πΊοΈ Mind Maps
Visual attack flows and concept relationships for better understanding.
CPTS Kill Chain
Complete penetration testing methodology flow
Nmap Scanning Workflow
Systematic approach to Nmap scanning
Service Enumeration Flow
How to approach service enumeration
Shell Types
Different types of shells and when to use them
Pivoting Techniques
Methods for network pivoting
AD Enumeration Path
Active Directory enumeration workflow
AD Attack Paths
Common Active Directory attack techniques
SQL Injection Types
Different SQL injection techniques
Web Recon Workflow
Web application reconnaissance methodology
Linux PrivEsc Checklist
Linux privilege escalation methodology
Windows PrivEsc Checklist
Windows privilege escalation methodology
LFI to RCE
Escalating LFI to remote code execution
Password Attack Flow
Password cracking methodology
Common Services Attack Map
Attack vectors for common services
File Transfer Methods
Ways to transfer files to targets
Web Attack Checklist
Common web vulnerabilities to test
Reporting Structure
Penetration test report sections
Metasploit Workflow
Using Metasploit Framework
Burp Suite Workflow
Web testing with Burp Suite
Nessus Scanning
Vulnerability scanning with Nessus
CPTS Full Attack Path
Complete CPTS exam attack methodology - External to Domain Admin
LLMNR/NBT-NS Attack Flow
Poisoning and relay attack methodology
ACL Abuse Paths
Active Directory ACL attack vectors
Delegation Attack Paths
Kerberos delegation abuse
AD CS Attack Paths
Certificate Services exploitation
Documentation Flow
Proper pentest documentation methodology
Domain Trust Attacks
Attacking trust relationships
Pentest Process Lifecycle
Standard penetration testing phases
Vulnerability Assessment Flow
Process for identifying and validating vulnerabilities
Fuzzing Workflow with Ffuf
Web fuzzing methodology
Login Brute Force Strategy
Attacking authentication mechanisms
SQLMap Automation
Automated SQL injection workflow
XSS Attack Methodology
Finding and exploiting Cross-Site Scripting
File Upload Exploitation
Bypassing file upload restrictions
Command Injection Flow
Injecting OS commands
Web Attacks Overview
Common web vulnerabilities
CMS Attack Workflow
Attacking Content Management Systems
Getting Started Checklist
Initial setup for penetration testing
OpenVAS Workflow
Using Greenbone Vulnerability Manager
Enterprise Attack Simulation
Full scope enterprise penetration test
Ticket & Certificate Attacks
Lateral movement with Kerberos and Certificates