Hacking Articles
24.5K subscribers
1.47K photos
165 files
1.08K links
House of Pentester
Download Telegram
πŸ”₯ Cybersecurity Tools Cheat Sheet

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸ›‘ Blue Team vs Red Team β€” Know Your Arsenal

πŸ”΅ BLUE TEAM
🟒 Splunk β€” SIEM & log analysis
πŸ”΅ Microsoft Sentinel β€” SIEM & SOAR
🟣 Elastic Stack β€” Search & visualization
🦊 Wazuh β€” Endpoint security & monitoring
πŸ” Osquery β€” Endpoint visibility
🦜 Velociraptor β€” DFIR & incident response

🟣 COMMON TOOLS
🦈 Wireshark β€” Network analysis
πŸ‘ Nmap β€” Network discovery
🌐 Netcat β€” Network troubleshooting
🟠 Burp Suite β€” Web security testing
βš”οΈ MITRE Caldera β€” Adversary emulation

πŸ”΄ RED TEAM
πŸ’₯ Metasploit β€” Penetration testing
🟒 Cobalt Strike β€” Adversary simulation
πŸ• BloodHound β€” AD attack-path analysis
🐈 Mimikatz β€” Credential testing
πŸ’‰ SQLmap β€” SQL injection testing
πŸ”“ Hashcat β€” Password/hash recovery

🎯 The best security professionals understand both sides:
Attack to understand β†’ Defend to protect.

πŸ“Œ Save this cheat sheet for your cybersecurity toolkit.
πŸ” Repost to help another security learner.
❀3
πŸš€ Cybersecurity Roadmap β€” From Beginner to Advanced

Confused about where to start your cybersecurity journey? πŸ§‘β€πŸ’»πŸ”

Follow a structured path instead of randomly collecting certifications:

🟒 Beginner
🎯 TryHackMe
🎯 HackTheBox

🟑 Build Practical Skills
πŸ§ͺ Immersive Labs
πŸ›  VulnHub
🎯 Practical labs & CTFs

🟠 Penetration Testing
πŸ“š PNPT
πŸ† OSCP

πŸ”΄ Advanced
⚑️ OSCE
πŸŽ“ Advanced offensive security skills

πŸ’‘ Don't chase certificates. Chase skills.

Labs β†’ Fundamentals β†’ Real-world practice β†’ Certifications β†’ Specialization

πŸ“Œ Save this roadmap for your cybersecurity journey.

πŸ” Repost it to help someone starting in cybersecurity today.

πŸŽ“ Book FREE Career Counselling

πŸ“ Register for Demo Session:
https://forms.gle/bowpX9TGEs41GDG99

🌐 Website: https://www.ignitetechnologies.in
πŸ“² WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ”— Connect With Us

πŸ’Ό LinkedIn: https://www.linkedin.com/company/hackingarticles/
🐦 X (Twitter): https://twitter.com/hackinarticles
πŸ“’ Telegram: https://t.me/hackinarticles
πŸ”₯ Preparing for OSCP? Don't Just Study. Practice.

OSCP preparation requires more than memorizing tools or following tutorials.

You need to build a structured penetration-testing methodology and develop practical skills through consistent hands-on practice.

🎯 OSCP Training Program Online

Strengthen your penetration-testing skills with practical training focused on:

πŸ”Ž Information Gathering & Enumeration
πŸ’» Exploitation Techniques
🐧 Linux Privilege Escalation
πŸͺŸ Windows Privilege Escalation
🌐 Web Application Security
🏒 Active Directory Security
πŸ” Post-Exploitation
πŸ“‹ Penetration Testing Reporting
πŸ§ͺ Hands-on Lab Practice
🎯 OSCP Exam Preparation

Who Is This Program For?

πŸ‘¨β€πŸ’» Aspiring Penetration Testers
πŸ” Cybersecurity Professionals
πŸ›‘ VAPT Professionals
🎯 Ethical Hackers
πŸ”΄ Red Teamers
πŸ’Ό Security Engineers
πŸ“š OSCP Aspirants

πŸš€ Build Skills. Practice More. Prepare Smarter.

