This is the writeup for the Certificate.htb machine on HackTheBox. It's also a best example for the weaponized vscode project.
- visiting core markdown files:
- try with vscode command palette (cmd/ctrl + shift + p):
with command prefix: weapon, you can try:
weapon management: List/Dump all hostsweapon management: List/Dump all usersweapon management: Switch/Set current hostand look your terminalweapon management: Switch/Set current userand look your terminalweapon task: Create msfvenom payloadweapon foam: Show graphweapon foam: Create/New note (user/host/service) from foam templateand try the report.js to generate the final report.
... and more