Truck-2-Tech Security

James Shank Network Engineering & Information Security
Kansas City

Network Engineer with a security edge.
20+ years across U.S. Army, Army Reserves, commercial freight and MSP experience. Building enterprise networking skills with a grounding in how attackers think about infrastructure. Currently working as a Technician supporting HIPAA-regulated healthcare environments.

20+
Years Professional Employment
95%+
CSAT Score
HIPAA & PCI/DSS
Regulated Environments
Pro/Master
HackTheBox Ranking
01 Certifications
02 Networking Labs

Network labs in preparation for the CCNA certification.

No results found.

03 Scripts & Tools

Python, Powershell and Bash Scripts

CVE / Python
CVE-2026-33017
A Python proof-of-concept exploit for CVE-2026-33017, a critical unauthenticated Remote Code Execution (RCE) vulnerability affecting Langflow instances. This script targets the build_public_tmp endpoint to inject malicious custom components containing reverse shell payloads.
Python
JWT Decoder
A lightweight Python script designed for Capture The Flag (CTF) competitions to decode JSON Web Tokens (JWT) without verifying their signatures. This tool allows security researchers and participants to inspect the header and payload of JWTs quickly.
Python
Kubernetes Privesc
Exploits a Kubernetes service account token that has been granted the "get" permission on the nodes/proxy resource, without corresponding permission to list or get pods through the standard cluster API server.
Python
Langflow JWT Privesc Tool
This script automates a two-stage attack chain against vulnerable Langflow instances.
Python
PPK to OpenSSH Converter
A Python script to convert PuTTY PPK (PuTTY-User-Key-File-3) format private keys to OpenSSH private key format.
Bash
KRB5 Configurator
A Bash script to automate backing up, modifying and testing your krb5.conf file.
Python
KeePass Database Split Utility
A small utility that splits a keepassxc-cli CSV export into two flat wordlist files, one for usernames and one for passwords, in matching line order. Built for pentest workflows where a KeePass database has been recovered from a target and the credentials inside need to be reshaped into a format tools like Kerbrute, nxc, or Hydra can consume directly.
Bash
Gitea to Hashcat Converter
A lightweight Bash script to extract and convert Gitea user password hashes from SQLite into hashcat-ready format (Mode 10900: PBKDF2-HMAC-SHA256).

No results found.

04 Security Research

CTF writeups and offensive security labs.

HackSmarter
ShadowGate
AD attack chain with anonymous SMB access, AS-REP roasting, GenericWrite, targeted kerberoasting, ESC8 ADCS abuse, PetitPotam, and DCSync.
ADCS ESC8 DCSync Kerberoasting GenericWrite PetitPotam
HackTheBox
Escape Two
Full domain compromise chain starting from low-priv creds. Excel byte manipulation for credential extraction, MSSQL access, WinRM lateral movement, and ADCS misconfiguration abuse to retrieve the Administrator hash.
ADCS MSSQL WinRM ESC DCSync Credential Spraying
HackSmarter
ShareThePain
Chaining unauthenticated SMB access, NTLM hash capture, pivoting through an internal MSSQL service via Ligolo-ng, abusing SeImpersonatePrivilege with EfsPotato.
Active Directory SMB NTLM Capture Responder Kerberoasting BloodHound Pivoting Ligolo-ng MSSQL bloodyAD EfsPotato
HackSmarter
Arasaka
Local credentials, chaining through kerberoasting a service account, abusing GenericAll, remote access, GenericWrite to compromise a certificate management account and exploit ESC1.
Active Directory Kerberoasting ACL Abuse ADCS ESC1 GenericAll GenericWrite
HackSmarter
Sysco
Starting from username enumeration via AS-REP roasting and a password recovered from a router config in RoundCube webmail, the path chains through credential reuse to reach a System Administrator with GenericAll over the Default Domain Policy, abused via pyGPOAbuse to add to local Administrators.
Active Directory AS-REP Roasting RoundCube Credential Reuse GPO Abuse GenericAll pyGPOAbuse
HackSmarter
Lumon Industries
A multi-stage Active Directory compromise chaining NTLM hash capture via a malicious UNC path, ForceChangePassword abuse, LAPS credential extraction, and lateral movement through RDP and secretsdump to reach Domain Admin.
Active Directory NTLM Relay Responder ForceChangePassword LAPS Mimikatz secretsdump RDP ADCS
HackTheBox
Return
A printer service leaks credentials over LDAP, and Server Operators membership lets you hijack a service binary to catch a SYSTEM shell.
Active Directory LDAP Credential Leak Zerologon CVE-2020-1472 Service Abuse Server Operators SeLoadDriverPrivilege
HackTheBox
Sauna
An Easy-rated Windows Active Directory box rooted via AS-REP roasting to obtain fsmith's credentials, autologon registry credentials exposing svc_loanmgr, and a DCSync attack to dump the Administrator hash for Pass-the-Hash access.
Active Directory AS-REP Roasting Kerberos DCSync Pass-The-Hash WinPeas
HackTheBox
Orion
A very easy Linux machine exploiting a CSRF bypass and CVE-2025-32432 in CraftCMS to gain foothold, then leveraging reused database credentials for SSH access. Privilege escalation to root is achieved by exploiting the telnetd authentication bypass vulnerability (CVE-2026-24061).
CraftCMS telnetd CVE-2025-32432 CVE-2026-24061 CSRF Bypass MySQL
HackTheBox
Breach
Breach is a Medium Windows Active Directory box that starts with null/guest SMB access to a writable share, which enables an NTLM hash capture via lure files (ntlm_theft) to grab a low-priv AD user's credentials. From there, Kerberoasting nets an MSSQL service account, which is used to forge a silver ticket for sysadmin access to MSSQL, enabling xp_cmdshell and a GodPotato-based potato attack for SYSTEM.
SMB Null Auth NTLM Theft Kerberoast Silver Ticket GodPotato

No results found.

05 Background
Present
Tier II Technician — IT Voice MSP
Tier II technician at a managed service provider supporting HIPAA-regulated healthcare clients across networking, systems, and security, serving as the subject matter expert for my market.
Ongoing
WGU B.S. — Cybersecurity and Information Assurance
Currently pursuing a B.S. in Cybersecurity and Information Assurance through Western Governors University, an ABET-accredited, NSA/DHS-designated National Center of Academic Excellence in Cyber Defense program covering digital forensics, cloud security, AI, and incident response.
Prior
Commercial Truck Driver — ABF Freight
Regional truck driver, pulling doubles and triples trailers across the Midwest region. It was my first stop after the military, got me on my feet in civilian life, and is the origin of the Truck-2-Tech brand.
Prior
U.S. Army / Army Reserves
The foundation that made me who I am today. I started as a musician, grew into a leader, all while learning valuable lessons in Loyalty, Duty, Respect, Selfless-Service, Honor, Integrity, and Personal Courage.
06 Contact

Open to network engineering, network security, and infrastructure roles. Also available for collaboration and security research. Reach out via GitHub or LinkedIn.