πŸŽ“ Book FREE Career Counselling

πŸ“ Register for Demo Session:
https://forms.gle/bowpX9TGEs41GDG99

🌐 Website:
https://www.ignitetechnologies.in

πŸ“² WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ”— Connect With Us

πŸ’Ό LinkedIn:
https://www.linkedin.com/company/hackingarticles/

🐦 X (Twitter):
https://twitter.com/hackinarticles

πŸ“’ Telegram:
https://t.me/hackinarticles
❀1
🚨 OSEP TRAINING PROGRAM β€” ADVANCED RED TEAMING πŸ”₯

πŸ“… LIMITED SEATS β€” ADMISSIONS CLOSING SOON

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

Ready to move beyond basic pentesting?

Level up your skills with an OSEP-focused training program built around advanced offensive security, evasion, and real-world attack scenarios. βš”οΈ

πŸ”₯ What you'll focus on:

πŸ›‘ Defense Evasion
πŸ’» Windows Internals
βš”οΈ Advanced Exploitation
πŸ” Credential & Token Abuse
🌐 Web & Network Attacks
🏒 Active Directory Attacks
πŸ”€ Lateral Movement
🎯 Command & Control
🧩 AV/EDR Evasion Concepts
πŸ’₯ Payload Development
πŸ”— Pivoting & Tunneling
πŸ“ Professional Reporting

OSEP's exam simulates a corporate network where you first obtain a foothold and then perform additional internal attacks across multiple machines. The current exam provides 47h 45m for the challenge plus 24h for documentation.

🎯 Perfect for:

πŸ”Ή Experienced Pentesters
πŸ”Ή Red Teamers
πŸ”Ή OSCP Graduates
πŸ”Ή Offensive Security Professionals
πŸ”Ή Cybersecurity Professionals

πŸ’‘ Don't just learn exploitation.

Learn how to bypass defenses, move through networks, and think like a real red team operator.

⚠️ Training and techniques should only be applied in authorized environments.

πŸ”₯ LEVEL UP FROM PENTESTING TO ADVANCED RED TEAMING.

♻️ Repost & tag someone preparing for OSEP!
❀5
πŸ›‘ Cybersecurity Hygiene Checklist β€” 10 Essentials

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸ” Good cybersecurity starts with good security hygiene.

Here are 10 essential practices every organization and security professional should follow:

πŸ›‘ 01. Security First
β†’ Integrate security into every layer from the beginning.

πŸ” 02. Vulnerability Assessments
β†’ Continuously identify, test and remediate vulnerabilities.

πŸ”‘ 03. Multi-Factor Authentication
β†’ Add an extra layer of protection beyond passwords.

πŸ”’ 04. Data Encryption
β†’ Protect sensitive data at rest and in transit.

πŸ‘ 05. Continuous Monitoring
β†’ Detect unusual and suspicious activity quickly.

🚫 06. Least Privilege
β†’ Give users only the access they actually need.

πŸ’Ύ 07. Regular Backups
β†’ Maintain secure and encrypted backups for recovery.

πŸŽ“ 08. Employee Training
β†’ Keep teams updated on threats and security best practices.

πŸ“§ 09. Email Vigilance
β†’ Stay alert for phishing, malicious links and attachments.

🚨 10. Incident Response Plan
β†’ Have a clear, tested plan ready before an incident happens.

πŸ’‘ Security isn't a one-time task β€” it's a continuous process.

πŸ“Œ Save this checklist.
πŸ” Repost to help someone improve their security hygiene.
πŸ‘1
This media is not supported in your browser
VIEW IN TELEGRAM
🌐 OSI Reference Model β€” Networking Cheat Sheet

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸš€ If you’re learning Cybersecurity, Networking or Pentesting β€” master the OSI Model first.

