Machine Synopsis
`MonitorsFour` is an easy-difficulty Windows machine that begins by exploiting an `IDOR` vulnerability to get access to admin credentials through an API. Then, Cacti is found vulnerable to CVE-2025-24367 which upon exploitation allows access to a docker container. For privilege escalation, CVE-2025-9074 can be leveraged to escape the container by using the exposed Docker API to create a new container with the host file system mounted.
Machine Matrix