Hacking Articles
24.5K subscribers
1.47K photos
165 files
1.08K links
House of Pentester
Download Telegram
OSCP Exam Training Program (Online)

A hands-on, exam-focused program that trains you the way real pentesters actually work β€” built for aspirants who want to clear OSCP on the first attempt.

πŸ“… Limited seats. Admissions closing soon.

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in


πŸ”₯ What you'll master:
βœ”οΈ Introduction to Exam Strategy & Methodology
βœ”οΈ Information Gathering & Enumeration
βœ”οΈ Vulnerability Scanning & Analysis
βœ”οΈ Windows Privilege Escalation
βœ”οΈ Linux Privilege Escalation
βœ”οΈ Client-Side Attacks
βœ”οΈ Web Application Attacks
βœ”οΈ Password Attacks & Credential Exploitation
βœ”οΈ Tunneling & Pivoting Techniques
βœ”οΈ Active Directory Attacks
βœ”οΈ Exploiting Public Exploits Effectively
βœ”οΈ Professional Report Writing

πŸ’Ž What makes this different:
βœ… Hands-on practical labs
βœ… Realistic attack scenarios
βœ… OSCP-oriented training
βœ… Beginner to advanced guidance
βœ… Industry-focused techniques

πŸ‘¨β€πŸ’» Perfect for:
πŸ”Ή OSCP Aspirants
πŸ”Ή Ethical Hackers
πŸ”Ή Pentesters
πŸ”Ή Red Teamers
πŸ”Ή Cybersecurity Students

πŸ’‘ Why this matters: OSCP isn't just a cert β€” it's a career accelerator. But the 24-hour exam doesn't care how many machines you've rooted on HTB. It rewards the hacker who knows exactly what to enumerate, when to pivot, and how to document it. That's what we train.


πŸ‘‰ Tag an OSCP aspirant who needs to see this.
πŸ’¬ Drop a comment: What's stopping you from booking your OSCP exam?
♻️ Repost to help someone in your network land their dream pentest role.
❀3⚑1
πŸ›‘ Penetration Testing on MySQL (Port 3306)

πŸ”— Twitter: https://lnkd.in/e7yRpDpY
πŸ“’ Telegram: https://t.me/hackinarticles

MySQL databases are widely used in web applications, but misconfigurations can expose critical data.

This guide covers:
πŸ”Ž MySQL Enumeration
πŸ”‘ Login testing & brute force
⚑️ Hydra attacks
🧰 Metasploit exploitation
πŸ“‚ Database extraction techniques

Read the full article πŸ‘‡
https://www.hackingarticles.in/penetration-testing-on-mysql-port-3306/
❀6
Remote Desktop Penetration Testing (Port 3389)

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Remote Desktop Protocol (RDP) allows users to connect to and control Windows systems remotely through a graphical interface. By default, RDP listens on TCP port 3389, and weak configurations can expose systems to brute-force attacks and remote exploitation. ()

πŸ“š Techniques Covered in This Guide

πŸ”Ž Nmap Port Scanning
πŸ” RDP Brute Force Attack (Hydra)
πŸ›‘ Account Lockout Policy Mitigation
πŸ’₯ Post-Exploitation using Metasploit
πŸ–₯ Enabling RDP via Meterpreter
πŸ“Œ Persistence using Sticky Keys
πŸ”‘ Credential Dumping with Mimikatz
🎭 RDP Session Hijacking
🧠 Event Log Analysis for Detection
⚑️ DoS Attack (MS12-020)
πŸ’£ BlueKeep RCE Exploitation
πŸ”„ Changing RDP Port
πŸ•΅οΈ Man-in-the-Middle Attack (SETH Toolkit)

πŸ“– Article:
https://hackingarticles.in/remote-desktop-penetration-testing-port-3389/
❀4
SSH Penetration Testing (Port 22)

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

SSH (Secure Shell) is a cryptographic protocol used for secure remote login and command execution over unsecured networks. During penetration testing, misconfigurations or weak credentials in SSH services can allow attackers to gain unauthorized access. ()

πŸ“š Techniques Covered in This Guide

πŸ”Ž Enumeration with Nmap
πŸ” Password Cracking using Hydra
⚑️ Authentication using Metasploit
πŸ’» Running Commands on Remote Machine
πŸ” SSH Port Redirection
πŸ§ͺ Nmap SSH Brute Force Script
πŸ” Enumerating SSH Authentication Methods
πŸ”‘ Key-Based Authentication
πŸ›  Key-Based Authentication using Metasploit
πŸ“¦ Post Exploitation using Metasploit
🌐 Local Port Forwarding (Password Based)
πŸ” Local Port Forwarding (Key Based)

πŸ“– Article:
https://www.hackingarticles.in/ssh-penetration-testing-port-22/
❀3
🚨 STOP WASTING MONTHS ON RANDOM OSCP TUTORIALS 🚨

Most OSCP students don't fail because they lack tools.

