├── .gitbook └── assets │ ├── New Twitter background.png │ ├── Twitter Banner (1).png │ ├── Twitter Banner.png │ ├── banner.png │ ├── image (1) (1).png │ ├── image (1).png │ ├── image (2) (1).png │ ├── image (2).png │ ├── image (3).png │ ├── image (4).png │ ├── image (5).png │ ├── image.png │ ├── twitter-banner (1).png │ └── twitter-banner.png ├── 1.-reconnaissance-osint ├── cewl.md ├── dns.md ├── google-hacks.md ├── information-gathering.md ├── sock-puppets.md └── tools.md ├── 2.-scanning ├── host-discovery.md ├── nmap-scripting-engine.md └── port-scanning-with-nmap.md ├── 3.-enumeration ├── 111-nfs.md ├── 135-rpc.md ├── 139-445-netbios-smb.md ├── 161-udp-snmp.md ├── 21-ftp.md ├── 22-ssh.md ├── 25-smtp.md ├── 53-dns.md ├── 80-443-http-s.md ├── active-directory.md ├── banner-grabbing.md ├── finger-solaris.md └── wordpress.md ├── 4.-exploitation ├── active-directory.md ├── buffer-overflows.md ├── finding-exploit-code.md ├── metasploit.md ├── password-attacks.md ├── password-attacks │ ├── README.md │ └── cewl.md ├── public-exploits.md └── web-application-attacks │ ├── README.md │ ├── command-injection.md │ ├── cross-site-scripting.md │ ├── directory-traversal.md │ ├── file-inclusion.md │ └── sql-injection.md ├── 5.-maintaining-access ├── file-transfers.md ├── linux-privilege-escalation.md ├── msfvenom.md ├── shells-1.md ├── shells.md ├── tunneling.md └── windows-privilege-escalation.md ├── 6.-miscellaneous └── connections.md ├── 7.-walkthroughs ├── htb-blunder.md ├── htb-haircut.md └── thm-hackpark.md ├── README.md ├── SUMMARY.md └── source-zero-con-references.md /.gitbook/assets/New Twitter background.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/New Twitter background.png -------------------------------------------------------------------------------- /.gitbook/assets/Twitter Banner (1).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/Twitter Banner (1).png -------------------------------------------------------------------------------- /.gitbook/assets/Twitter Banner.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/Twitter Banner.png -------------------------------------------------------------------------------- /.gitbook/assets/banner.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/banner.png -------------------------------------------------------------------------------- /.gitbook/assets/image (1) (1).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (1) (1).png -------------------------------------------------------------------------------- /.gitbook/assets/image (1).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (1).png -------------------------------------------------------------------------------- /.gitbook/assets/image (2) (1).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (2) (1).png -------------------------------------------------------------------------------- /.gitbook/assets/image (2).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (2).png -------------------------------------------------------------------------------- /.gitbook/assets/image (3).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (3).png -------------------------------------------------------------------------------- /.gitbook/assets/image (4).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (4).png -------------------------------------------------------------------------------- /.gitbook/assets/image (5).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image (5).png -------------------------------------------------------------------------------- /.gitbook/assets/image.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/image.png -------------------------------------------------------------------------------- /.gitbook/assets/twitter-banner (1).png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/twitter-banner (1).png -------------------------------------------------------------------------------- /.gitbook/assets/twitter-banner.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/.gitbook/assets/twitter-banner.png -------------------------------------------------------------------------------- /1.-reconnaissance-osint/cewl.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/1.-reconnaissance-osint/cewl.md -------------------------------------------------------------------------------- /1.-reconnaissance-osint/dns.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/1.-reconnaissance-osint/dns.md -------------------------------------------------------------------------------- /1.-reconnaissance-osint/google-hacks.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/1.-reconnaissance-osint/google-hacks.md -------------------------------------------------------------------------------- /1.-reconnaissance-osint/information-gathering.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/1.-reconnaissance-osint/information-gathering.md -------------------------------------------------------------------------------- /1.-reconnaissance-osint/sock-puppets.md: -------------------------------------------------------------------------------- 1 | # Sock puppets 2 | 3 | Coming soon 4 | -------------------------------------------------------------------------------- /1.-reconnaissance-osint/tools.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/1.-reconnaissance-osint/tools.md -------------------------------------------------------------------------------- /2.-scanning/host-discovery.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/2.-scanning/host-discovery.md -------------------------------------------------------------------------------- /2.-scanning/nmap-scripting-engine.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/2.-scanning/nmap-scripting-engine.md -------------------------------------------------------------------------------- /2.-scanning/port-scanning-with-nmap.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/2.-scanning/port-scanning-with-nmap.md -------------------------------------------------------------------------------- /3.-enumeration/111-nfs.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/111-nfs.md -------------------------------------------------------------------------------- /3.-enumeration/135-rpc.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/135-rpc.md -------------------------------------------------------------------------------- /3.-enumeration/139-445-netbios-smb.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/139-445-netbios-smb.md -------------------------------------------------------------------------------- /3.-enumeration/161-udp-snmp.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/161-udp-snmp.md -------------------------------------------------------------------------------- /3.-enumeration/21-ftp.