Logo
Table of Contents (Locked)
Follow the White Rabbit: Pwning Whiterabbit HTB

Follow the White Rabbit: Pwning Whiterabbit HTB

December 6, 2025
8 min read

We are diving into the Matrix today. Whiterabbit is a machine that tests your patience with enumeration and rewards you with a satisfying chain of lateral movements. From subdomain hunting to reverse engineering custom binaries, this box forced me to dig deep into my toolkit.

Here is how I went down the rabbit hole.

Phase 1: Recon & Fighting the Noise

I started where I always do: Nmap. I needed to know what doors were open.

Terminal window
nmap -p- -sC -sV 10.10.11.63

Nmap scan results showing ports 22, 80, 2222

Note (Port 2222?)

I saw standard web ports, but also port 2222 (SSH), which usually hints at a container or a specific user entry point.