⚠️ LIMITED SEATS AVAILABLE

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ info@ignitetechnologies.in

♻️ RT to help an OSCP aspirant.

They fail because they lack a METHODOLOGY. 🎯

What actually matters?

πŸ”Ž Enumeration
⚑️ Windows & Linux PrivEsc
🏰 Active Directory Attacks
🌐 Web Exploitation
🧠 Pivoting & Tunneling
πŸ”‘ Password Attacks
πŸ’£ Public Exploit Abuse
πŸ“‹ Professional Reporting

πŸ”₯ OSCP Training β€” ADMISSIONS OPEN

No endless theory.
No random tutorials.

βœ… Hands-on labs
βœ… Real-world attack scenarios
βœ… OSCP-focused methodology
βœ… Beginner β†’ Advanced guidance
πŸ”₯ Ethical Hacking Proactive Training – Live & Practical πŸ”₯

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
❀4πŸ‘Ž1
🚨 Your CI/CD Tools Can Become Your Attack Surface. πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Meet LOTP β€” Living Off The Pipeline.

The idea is simple:

Attackers don't always need to modify the pipeline.

They can abuse development tools already running inside CI/CD environments when those tools process untrusted code, configuration, inputs, or environment variables.

🧨 Examples include:

πŸ”Ή npm / npx
πŸ”Ή pip
πŸ”Ή Docker
πŸ”Ή Terraform
πŸ”Ή Make
πŸ”Ή Maven / Gradle
πŸ”Ή Go Generate
πŸ”Ή ESLint
πŸ”Ή Prettier
πŸ”Ή GitHub Actions
πŸ”Ή Webpack
πŸ”Ή Trivy
…and many more.

⚠️ These tools can expose RCE-by-design "foot guns" when used with untrusted inputs.

πŸ“š Explore the LOTP knowledge base:
https://boostsecurityio.github.io/lotp/

Think beyond the application.

Secure the pipeline that builds it. πŸ›‘



♻️ Repost for AppSec & DevSecOps teams.
❀5
ACTIVE DIRECTORY ATTACK ARCHITECTURE MAP

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Most AD pentesters learn attacks individually.

The real skill? 🧠
Understanding how those attacks CHAIN together.

This AD Attack Architecture Map takes you from:

πŸ”Ή AD Fundamentals
πŸ”Ή Kerberos & NTLM
πŸ”Ή Initial Access
πŸ”Ή Password Attacks
πŸ”Ή NTLM Relay
πŸ”Ή ACL Abuse
πŸ”Ή RBCD & Delegation
πŸ”Ή Kerberoasting
πŸ”Ή Shadow Credentials
πŸ”Ή ADCS Abuse
πŸ”Ή Trust Escalation
πŸ”Ή Lateral Movement
πŸ”Ή DCSync
πŸ”Ή Domain β†’ Forest Compromise

πŸ”₯ Attack chains include:

➑️ RBCD β†’ NT Hash
➑️ Kerberoasting β†’ Domain Admin
➑️ Shadow Credentials β†’ NT Hash
➑️ WriteDACL β†’ DCSync β†’ Golden Ticket
➑️ PetitPotam β†’ ESC8 β†’ DCSync
➑️ Child Domain β†’ Parent Domain
➑️ LLMNR β†’ Relay β†’ RBCD
➑️ ADCS ESC1 β†’ Domain Admin

This is more than a cheat sheet.

It helps you understand how one foothold can become full domain compromise. βš”οΈ

πŸ”— Explore the AD Attack Architecture Map:
https://kypvas.github.io/ad_attack_architecture/

🎯 Bookmark this for your next AD lab / pentest.

