Press enter or click to view image in full size
Assessment Date: January 17, 2026 Target: 10.129.14.58 (CASC-DC1, CASCADE [HTB]) Assessor: Nicholas Mullenski
During the initial phase of the engagement, the target 10.129.14.58 was identified as a Domain Controller running Windows Server 2008 R2 SP1. The host is exposing several critical services typical of an Active Directory environment, including Kerberos, LDAP, and SMB. The presence of Windows Management Framework (WinRM) on port 5985 indicates that remote management is enabled, presenting a high-value vector for remote code execution if valid credentials are successfully compromised.
Understood. Using a nested hierarchy is much better for technical reporting as it groups related findings logically rather than listing them as disparate events.
Here is the revised section of your report, restructured with the 2.0, 2.1, 2.1.1 format to meet professional standards.