Here’s the 7-layer OSI model at a glance:

7️⃣ Application
πŸ“§ HTTP β€’ HTTPS β€’ FTP β€’ SMTP β€’ SSH

6️⃣ Presentation
πŸ” Encryption β€’ Compression β€’ Data Formatting

5️⃣ Session
πŸ”— Session Establishment β€’ Connection Management β€’ RPC

4️⃣ Transport
🚚 TCP β€’ UDP β€’ Port Numbers

3️⃣ Network
🌐 IP β€’ Routing β€’ IPSec

2️⃣ Data Link
πŸ”— MAC Addresses β€’ ARP β€’ VLAN β€’ STP

1️⃣ Physical
⚑️ Copper β€’ UTP β€’ Fiber Optics β€’ Bit Stream

🧠 Quick memory trick:
All People Seem To Need Data Processing

🎯 Understanding these layers makes it easier to troubleshoot networks and understand attacks, defenses, and protocols.

πŸ“Œ Save this for your networking revision.
πŸ” Repost to help another cybersecurity learner.
❀3
This media is not supported in your browser
VIEW IN TELEGRAM
🐳 Top 19 Docker Commands You Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸš€ Learning Docker? Bookmark these 19 commands.

▢️ docker run β€” Run a container
πŸ— docker build β€” Build an image
⬇️ docker pull β€” Pull an image
⬆️ docker push β€” Push an image
πŸ–Ό docker images β€” List images
πŸ“¦ docker ps β€” List running containers
πŸ›‘ docker stop β€” Stop a container
▢️ docker start β€” Start a stopped container
πŸ”„ docker restart β€” Restart a container
πŸ’₯ docker kill β€” Force-stop a container
πŸ—‘ docker rm β€” Remove a container
❌ docker rmi β€” Remove an image
⚑️ docker exec β€” Execute a command inside a container
πŸ“œ docker logs β€” View container logs
πŸ” docker inspect β€” Inspect Docker objects
πŸ“‚ docker cp β€” Copy files between host & container
🧹 docker system prune β€” Clean unused Docker resources
πŸ’Ύ docker save β€” Save an image to an archive
πŸ“₯ docker load β€” Load an image from an archive

🧠 Master these commands and Docker becomes much easier to work with.

Perfect for DevOps, Cloud, Linux, DevSecOps & Cybersecurity learners.

πŸ“Œ Save this cheat sheet.
πŸ” Repost to help someone learning Docker.
❀2πŸ”₯1
Become Job-Ready in Cyber Security with Practical Labs

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
πŸ”₯ OSCP isn’t about knowing more tools.

πŸ“… LIMITED SEATS β€” ADMISSIONS CLOSING SOON

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

It’s about knowing what to do next when nothing works.

Nmap. Burp. Metasploit. PrivEsc.

Tools are easy to learn.
Methodology is what gets you through the exam.

πŸš€ OSCP Training Program

βœ… Hands-on Labs
βœ… Linux & Windows PrivEsc
βœ… Web Pentesting
βœ… Active Directory
βœ… Pivoting & Tunneling
βœ… Exam-Style Practice
βœ… Reporting & Methodology

🎯 Want to know the complete curriculum, batch details & training fees?

πŸ‘‰ Fill out the form and our team will contact you:
https://forms.gle/bowpX9TGEs41GDG99

⚑️ Limited seats for the upcoming batch.
❀5
πŸ”₯ Red Team vs Blue Team β€” What’s the Difference?

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸŸ₯ RED TEAM = Attack to Find Weaknesses
🟦 BLUE TEAM = Defend, Detect & Respond

πŸŸ₯ Red Team
🎯 Simulates real-world attacks
πŸ” Identifies vulnerabilities & attack paths
πŸ’» Uses offensive security techniques
πŸ§ͺ Performs penetration testing
🧠 Focuses on finding security gaps

🟦 Blue Team
πŸ›‘ Protects systems & networks
πŸ‘ Monitors security events
🚨 Detects & responds to threats
πŸ”§ Implements security controls
πŸ”Ž Investigates suspicious activity

🀝 Together:
Red Team finds the weaknesses β†’ Blue Team strengthens the defenses.

πŸ’‘ Understanding both offensive and defensive security gives you a broader view of how attacks happen and how organizations respond.

πŸ“Œ Save this for your cybersecurity journey.
πŸ” Repost to help another security learner.
❀5
You know the commands.

But can you actually hack the box? πŸ§ πŸ’»

Reading pentesting tutorials β‰  being able to solve a real CTF.