♻️ Repost & share with your Red Team community!
πŸ‘3
🚨 1000+ GOOGLE DORKS FOR SECURITY RECON πŸ”ŽπŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Finding exposed information during reconnaissance can be time-consuming.

SHADOHDORKS aims to make the Google Dorking workflow faster. ⚑️

It provides 1000+ advanced dorks covering areas such as:

πŸ”Ž Subdomain Enumeration
πŸ–₯ Exposed Panels
πŸ” API Leaks
🌐 Web Reconnaissance
🎯 Pentest Recon

The workflow is simple:

Enter Domain β†’ Generate Dorks β†’ Search β†’ Investigate

Perfect for security researchers and penetration testers who want to add structured Google dorking to their recon methodology.

πŸ”— Tool:
https://shadohdorks.vercel.app/

πŸ“š Add it to your OSINT & reconnaissance toolkit.

⚠️ Always obtain explicit authorization before testing or searching targets you don't own.

♻️ Save β€’ Share β€’ Repost
❀5πŸ‘1πŸ”₯1
🚨 BUG BOUNTY TRAINING PROGRAM 🐞πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Want to become a skilled Bug Bounty Hunter?

Learn to think like a hacker and test web applications using a structured methodology. 🎯

πŸ”₯ What you'll learn:

πŸ”Ž Recon & Asset Discovery
🌐 Attack Surface Enumeration
πŸ” Authentication & Authorization
🎯 IDOR & Access Control
πŸ’‰ Injection Vulnerabilities
⚑️ XSS
πŸ“‘ API Security
πŸ”„ Business Logic Bugs
πŸ“‚ Sensitive Data Exposure
πŸ§ͺ Manual Testing
πŸ“ Professional Bug Reporting

πŸ’‘ Don't just learn tools.

Learn how to RECON β†’ FIND β†’ VALIDATE β†’ REPORT vulnerabilities.

πŸ“… LIMITED SEATS β€” ADMISSIONS CLOSING SOON

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

πŸ‘¨β€πŸ’» Perfect for:
πŸ”Ή Bug Bounty Hunters
πŸ”Ή Pentesters
πŸ”Ή Ethical Hackers
πŸ”Ή Cybersecurity Students
πŸ”Ή Beginners

⚠️ Learn and practice only on authorized targets.

♻️ REPOST & TAG someone who wants to become a Bug Hunter!
❀2
🚨 OSEP TRAINING PROGRAM β€” ADVANCED RED TEAMING πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Ready to move beyond basic pentesting?

Level up your skills with an OSEP-focused training program built around advanced offensive security, evasion, and real-world attack scenarios. βš”οΈ

πŸ”₯ What you'll focus on:

πŸ›‘ Defense Evasion
πŸ’» Windows Internals
βš”οΈ Advanced Exploitation
πŸ” Credential & Token Abuse
🌐 Web & Network Attacks
🏒 Active Directory Attacks
πŸ”€ Lateral Movement
🎯 Command & Control
🧩 AV/EDR Evasion Concepts
πŸ’₯ Payload Development
πŸ”— Pivoting & Tunneling
πŸ“ Professional Reporting

OSEP's exam simulates a corporate network where you first obtain a foothold and then perform additional internal attacks across multiple machines. The current exam provides 47h 45m for the challenge plus 24h for documentation.

🎯 Perfect for:

πŸ”Ή Experienced Pentesters
πŸ”Ή Red Teamers
πŸ”Ή OSCP Graduates
πŸ”Ή Offensive Security Professionals
πŸ”Ή Cybersecurity Professionals

πŸ’‘ Don't just learn exploitation.

Learn how to bypass defenses, move through networks, and think like a real red team operator.

πŸ“… LIMITED SEATS β€” ADMISSIONS CLOSING SOON

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

⚠️ Training and techniques should only be applied in authorized environments.

πŸ”₯ LEVEL UP FROM PENTESTING TO ADVANCED RED TEAMING.

♻️ Repost & tag someone preparing for OSEP!
❀4
🚨 LOTTunnels β€” LIVING OFF THE TUNNELS πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Attackers don't always need custom infrastructure.

