Walkthroughs
Step-by-step HackTheBox machine writeups, Pro Labs, Fortresses and exam-lab walkthroughs — full recon, exploitation and privilege …
The complete web checklist turned into a how-to-test field guide: for every item — recon, authentication, sessions, access control, injection, business logic, file handling, APIs, client-side, infra, crypto and info-disclosure, plus SaaS / banking / e-commerce / healthcare / admin specifics — the scenario, the real command (ffuf, sqlmap, nuclei, jwt_tool, Burp), the step-by-step, the exact finding to report, and the fix.
Read article →Step-by-step HackTheBox CAPE exam walkthrough — a multi-forest Active Directory environment across three trust boundaries. Every command explained, all flags and the full compromise chain.
Read article →A Wi-Fi-focused wireless pentest checklist turned into a how-to-test field guide: survey and recon, WEP, WPA2-PSK (4-way handshake and PMKID cracking), WPA3 and downgrade, WPS, Enterprise 802.1X/EAP (evil twin and credential relay, certificate validation), rogue AP / evil twin / captive portal, deauth and management-frame protection, client-side attacks, and guest/corporate segmentation — plus Bluetooth/BLE — each with the scenario, the real command (aircrack-ng, hcxdumptool, hashcat, hostapd-wp
Read article →Step-by-step HackTheBox machine writeups, Pro Labs, Fortresses and exam-lab walkthroughs — full recon, exploitation and privilege …
Hands-on web exploitation — SQLi, XSS, SSRF, XXE, SSTI, request smuggling and the full OWASP Top 10.
LLM and ML security — prompt injection, jailbreaks, RAG attacks, adversarial ML and AI red teaming.
Attacking and defending Active Directory — Kerberoasting, ADCS, delegation, ACL abuse, BloodHound, trusts and persistence.
Adversary simulation — C2, phishing, initial access, AV/EDR evasion, lateral movement and persistence.
Android and iOS pentesting — Frida, APK/IPA reverse engineering, SSL pinning bypass and insecure storage.
Binary analysis and exploit dev — Ghidra/IDA, x86 assembly, ROP, fuzzing and packed-binary unpacking.
Network attack and defence — ARP/DHCP/VLAN abuse, MITM, pivoting, Wi-Fi, BLE, SNMP and SMB.
API pentesting — REST, GraphQL and gRPC, the OWASP API Top 10, BOLA/BFLA, webhooks and gateways.
Field-ready pentest checklists turned into step-by-step "how to test" guides — for every item: the scenario, the real co…
Multi-host HackTheBox Pro Lab walkthroughs — full enterprise-network compromise across forests and flags.
Cloud attack paths — AWS, Azure and GCP IAM, Kubernetes, container escapes and CI/CD pipeline abuse.
Security tooling and automation — custom scripts and exploits for recon, exploitation and post-exploitation.
Linux and Windows privilege escalation — misconfigs, SUID, kernel exploits, token abuse and weak services.
HackTheBox Fortress walkthroughs — multi-flag vendor challenge labs spanning web, binary, crypto and more.
Open-source intelligence — target profiling, breach data, dark-web monitoring and OSINT tooling.
Exam reviews and prep guides — OSCP, CPTS, CWEE and more, with strategy, lab notes and real exam experience.
Static and dynamic malware analysis — unpacking, behavioural sandboxing, RE and indicators of compromise.
Ciphers, hashing and crypto attacks — padding oracles, hash cracking, RSA flaws and TLS weaknesses.