Bug Bounty And Vuln HuntingVuln

HackTheBox DarkZero MSSQL lateral movement via Assume Breach credentials

April 4, 2026IppSec

IppSec walks through a HackTheBox chain using Assume Breach credentials to access MSSQL and enumerate linked servers, illustrating common enterprise pivot patterns defenders should model in detection and hardening.

HackTheBox - DarkZero
Running NetExec to test the Assume Breach credentials
connect to MSSQL
seeing a second MSSQL Server
IppSec
hacktheboxlab walkthroughmssqlhacktheboxmicrosoft

See what authorities are saying right now

This finding is one of many signals tracked across Cyber Security. The live feed updates every few hours with new authority voices, debates, and emerging ideas.

← Back to Cyber Security