That’s why we built Advanced CTF Training around hands-on attack chains:

πŸ”΄ Linux & Windows Pentesting
πŸ”΄ Active Directory
πŸ”΄ Privilege Escalation
πŸ”΄ Web Attacks
πŸ”΄ Reverse Shells
πŸ”΄ Pivoting & Tunneling
πŸ”΄ DACL Abuse + BloodHound
πŸ”΄ MSSQL Exploitation
πŸ”΄ Real CTF Challenges β€” Easy β†’ Hard

20 Modules. Live Labs. Practical Skills.

Stop collecting notes.
Start solving machines. πŸ”₯

πŸ‘‰ https://www.ignitetechnologies.in/ctf-advanced.php
This media is not supported in your browser
VIEW IN TELEGRAM
🐧 Linux File System β€” Quick Reference

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸš€ If you're learning Linux or cybersecurity, you need to know what these directories are for.

πŸ“ /bin β€” Essential command binaries
βš™οΈ /boot β€” System boot files
πŸ”Œ /dev β€” Device files
πŸ›  /etc β€” System configuration
🏠 /home β€” User home directories
πŸ“š /lib β€” Shared libraries
πŸ’Ώ /media β€” Removable media
πŸ“Œ /mnt β€” Temporarily mounted filesystems
πŸ“¦ /opt β€” Add-on applications

πŸ” /proc β€” Process & kernel information
πŸ‘‘ /root β€” Root user's home directory
πŸƒ /run β€” Runtime program data
βš™οΈ /sbin β€” System binaries
🌐 /srv β€” Service-specific data
🧠 /sys β€” System/device information
πŸ—‘ /tmp β€” Temporary files
πŸ‘€ /usr β€” User-space programs & files
πŸ“Š /var β€” Frequently changing data

🎯 Why it matters for cybersecurity:
Understanding the Linux filesystem helps with system administration, incident response, malware analysis, privilege escalation research and troubleshooting.

πŸ“Œ Save this Linux cheat sheet.
πŸ” Repost to help another Linux learner.
πŸ‘3
This media is not supported in your browser
VIEW IN TELEGRAM
πŸ”₯ 8 Popular Network Protocols Every Cybersecurity Learner Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

🌐 How well do you know these network protocols?

Here are 8 protocols worth understanding:

🌍 HTTP β€” Web browsing & web communication
⚑️ HTTP/3 (QUIC) β€” Modern web transport over UDP
πŸ”’ HTTPS β€” Encrypted web communication
πŸ’¬ WebSocket β€” Real-time, full-duplex communication
πŸ”— TCP β€” Reliable, connection-oriented communication
πŸš€ UDP β€” Fast, connectionless communication
πŸ“§ SMTP β€” Sending email between mail servers
πŸ“ FTP β€” Uploading & downloading files

🧠 For cybersecurity professionals, knowing protocols helps you understand:

πŸ” Network traffic
πŸ›‘ Security controls
🚨 Attack detection
🌐 Web applications
πŸ“‘ Packet analysis
πŸ•΅οΈ SOC & threat hunting

πŸ“Œ Save this cheat sheet for your networking revision.
πŸ” Repost to help another cybersecurity learner.
πŸ”₯ Types of Privileged Accounts You Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

πŸ” Not all accounts are created equal β€” privileged accounts can become high-value targets.

Here are 8 types every cybersecurity professional should understand:

πŸ‘‘ Root / Superuser Accounts
β†’ Highest level of access

πŸ›‘ Admin Accounts
β†’ Manage systems, users & configurations

πŸ—„ Database Admin Accounts
β†’ Control databases & sensitive data

βš™οΈ Service Accounts
β†’ Used by applications and services

πŸ’» Application Accounts
β†’ Run applications with defined permissions

🀝 Vendor / Third-Party Accounts
β†’ External access for support & services

πŸ”‘ Privileged User Accounts
β†’ Elevated access for specific tasks

🚨 Emergency / Break-Glass Accounts
β†’ Emergency access when normal accounts aren't available

🎯 Security tip:
The more privileged an account is, the more important it becomes to apply MFA, least privilege, strong credential management, monitoring and regular access reviews.