Sometimes, legitimate tunneling services can become part of the attack chain. πŸŒβš”οΈ

LOTTunnels is a community-driven project documenting digital tunnels that can be abused for:

πŸ”Ή Access
πŸ”Ή Shell Access
πŸ”Ή Data Exfiltration
πŸ”Ή Persistence
πŸ”Ή Phishing
πŸ”Ή Payload Download

The catalog includes tools/services such as:

⚑️ ngrok
⚑️ Cloudflared
⚑️ localhost.run
⚑️ LocalXpose
⚑️ PageKite
⚑️ Pinggy
⚑️ Serveo
⚑️ Tmate
⚑️ TunnelTo
⚑️ VSCode Tunnels

🎯 Why should Red Teamers & Defenders care?

Tunneling can create legitimate-looking network traffic while providing paths for remote access, command execution, or data movement.

For defenders, these services should be part of attack-surface discovery, detection engineering, and network monitoring.

πŸ”— Explore LOTTunnels:
https://lottunnels.github.io/

πŸ“Œ Bookmark this resource for your next Red Team / Blue Team / Threat Hunting research.

⚠️ Use these techniques only in authorized environments.

♻️ REPOST & SHARE with your cybersecurity community!
πŸ‘3❀1
🚨 LOLAD β€” ACTIVE DIRECTORY ATTACK & ENUMERATION CHEAT SHEET πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Working with Active Directory? πŸ’βš”οΈ

This is a massive collection of AD commands, techniques and resources for authorized Red Team and security testing.

πŸ”₯ Explore:

πŸ”Ž AD Enumeration
πŸ‘₯ Users & Groups
πŸ’» Domain Computers
🏒 Domain Controllers
🌐 Forests & Trusts
πŸ” Kerberos & SPNs
🎫 Delegation
πŸ›‘ ACL Enumeration
πŸ“œ GPO Enumeration
πŸ”‘ Credential Techniques
βš”οΈ Lateral Movement
🧩 Fileless Techniques
⚑️ PowerView & PowerUp
πŸ’₯ Impacket & Mimikatz
🎯 Pass-the-Hash / Pass-the-Ticket
πŸ‘‘ DCSync & Ticket Attacks

πŸ’‘ The real value?

Instead of memorizing isolated commands, build a structured AD methodology:

ENUMERATE β†’ IDENTIFY WEAKNESSES β†’ VALIDATE β†’ ESCALATE β†’ MOVE β†’ DOCUMENT

πŸ”— LOLAD:
https://lolad-project.github.io/

πŸ“Œ Bookmark this for your next authorized AD lab or assessment.

⚠️ Use offensive techniques only in environments where you have explicit authorization.

♻️ REPOST & SHARE with the Active Directory community!
❀1
🚨 macOS Security: LOOBins Living Off the Land Binaries πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

If you're doing macOS Security, Red Teaming, or Threat Hunting, bookmark this.

LOOBins documents built-in macOS binaries that can potentially be abused for post-exploitation activity. The current catalog contains 62 macOS binaries mapped to different security tactics and use cases.

πŸ”₯ Explore binaries such as:

🍎 osascript β€” AppleScript execution
πŸ” security β€” Keychain interaction
πŸ“Έ screencapture β€” Screenshot capture
🌐 nscurl β€” File transfer
βš™οΈ launchctl β€” LaunchAgents / LaunchDaemons
πŸ—„ sqlite3 β€” Database interaction
🧩 swift β€” Code execution
πŸ”Ž mdfind β€” File discovery
πŸ“‹ pbpaste β€” Clipboard access
πŸ›‘ spctl β€” Gatekeeper/security policy management
πŸ”‘ sysadminctl β€” Local account management
πŸ“‘ systemsetup β€” Remote-access configuration

🎯 Great resource for:

πŸ”Ή macOS Pentesting
πŸ”Ή Red Teaming
πŸ”Ή Threat Hunting
πŸ”Ή Detection Engineering
πŸ”Ή DFIR
πŸ”Ή MITRE ATT&CK Research

πŸ”— Explore LOOBins:
https://loobins.io/binaries/

πŸ“Œ Bookmark it. Study the techniques. Build detections.

⚠️ Use offensive techniques only in authorized environments.

♻️ REPOST & SHARE with your cybersecurity community!
πŸ”₯7
🚨 LOLRMM: Remote Monitoring & Management Tools for Threat Hunting πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

RMM tools are legitimate. But attackers can abuse them. ⚠️

LOLRMM is a community-driven project that catalogs Remote Monitoring & Management (RMM) tools that could potentially be misused by threat actors.

πŸ”₯ Why bookmark it?

