Shop
Two ways to grab something good - Solvere Labs merch, and curated Bundle alerts.
Practical, hands-on cybersecurity - walkthroughs for TryHackMe, HackTheBox, and VulnHub machines, alongside tutorials, projects, and a curated set of learning resources. Everything here is written to be followed step by step.
Step-by-step guides for building practical, hands-on security skills.
67 entries ExploreDetailed walkthroughs for TryHackMe, HackTheBox, and VulnHub machines.
315 entries ExploreLong-running builds, home labs, and hands-on experiments.
Coming soon ExploreA curated collection of tools, books, and references for learning security.
Coming soon ExploreTwo ways to grab something good - Solvere Labs merch, and curated Bundle alerts.
Solvere Labs is free to read, and it always will be. If a write-up here saved you time, this is an easy way to chip in.
Have a CTF write-up worth sharing? Submit it to Solvere Labs and get your name and profile on the byline.
The Mr. Robot virtual machine (VM) is an exciting challenge inspired by the hit TV series Mr. Robot. It features three hidden keys, progressively increasing in difficulty.
Today we are solving another easy-rated TryHackMe machine called TheStickerShop.
The Windows-native ways to pull a file when you have a shell on a Windows host: certutil, bitsadmin, PowerShell Invoke-WebRequest, WebClient, and the in-memory IEX cradle, with an honest look at how defenders see each one.
Move files to and from a Windows target over SMB: stand up a share with impacket-smbserver, then pull, run, and push back with native copy / net use or smbclient. Quick reference with a modular cheat sheet and per-command breakdowns.
The scp and sftp quick reference: flags, a modular copy-paste cheat sheet, and a worked breakdown of every real transfer. Upload and download, copy a directory with -r, authenticate with a recovered key, hop through a jump host, pipe over ssh when scp is missing, and verify with a checksum.
Today we are solving another Linux-based TryHackMe machine called Oh My WebServer. This machine focuses on exploiting vulnerable web services, container breakout-style enumeration,
The netcat file-transfer quick reference: flags, a modular cheat sheet, and worked breakdowns. Listen and save, connect and send, close cleanly with -N or -q0, stream a directory with tar, encrypt with socat OPENSSL, fall back to bash /dev/tcp when nc is missing, and checksum to catch truncation.
Today we are investigating another TryHackMe Defensive Security challenge where we are provided with Windows event logs that have already been ingested into Splunk.
The HTTP file-transfer quick reference: serve a folder from your attacker box in one line, then pull files onto the target with wget, curl, certutil, PowerShell, or curl.exe. Flags, a modular cheat sheet, in-memory execution, upload-back with updog, checksum verification, and beating egress filters by serving on 80 or 443.
The file-transfer quick reference: the serve-and-pull vs push-and-receive decision, a modular copy-paste cheat sheet, and a worked breakdown of every method. Serve a folder over HTTP, pull with wget or certutil, host an SMB share, move a file with netcat or socat, copy over scp, paste a base64 blob, and checksum both ends.
The base64 file-transfer quick reference: flags, a modular copy-paste cheat sheet, and a worked breakdown of every real situation. Encode a file to one pasteable line, decode it with a heredoc, move files with certutil or PowerShell on Windows, chunk a blob too long to paste, and checksum both ends to prove it arrived intact.
Today we are solving another Defensive Security challenge from TryHackMe called Carnage. In this challenge we are provided with a packet capture (PCAP) file from a real-world malwa
Today we are solving another TryHackMe machine called Break Out The Cage, a Linux-based challenge inspired by Nicolas Cage. The machine contains multiple stages including anonymous
The infamous cosmic hacker Super-spam has returned. Originating from the planet Alpha Solaris IV, Super-spam's mission is to eliminate Linux systems across the galaxy and replace t
This challenge focuses on bypassing PHP security restrictions, specifically the disablefunctions directive commonly configured in hardened PHP environments.
Today we are solving another TryHackMe machine named TechSupport.
One of the employees at Lockman Group reported that all of his files had suddenly been renamed with an unfamiliar extension. After a quick inspection, the IT department suspected r
We are working as a SOC Analyst for an MSSP called TryNotHackMe.
We are presented with a Linux machine that heavily relies on automation pipelines.
Today we are solving another TryHackMe machine named DevelPy.
Today we solved a very easy TryHackMe challenge focused on IDOR (Insecure Direct Object Reference).
Today we are investigating a ransomware incident involving Conti Ransomware, one of the most notorious Ransomware-as-a-Service (RaaS) operations.
It is a Friday evening at PandaProbe Intelligence when SwiftSpend Finance submits an urgent threat intelligence request.
The FTP server contained no useful files.
Based on threat intelligence reports, an APT group known as IronShade has been actively targeting Linux servers across the region.
Type to search · / or Ctrl+K to open · ↑↓ to move · Enter to open · Esc to close