Skip to content

Knowledge Base

Battle-tested attack playbooks and methodologies — the offensive techniques that carry an engagement from the first packet to full domain dominance.

Knowledge Base Categories (8 Categories)
01 / RECON

Reconnaissance

Network footprinting, port scanning, OSINT, and web surface enumeration to map the target infrastructure.

23 Topics
02 / WEB

Web Attacks

File upload vulnerabilities, injection flaws, and deep dives into web application exploitation techniques.

34 Topics
03 / APPS

Attacking Common Applications

Targeting enterprise web apps, CMS platforms, WordPress, custom portals, and administrative suites.

2 Topics
04 / CREDENTIALS

Credential Attacks

Password cracking, credential hunting, Pass-the-Hash, Pass-the-Ticket, and dumping hashes from SAM/NTDS.

27 Topics
05 / ACTIVE DIRECTORY

Active Directory

The complete AD pentesting playbook: LLMNR poisoning, Kerberoasting, ADCS escalation, and Golden Tickets.

31 Topics
06 / FRAMEWORKS

Exploitation Frameworks

Mastering Metasploit, managing payloads with MSFVenom, handling sessions, and writing custom modules.

13 Topics
07 / PIVOTING

Pivoting, Tunneling & Port Forwarding

SSH tunneling, SOCKS proxies, Socat relays, Chisel, DNS/ICMP tunneling, double pivots, and detection evasion.

11 Topics
!!! tip "Methodology Structure" Each playbook follows a consistent workflow: 1. **Reconnaissance** — Port scanning, service and protocol enumeration 2. **Foothold** — Initial access and exploitation 3. **Privilege Escalation** — Escalating toward Domain Admin 4. **Key Takeaways** — Detection, mitigation, and lessons learned