✦ The Restricted Section ✦

Published Tomes

Forbidden scrolls shared with the wizarding world

📚
22
Total Scrolls
22
🏠 Hosted Here
Sabastiaz.github.io Certification
Passed OffSec Experienced Penetration Tester (OSEP) with secret.txt
The journey, struggles, and victory of passing one of OffSec's most demanding exams - OSEP.
Read Scroll →
Sabastiaz.github.io Certification
My Journey Through CPTS 100%
A full account of completing the Hack The Box Certified Penetration Testing Specialist path with 100% completion.
Read Scroll →
My OSCP Journey - Triple Attempts
Sabastiaz.github.io Certification
My OSCP Journey - Triple Attempts
An honest chronicle of three OSCP attempts - what went wrong, what was learned, and how victory was finally achieved.
Read Scroll →
Sabastiaz.github.io Certification
CRTA Exam: One Night Miracle
How a single relentless night led to passing the Certified Red Team Analyst examination - a tale of grit and focus.
Read Scroll →
Sabastiaz.github.io Certification
I Passed the Tenable Vulnerability Management Specialist Exam on My First Attempt!
First-attempt success on the Tenable.VM Specialist exam - strategy, preparation, and key takeaways.
Read Scroll →
Sabastiaz.github.io Pentest
From MSSQL to Domain Compromise: A Practical Attack Path in Active Directory (HTB Signed)
A practical walkthrough of chaining MSSQL vulnerabilities into full Active Directory domain compromise on Hack The Box.
Read Scroll →
Sabastiaz.github.io Lab Review
Mail Service Lab: Extreme Red Team LAB Review
A detailed expedition log through the Mailservice dungeon within the Extreme Red Team Laboratories - mapping attack paths and cataloguing key learnings.
Read Scroll →
Sabastiaz.github.io Experience
First Time at the Tenable Guardian Summit 2025
Reflections from attending the Tenable Guardian Summit 2025 - insights, networking, and the experience of the industry gathering.
Read Scroll →
Sabastiaz.github.io Journey
Achievement 2025
A year-in-review scroll chronicling the certifications earned, labs conquered, and milestones reached throughout 2025.
Read Scroll →
Sabastiaz.github.io Certification
เตรียมตัวสอบ OSCP ยังไงให้ผ่านแบบไร้ข้อกังวล
คู่มือเตรียมสอบ OSCP ฉบับครบถ้วน - แนวทางการเรียน, การลงแล็บ, และเทคนิคในห้องสอบ
Read Scroll →
Sabastiaz.github.io Philosophy
ความยากที่พอดี คือความสนุกของ CTF
ว่าด้วยความสนุกของการแก้โจทย์ CTF และมุมมองต่อความท้าทายในโลกของ Offensive Security
Read Scroll →
Sabastiaz.github.io Philosophy
เมื่อคำว่า "เก่ง" ไม่ได้หมายถึงคนที่ไม่เคยพลาด แต่คือคนที่ลุกขึ้นมาได้เสมอ
บทความเชิงปรัชญาว่าด้วยความหมายที่แท้จริงของความสามารถ และพลังของการลุกขึ้นหลังล้มเหลว
Read Scroll →
Secplayground Half Year CTF Event 2024 - Forensic File Hunt (Medium)
🏠 Hosted Here CTF
Secplayground Half Year CTF Event 2024 - Forensic File Hunt (Medium)
Write-up for the Forensic File Hunt challenge at Secplayground's Half Year CTF Event 2024, walking through the investigation steps and findings.
Read Scroll →
แก้โจทย์ Thailand Top Talent 2025 หมวด Network ด้วย ChatGPT {OPEN}
🏠 Hosted Here CTF
แก้โจทย์ Thailand Top Talent 2025 หมวด Network ด้วย ChatGPT {OPEN}
บันทึกการแก้โจทย์ Network Challenge ในการแข่งขัน Thailand Top Talent 2025 โดยใช้ ChatGPT ช่วยวิเคราะห์
Read Scroll →
Sec Playground Hackloween 2025: Anabelle's Secret
🏠 Hosted Here CTF
Sec Playground Hackloween 2025: Anabelle's Secret
Write-up for the Anabelle's Secret challenge at Sec Playground's Hackloween 2025 CTF - uncovering the mystery one flag at a time.
Read Scroll →
[WRITE UP] Scenario 2 Part 2: Dark Web Monitoring
🏠 Hosted Here CTF OSINT
[WRITE UP] Scenario 2 Part 2: Dark Web Monitoring
Hack the Scammer scenario write-up covering dark web monitoring techniques, OSINT investigation, and threat actor tracking methodology.
Read Scroll →
🏠 Hosted Here Red Team PrivEsc
🥔 RustPotato - Privilege Escalation via SeImpersonate
Rust implementation ของ GodPotato - ใช้ abuse SeImpersonatePrivilege ผ่าน DCOM/RPC เพื่อยกระดับสิทธิ์ขึ้นเป็น NT AUTHORITY\SYSTEM พร้อม built-in reverse shell และ Indirect NTAPI
Read Scroll →
Sabastiaz.github.io Travel
Singapore Seven Day (ฉบับโม้ไปเรื่อย)
ผมอยากมาเล่า (มาโม้) ประสบการณ์ไป Singapore เป็นเวลา 7 วัน ว่าไปทำอะไรมาบ้าง แอบสปอยมีไปงาน Black Hat Asia and DefCon SG1 ด้วยนะ
Coming Soon
🏠 Hosted Here Life Reflection
เมื่อสมองยังไหว แต่ร่างกายเริ่มทวงคืน
ว่าด้วยการฟื้นตัว ความสมดุล และความจริงที่มองข้ามมาหลายปี - เมื่อความสามารถยังอยู่ แต่ร่างกายเริ่มส่งสัญญาณ
Read Scroll →
🏠 Hosted Here Certification Red Team
My Journey Through HTB Certified Active Directory Pentesting Expert (CAPE)
10/10 flags on the first attempt. A deep dive into CAPE - the most AD-focused exam I've taken - covering preparation, methodology, Kerberos, ACL abuse, BloodHound analysis, and reporting.
Read Scroll →
🏠 Hosted Here Red Team Tool
Sliver C2: เริ่มต้นใช้งานสำหรับ Red Team
เรียนรู้ Sliver C2 ตั้งแต่ศูนย์ - ติดตั้ง สร้าง Listener สร้าง Implant ควบคุม Session และเปรียบเทียบกับ Metasploit พร้อมตัวอย่างจริงจาก HTB Lab
Read Scroll →
🏠 Hosted Here Red Team PrivEsc
🥔 GodPotato - รายงานเชิงเทคนิค (Windows PrivEsc)
วิเคราะห์เจาะลึก GodPotato - เครื่องมือ Privilege Escalation ที่ใช้ช่องโหว่ RPCSS OXID Resolution ยกระดับสิทธิ์เป็น NT AUTHORITY\SYSTEM พร้อม Attack Flow, Detection และ Defense
Read Scroll →
🏠 Hosted Here Life Reflection
ทำไมเราถึงรู้สึกว่าตัวเองไม่เก่ง ทั้งที่จริงแล้วเรามาไกลมาก
บทความสะท้อนเรื่อง impostor syndrome - ทำไมความสำเร็จ ใบเซอร์ และคำชม ยังลบความรู้สึกว่าตัวเองไม่เก่งไปไม่ได้ และวิธีมองหลักฐานของการเติบโตที่แท้จริง
Read Scroll →