JobTwo
JobTwo
JobTwo 799
JobTwo
RETIRED MACHINE

JobTwo

JobTwo - Windows Windows
JobTwo - Hard Hard

5

MACHINE RATING

49

USER OWNS

46

SYSTEM OWNS

06/11/2025

RELEASED
Created by xct

Machine Synopsis

JobTwo is a hard-diffculty Windows machine that involves a macro phishing attack for initial foothold. The box has hMailServer installed, which includes a configuration file containing encrypted credentials for the database connection. After extracting the password database, we decrypt the SQL Server Compact database file (SDF), allowing a compromised user who can use WinRM to the machine. The machine has a vulnerable version of Veeam Backup & Replication; the attacker executes a malicious executable under `sqlserver.exe`, which is running as SYSTEM to gain full access.

Machine Matrix

Ready to start your
hacking journey?