation through an unquoted service path vulnerability in the WiseBootAssistant service.</description>
    <pubDate>Fri, 05 Dec 2025 00:00:00 GMT</pubDate>
    <author>root.b3ta.blocker@gmail.com (Hassaan Ali Bukhari)</author>
    <category>windows</category><category>jenkins</category><category>privilege-escalation</category>
  </item>

  <item>
    <guid>https://b3ta-blocker.github.io/blog/fluffy</guid>
    <title>Fluffy Machine (HackTheBox) — Step-by-Step Walkthrough</title>
    <link>https://b3ta-blocker.github.io/blog/fluffy</link>
    <description>Compromise of a Windows HackTheBox Active Directory machine by exploiting CVE-2025-24071 via a malicious library-ms file to capture NTLM hashes via Responder, abusing GenericWrite permissions through BloodHound enumeration to perform Shadow Credential attacks, and escalating to Domain Admin by exploiting an ESC16 ADCS misconfiguration with Certipy.</description>
    <pubDate>Thu, 10 Jul 2025 00:00:00 GMT</pubDate>
    <author>root.b3ta.blocker@gmail.com (Hassaan Ali Bukhari)</author>
    <category>windows</category><category>hackthebox</category><category>easy</category><category>active-directory</category><category>cve-2025-24071</category><category>privilege-escalation</category>
  </item>

    </channel>
  </rss>
