// htb writeup HackTheBox 2026-05-24
Garfield
HackTheBox Hard HackTheBox
seasonal
root obtained // PWNED

🐱 Garfield

Difficulty: Hard OS: Windows Release: HTB Season 10

An Active Directory box that takes you through RODC abuse from start to finish. The early chain is straightforward BloodHound enumeration work — the interesting part starts when you land on the RODC and have to understand what makes a Read-Only Domain Controller’s krbtgt key different, and how the Key List attack turns RODC-level access into full domain compromise. Not many boxes make you touch this corner of AD.


📸 Proof


🧠 Concepts Covered


💡 Hints (No Spoilers)

Foothold

User

Root


📚 Useful Reading