Recon

Network enumeration and footprinting: Nmap host discovery, scan types, NSE scripts and firewall evasion.

1 cheatsheet

Web

Web exploitation: fuzzing, SQLi, XSS, SSRF, XXE, file inclusion, upload and more.

64 cheatsheets

Privilege Escalation

Escalate to root / SYSTEM on Linux and Windows.

2 cheatsheets

AD Attacks

The full Active Directory kill chain: poisoning, password spraying, Kerberoasting, ACL abuse, DCSync, trust attacks and domain dominance.

17 cheatsheets

Password Attacks

Credential theft and lateral movement: SAM/LSASS/Credential Manager dumping, Linux + network cred hunting, Pass-the-Hash / Ticket / Certificate.

1 cheatsheet

Pivoting

Tunnel into internal networks: Ligolo, SSH forwards, proxychains.

3 cheatsheets

Shells

Reverse / bind shells and TTY upgrades.

2 cheatsheets

Metasploit

The Metasploit Framework: workspaces, modules, sessions and Meterpreter post-exploitation.

1 cheatsheet

File Transfers

Move files on and off targets across Linux and Windows.

1 cheatsheet

Cracking

Brute-force logins and crack captured hashes.

2 cheatsheets