πŸ”Ή RMM Tool Discovery
πŸ”Ή Threat Hunting
πŸ”Ή Detection Engineering
πŸ”Ή Unauthorized RMM Detection
πŸ”Ή Application Control
πŸ”Ή Forensic Investigation
πŸ”Ή Security Monitoring

The project currently lists 320 RMM tools and provides data through JSON/CSV APIs for integration into security workflows.

πŸ›‘ Useful for:

πŸ‘¨β€πŸ’» SOC Analysts
πŸ”Ž Threat Hunters
πŸ”΄ Red Teamers
πŸ”΅ Blue Teamers
πŸ•΅οΈ DFIR Professionals
βš™οΈ Detection Engineers

It also provides Sigma detection rules and SIEM-focused detection resources to help identify potentially unauthorized RMM activity.

πŸ”— Explore LOLRMM:
https://lolrmm.io/

πŸ“Œ Add it to your Threat Hunting & Detection Engineering toolkit.

⚠️ Use offensive capabilities only in authorized environments.

♻️ REPOST & SHARE with your cybersecurity community!
c
❀2
🚨 Sploitify: Exploit & Vulnerability Reference for Pentesters πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Looking for a faster way to find relevant exploits during security research? βš”οΈ

Sploitify is a curated, GTFOBins-style exploit reference that helps security researchers filter exploits by:

πŸ”Ή Vulnerability Type
πŸ”Ή Local Privilege Escalation
πŸ”Ή Remote Code Execution
πŸ”Ή Web Services
πŸ”Ή SMB
πŸ”Ή SSH
πŸ”Ή RDP
πŸ”Ή Operating System
πŸ”Ή Practice Labs

🎯 Useful for:

πŸ‘¨β€πŸ’» Pentesters
πŸ”΄ Red Teamers
πŸ§ͺ CTF Players
πŸ” Security Researchers
πŸŽ“ OSCP Aspirants

πŸ’‘ Instead of searching through huge exploit collections, use categorized filters to quickly identify potentially relevant research and lab resources.

πŸ”— Explore Sploitify:
https://sploitify.haxx.it/

πŸ“Œ Bookmark this for your Pentesting & Exploit Research toolkit.

⚠️ Only use exploits against systems you own or are explicitly authorized to test.

♻️ REPOST & SHARE with your cybersecurity community!
❀3
🚨 GTFOBins: Unix Binaries for Privilege Escalation & Pentesting πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

If you're learning Linux Privilege Escalation, bookmark this. πŸ§βš”οΈ

GTFOBins is a curated reference of Unix binaries that can be abused in security contexts, making it extremely useful during authorized pentesting and CTF labs.

πŸ”₯ Use it to research binaries related to:

πŸ”Ή Privilege Escalation
πŸ”Ή Shell Escapes
πŸ”Ή Command Execution
πŸ”Ή File Read / Write
πŸ”Ή File Upload / Download
πŸ”Ή Sudo Abuse
πŸ”Ή Limited Shell Escapes
πŸ”Ή Capabilities
πŸ”Ή SUID-based techniques

🎯 Useful for:

πŸ‘¨β€πŸ’» Pentesters
πŸ”΄ Red Teamers
πŸŽ“ OSCP Aspirants
πŸ§ͺ CTF Players
πŸ” Security Researchers

πŸ’‘ During Linux enumeration, discovering an unusual binary is only the beginning.

The important question is:

"What security-relevant functionality can this binary provide?"

πŸ”— Explore GTFOBins:
https://gtfobins.org/

πŸ“Œ Bookmark it for your Linux PrivEsc & Pentesting Toolkit.

⚠️ Use these techniques only on systems you own or are explicitly authorized to test.

♻️ REPOST & SHARE with your cybersecurity community!
❀2
🚨 Windows Security: LOLBAS Living Off the Land Binaries πŸ”₯

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

What if a legitimate Windows binary becomes part of an attack chain? πŸͺŸβš”️

LOLBAS β€” Living Off The Land Binaries, Scripts and Libraries is a powerful reference for understanding how trusted Windows components can be used in security-relevant ways.