πŸ“Œ Save this cheat sheet.
πŸ” Repost to help another cybersecurity professional.
❀4πŸ‘1πŸ”₯1
πŸ”₯ Top 25 RCE Parameters Every Bug Hunter Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Looking for potential Remote Code Execution (RCE) entry points during an authorized web security assessment? πŸ‘€

🎯 Common parameters to investigate:

cmd β€’ exec β€’ command β€’ execute β€’ ping
query β€’ jump β€’ code β€’ reg β€’ do
func β€’ arg β€’ option β€’ load β€’ process
step β€’ read β€’ function β€’ req β€’ feature
exe β€’ module β€’ payload β€’ run β€’ print

🧠 Bug Hunting Workflow

πŸ”Ž Discover input parameters
➑️ Identify where the input is processed
➑️ Understand the application's intended functionality
➑️ Test safely within the authorized scope
➑️ Validate impact before reporting

⚠️ Important: A parameter name alone does not indicate an RCE vulnerability. Always verify the application's behavior and test only systems you are authorized to assess.

πŸ“Œ Save this cheat sheet for your next pentest.
πŸ” Repost to help fellow security researchers.
❀3
πŸ”₯ Top 25 SQL Injection Parameters Every Bug Hunter Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Looking for potential SQL injection entry points? πŸ‘€
Start by understanding the application's input parameters.

🎯 Common parameters to investigate:

id β€’ page β€’ region β€’ nav β€’ main
dir β€’ search β€’ category β€’ url β€’ class
file β€’ news β€’ item β€’ menu β€’ lang
name β€’ ref β€’ title β€’ view β€’ topic
form β€’ data β€’ type β€’ join β€’ date

🧠 Bug Hunting Workflow

πŸ”Ž Discover parameters
➑️ Identify where user input reaches the application
➑️ Review how the backend processes the input
➑️ Test safely in an authorized environment
➑️ Confirm the behavior before reporting

⚠️ Important: A parameter name alone does not mean SQL injection exists. Always validate the application's actual behavior and authorization scope.

πŸ“Œ Save this cheat sheet.
πŸ” Repost for fellow bug hunters.
❀4
πŸ”₯ Top 25 XSS Parameters Every Bug Hunter Should Know

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Finding XSS isn't always about the payload.
Sometimes, finding the right parameter is the first step. πŸ‘€

🎯 Common parameters worth checking:

q β€’ s β€’ search β€’ id β€’ lang
keyword β€’ query β€’ page β€’ keywords β€’ year
view β€’ email β€’ type β€’ name β€’ p
month β€’ url β€’ terms β€’ key β€’ l
begindate β€’ enddate β€’ and more…

🧠 Bug Hunting Workflow:

πŸ”Ž Discover parameters
➑️ Understand their purpose
➑️ Trace where input is reflected
➑️ Check the application’s output encoding
➑️ Validate safely in an authorized environment

⚑️ Remember: A parameter isn't automatically vulnerable just because its name appears on a list. Always verify the application's actual behavior.

πŸ“Œ Save this cheat sheet for your next web security assessment.

πŸ” Repost to help another bug hunter!
πŸ”₯ OSCP isn’t about knowing more tools.

πŸ“… LIMITED SEATS β€” ADMISSIONS CLOSING SOON

πŸ”— Register: https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp: https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email: info@ignitetechnologies.in

It’s about knowing what to do next when nothing works.

Nmap. Burp. Metasploit. PrivEsc.

Tools are easy to learn.
Methodology is what gets you through the exam.

πŸš€ OSCP Training Program

βœ… Hands-on Labs
βœ… Linux & Windows PrivEsc
βœ… Web Pentesting
βœ… Active Directory
βœ… Pivoting & Tunneling
βœ… Exam-Style Practice
βœ… Reporting & Methodology

🎯 Want to know the complete curriculum, batch details & training fees?

πŸ‘‰ Fill out the form and our team will contact you:
https://forms.gle/bowpX9TGEs41GDG99

⚑️ Limited seats for the upcoming batch.
❀1
Become Job-Ready in Cyber Security with Practical Labs

Ready to build real-world cybersecurity skills with hands-on experience?