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/21-ftp.md -------------------------------------------------------------------------------- /3.-enumeration/22-ssh.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/22-ssh.md -------------------------------------------------------------------------------- /3.-enumeration/25-smtp.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/25-smtp.md -------------------------------------------------------------------------------- /3.-enumeration/53-dns.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/53-dns.md -------------------------------------------------------------------------------- /3.-enumeration/80-443-http-s.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/80-443-http-s.md -------------------------------------------------------------------------------- /3.-enumeration/active-directory.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/active-directory.md -------------------------------------------------------------------------------- /3.-enumeration/banner-grabbing.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/banner-grabbing.md -------------------------------------------------------------------------------- /3.-enumeration/finger-solaris.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/finger-solaris.md -------------------------------------------------------------------------------- /3.-enumeration/wordpress.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/3.-enumeration/wordpress.md -------------------------------------------------------------------------------- /4.-exploitation/active-directory.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/active-directory.md -------------------------------------------------------------------------------- /4.-exploitation/buffer-overflows.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/buffer-overflows.md -------------------------------------------------------------------------------- /4.-exploitation/finding-exploit-code.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/finding-exploit-code.md -------------------------------------------------------------------------------- /4.-exploitation/metasploit.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/metasploit.md -------------------------------------------------------------------------------- /4.-exploitation/password-attacks.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/password-attacks.md -------------------------------------------------------------------------------- /4.-exploitation/password-attacks/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/password-attacks/README.md -------------------------------------------------------------------------------- /4.-exploitation/password-attacks/cewl.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/password-attacks/cewl.md -------------------------------------------------------------------------------- /4.-exploitation/public-exploits.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/public-exploits.md -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/README.md: -------------------------------------------------------------------------------- 1 | # Web application attacks 2 | 3 | -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/command-injection.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/web-application-attacks/command-injection.md -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/cross-site-scripting.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/web-application-attacks/cross-site-scripting.md -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/directory-traversal.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/web-application-attacks/directory-traversal.md -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/file-inclusion.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/web-application-attacks/file-inclusion.md -------------------------------------------------------------------------------- /4.-exploitation/web-application-attacks/sql-injection.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/4.-exploitation/web-application-attacks/sql-injection.md -------------------------------------------------------------------------------- /5.-maintaining-access/file-transfers.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/file-transfers.md -------------------------------------------------------------------------------- /5.-maintaining-access/linux-privilege-escalation.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/linux-privilege-escalation.md -------------------------------------------------------------------------------- /5.-maintaining-access/msfvenom.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/msfvenom.md -------------------------------------------------------------------------------- /5.-maintaining-access/shells-1.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/shells-1.md -------------------------------------------------------------------------------- /5.-maintaining-access/shells.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/shells.md -------------------------------------------------------------------------------- /5.-maintaining-access/tunneling.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/tunneling.md -------------------------------------------------------------------------------- /5.-maintaining-access/windows-privilege-escalation.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/5.-maintaining-access/windows-privilege-escalation.md -------------------------------------------------------------------------------- /6.-miscellaneous/connections.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/6.-miscellaneous/connections.md -------------------------------------------------------------------------------- /7.-walkthroughs/htb-blunder.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/7.-walkthroughs/htb-blunder.md -------------------------------------------------------------------------------- /7.-walkthroughs/htb-haircut.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/7.-walkthroughs/htb-haircut.md -------------------------------------------------------------------------------- /7.-walkthroughs/thm-hackpark.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/7.-walkthroughs/thm-hackpark.md -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/README.md -------------------------------------------------------------------------------- /SUMMARY.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/SUMMARY.md -------------------------------------------------------------------------------- /source-zero-con-references.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ThinkingOffensively/Pentesting-notes/HEAD/source-zero-con-references.md --------------------------------------------------------------------------------