πŸ”₯ Explore techniques involving:

πŸ”Ή System Binary Proxy Execution
πŸ”Ή Application Control Bypass
πŸ”Ή Download & Upload
πŸ”Ή Command Execution
πŸ”Ή Credential Access
πŸ”Ή Discovery
πŸ”Ή Alternate Data Streams
πŸ”Ή UAC Bypass
πŸ”Ή Code Compilation
πŸ”Ή Data Collection

The project currently catalogs 244 binaries and maps them to MITRE ATT&CK techniques.

Examples include:

πŸ’» Mshta.exe
πŸ’» Certutil.exe
πŸ’» Regsvr32.exe
πŸ’» Rundll32.exe
πŸ’» Msbuild.exe
πŸ’» Bitsadmin.exe
πŸ’» Wmic.exe
πŸ’» Schtasks.exe

🎯 Useful for:

πŸ”΄ Red Teamers
πŸ”΅ Blue Teamers
πŸ•΅οΈ Threat Hunters
πŸ›‘ Detection Engineers
πŸ‘¨β€πŸ’» Pentesters
πŸ“š OSCP Aspirants

πŸ”— Explore LOLBAS:
https://lolbas-project.github.io/

πŸ“Œ Bookmark this for your Windows Pentesting + Threat Hunting toolkit.

⚠️ Practice offensive techniques only in authorized environments.

♻️ REPOST & SHARE with your cybersecurity community!
❀3
🚨 Anyone can run a tool.

An advanced operator knows when to use it, why it works, and what to do when defenses react.

Modern environments have:

πŸ›‘ EDR
πŸ” Security Controls
πŸ‘ Detection & Monitoring
🏒 Hardened Active Directory

So the question isn’t:

β€œCan you compromise a machine?”

It’s:

β€œCan you operate effectively in a defended environment?”

πŸ”₯ OSEP Training Program

Build advanced offensive tradecraft around:

βš”οΈ Defense Evasion
🧠 Adversary Simulation
🏒 Active Directory
πŸ’» Client-Side & Post-Exploitation
πŸ”¬ Hands-on Operator Labs

🎯 Ready to move beyond basic pentesting?

πŸ‘‰ Apply for OSEP Training
https://forms.gle/bowpX9TGEs41GDG99

πŸ”₯ Sharpen your skills with Advanced CTF Challenges:
πŸ‘‰ Advanced CTF Challenges

Don’t just learn offensive tools.
Develop the mindset and tradecraft of an advanced operator.
πŸ”₯ OSCP isn’t about knowing more tools.

It’s about knowing what to do next when nothing works.

Nmap. Burp. Metasploit. PrivEsc.

Tools are easy to learn.
Methodology is what gets you through the exam.

πŸš€ OSCP Training Program

βœ… Hands-on Labs
βœ… Linux & Windows PrivEsc
βœ… Web Pentesting
βœ… Active Directory
βœ… Pivoting & Tunneling
βœ… Exam-Style Practice
βœ… Reporting & Methodology

🎯 Want to know the complete curriculum, batch details & training fees?

πŸ‘‰ Fill out the form and our team will contact you:
https://forms.gle/bowpX9TGEs41GDG99

⚑️ Limited seats for the upcoming batch.
❀1
🐧 Most Used Linux Commands β€” Cheat Sheet

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸš€ Linux commands you should know by heart:

πŸ“‚ ls β€” List files
πŸ“ pwd β€” Current directory
πŸ”€ cd β€” Change directory
πŸ“„ cat β€” Read file
πŸ”Ž grep β€” Search text
🧭 find β€” Find files
πŸ” chmod β€” Change permissions
πŸ‘€ chown β€” Change ownership
🌐 ip β€” Network information
πŸ”— ss β€” Listening ports
πŸ–₯ ps β€” Running processes
⚑️ top β€” Process monitor
πŸ’€ kill β€” Terminate process
πŸ’Ύ df β€” Disk usage
πŸ“Š du β€” Directory size
πŸ“¦ tar β€” Create/extract archives
⬇️ wget β€” Download files
🌍 curl β€” HTTP requests
πŸ“‘ ssh β€” Remote login
πŸ”§ systemctl β€” Manage services
πŸ“¦ apt β€” Package management
πŸ“– man β€” Command manual
πŸ•˜ history β€” Command history

🎯 Whether you're a Linux beginner, pentester, SOC analyst, DevOps engineer, or sysadmin β€” these are essential.

πŸ“Œ Save this cheat sheet
πŸ” Repost to help someone learning Linux today.
❀9πŸ‘1