πŸš€ Ignite Technologies brings you a comprehensive Ethical Hacking Proactive Training Program designed with live sessions and core practical exposure β€” at an affordable price.

πŸ”— Register Now:
https://forms.gle/bowpX9TGEs41GDG99

πŸ’¬ WhatsApp:
https://wa.me/message/HIOPPNENLOX6F1

πŸ“§ Email:
info@ignitetechnologies.in

🎯 Book Your Demo Session Today!

πŸ“˜ What You’ll Learn:

βœ… Introduction to Ethical Hacking
βœ… Old School Learning Methodology
βœ… Networking Fundamentals
βœ… Reconnaissance (Footprinting, Scanning & Enumeration)
βœ… System Hacking
βœ… Post Exploitation & Persistence
βœ… Web Server Penetration Testing
βœ… Website Hacking Techniques
βœ… Malware Threats & Analysis
βœ… Wireless Network Security
βœ… Cryptography & Steganography
βœ… Sniffing Attacks
βœ… Denial of Service (DoS)
βœ… Evading IDS, Firewalls & Honeypots
βœ… Social Engineering Techniques
βœ… Mobile Platform Security

πŸ’‘ Whether you're a beginner or looking to strengthen your penetration testing skills, this training is structured to provide practical knowledge aligned with real-world attack scenarios.

Limited seats available. Secure yours now.
❀2
πŸ”₯ 28 Transfer Protocols You Should Know in Cybersecurity

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

One cheat sheet. 28 protocols. πŸš€

From everyday web traffic to secure file transfers and messaging:

🌐 Web & Application
HTTP β€’ HTTPS β€’ WebSocket β€’ Gopher β€’ RTSP β€’ RTMP

πŸ“ File Transfer
FTP β€’ FTPS β€’ SFTP β€’ SCP β€’ TFTP β€’ SMB β€’ SFTP

πŸ“§ Email
SMTP β€’ SMTPS β€’ IMAP β€’ IMAPS β€’ POP3 β€’ POP3S

πŸ” Secure Communication
SSH β€’ TLS β€’ QUIC β€’ LDAPS

πŸ“‘ Other Protocols
Telnet β€’ LDAP β€’ MQTT β€’ DNS/DIG β€’ WSS β€’ SMB

🧠 Why should security professionals care?

Every protocol creates a different communication pattern, attack surface, and troubleshooting path.

Understanding protocols helps with:

πŸ”Ž Network reconnaissance
πŸ›‘ SOC investigations
πŸ“‘ Traffic analysis
🐞 Web & API testing
πŸ” Secure configuration
🎯 Penetration testing

πŸ“Œ Save this cheat sheet for your networking & cybersecurity journey.

πŸ” Repost to help another security professional.
❀5
πŸ”₯ Cryptocurrency Attack Surface for OSINT Investigations

πŸ”₯ Telegram: https://t.me/hackinarticles
✴️ Twitter: https://x.com/hackinarticles

Crypto investigations are not just about wallet addresses. 🧠

A single transaction can lead investigators through an entire ecosystem:

β‚Ώ Cryptocurrency
β†’ Blockchain
β†’ Transactions
β†’ Wallets
β†’ Exchanges
β†’ Mining activity
β†’ Contracts
β†’ Blocks

πŸ”Ž Key OSINT pivots:

πŸ’° Wallet balances & transactions
πŸ• Transaction timestamps
πŸ”— Transaction hashes
πŸ’΅ Amounts & fees
🏦 Intermediary wallets
πŸ”„ Cryptocurrency exchanges
πŸŒ€ Tumbling/mixing services
⛏️ Mining pools & payouts
πŸ“œ Smart contracts
πŸ–Ό NFTs & tokens
🚨 Scam reports
πŸ“ˆ Historical & current prices

🎯 Investigation mindset:

One wallet β†’ multiple transactions β†’ connected wallets β†’ services β†’ infrastructure β†’ broader intelligence.

The real value comes from connecting the relationships between these data points, rather than examining a single blockchain record in isolation.

πŸ“Œ Save this OSINT cheat sheet.
πŸ” Repost it for investigators & cybersecurity professionals.
❀1πŸ‘Ž1