|
37 | 37 | - [Mobile Phishing Malicious Apps](generic-methodologies-and-resources/phishing-methodology/mobile-phishing-malicious-apps.md) |
38 | 38 | - [Phishing Files & Documents](generic-methodologies-and-resources/phishing-methodology/phishing-documents.md) |
39 | 39 | - [Basic Forensic Methodology](generic-methodologies-and-resources/basic-forensic-methodology/README.md) |
| 40 | + - [Adaptixc2 Config Extraction And Ttps](generic-methodologies-and-resources/basic-forensic-methodology/adaptixc2-config-extraction-and-ttps.md) |
40 | 41 | - [Baseline Monitoring](generic-methodologies-and-resources/basic-forensic-methodology/file-integrity-monitoring.md) |
41 | 42 | - [Anti-Forensic Techniques](generic-methodologies-and-resources/basic-forensic-methodology/anti-forensic-techniques.md) |
42 | 43 | - [Docker Forensics](generic-methodologies-and-resources/basic-forensic-methodology/docker-forensics.md) |
|
58 | 59 | - [Decompile compiled python binaries (exe, elf) - Retreive from .pyc](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/.pyc.md) |
59 | 60 | - [Browser Artifacts](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/browser-artifacts.md) |
60 | 61 | - [Deofuscation vbs (cscript.exe)](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/desofuscation-vbs-cscript.exe.md) |
| 62 | + - [Discord Cache Forensics](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/discord-cache-forensics.md) |
61 | 63 | - [Local Cloud Storage](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/local-cloud-storage.md) |
62 | 64 | - [Office file analysis](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/office-file-analysis.md) |
63 | 65 | - [PDF File analysis](generic-methodologies-and-resources/basic-forensic-methodology/specific-software-file-type-tricks/pdf-file-analysis.md) |
|
81 | 83 | - [Basic Python](generic-methodologies-and-resources/python/basic-python.md) |
82 | 84 | - [Threat Modeling](generic-methodologies-and-resources/threat-modeling.md) |
83 | 85 | - [Blockchain & Crypto](blockchain/blockchain-and-crypto-currencies/README.md) |
| 86 | + - [Defi/AMM Hook Precision](blockchain/blockchain-and-crypto-currencies/defi-amm-hook-precision.md) |
84 | 87 | - [Lua Sandbox Escape](generic-methodologies-and-resources/lua/bypass-lua-sandboxes/README.md) |
85 | 88 |
|
86 | 89 | # 🧙♂️ Generic Hacking |
|
129 | 132 | - [Seccomp](linux-hardening/privilege-escalation/docker-security/seccomp.md) |
130 | 133 | - [Weaponizing Distroless](linux-hardening/privilege-escalation/docker-security/weaponizing-distroless.md) |
131 | 134 | - [Escaping from Jails](linux-hardening/privilege-escalation/escaping-from-limited-bash.md) |
| 135 | + - [Posix Cpu Timers Toctou Cve 2025 38352](linux-hardening/privilege-escalation/linux-kernel-exploitation/posix-cpu-timers-toctou-cve-2025-38352.md) |
132 | 136 | - [euid, ruid, suid](linux-hardening/privilege-escalation/euid-ruid-suid.md) |
133 | 137 | - [Interesting Groups - Linux Privesc](linux-hardening/privilege-escalation/interesting-groups-linux-pe/README.md) |
134 | 138 | - [lxd/lxc Group - Privilege escalation](linux-hardening/privilege-escalation/interesting-groups-linux-pe/lxd-privilege-escalation.md) |
|
238 | 242 | - [Windows Local Privilege Escalation](windows-hardening/windows-local-privilege-escalation/README.md) |
239 | 243 | - [Abusing Auto Updaters And Ipc](windows-hardening/windows-local-privilege-escalation/abusing-auto-updaters-and-ipc.md) |
240 | 244 | - [Arbitrary Kernel Rw Token Theft](windows-hardening/windows-local-privilege-escalation/arbitrary-kernel-rw-token-theft.md) |
241 | | - - [Dll Hijacking](windows-hardening/windows-local-privilege-escalation/dll-hijacking.md) |
242 | 245 | - [Abusing Tokens](windows-hardening/windows-local-privilege-escalation/privilege-escalation-abusing-tokens.md) |
243 | 246 | - [Access Tokens](windows-hardening/windows-local-privilege-escalation/access-tokens.md) |
244 | 247 | - [ACLs - DACLs/SACLs/ACEs](windows-hardening/windows-local-privilege-escalation/acls-dacls-sacls-aces.md) |
|
353 | 356 | - [Frida Tutorial 3](mobile-pentesting/android-app-pentesting/frida-tutorial/owaspuncrackable-1.md) |
354 | 357 | - [Objection Tutorial](mobile-pentesting/android-app-pentesting/frida-tutorial/objection-tutorial.md) |
355 | 358 | - [Google CTF 2018 - Shall We Play a Game?](mobile-pentesting/android-app-pentesting/google-ctf-2018-shall-we-play-a-game.md) |
| 359 | + - [In Memory Jni Shellcode Execution](mobile-pentesting/android-app-pentesting/in-memory-jni-shellcode-execution.md) |
356 | 360 | - [Insecure In App Update Rce](mobile-pentesting/android-app-pentesting/insecure-in-app-update-rce.md) |
357 | 361 | - [Install Burp Certificate](mobile-pentesting/android-app-pentesting/install-burp-certificate.md) |
358 | 362 | - [Intent Injection](mobile-pentesting/android-app-pentesting/intent-injection.md) |
|
487 | 491 | - [88tcp/udp - Pentesting Kerberos](network-services-pentesting/pentesting-kerberos-88/README.md) |
488 | 492 | - [Harvesting tickets from Windows](network-services-pentesting/pentesting-kerberos-88/harvesting-tickets-from-windows.md) |
489 | 493 | - [Harvesting tickets from Linux](network-services-pentesting/pentesting-kerberos-88/harvesting-tickets-from-linux.md) |
| 494 | + - [Wsgi](network-services-pentesting/pentesting-web/wsgi.md) |
490 | 495 | - [110,995 - Pentesting POP](network-services-pentesting/pentesting-pop.md) |
491 | 496 | - [111/TCP/UDP - Pentesting Portmapper](network-services-pentesting/pentesting-rpcbind.md) |
492 | 497 | - [113 - Pentesting Ident](network-services-pentesting/113-pentesting-ident.md) |
|
566 | 571 | - [15672 - Pentesting RabbitMQ Management](network-services-pentesting/15672-pentesting-rabbitmq-management.md) |
567 | 572 | - [24007,24008,24009,49152 - Pentesting GlusterFS](network-services-pentesting/24007-24008-24009-49152-pentesting-glusterfs.md) |
568 | 573 | - [27017,27018 - Pentesting MongoDB](network-services-pentesting/27017-27018-mongodb.md) |
| 574 | +- [32100 Udp - Pentesting Pppp Cs2 P2p Cameras](network-services-pentesting/32100-udp-pentesting-pppp-cs2-p2p-cameras.md) |
569 | 575 | - [44134 - Pentesting Tiller (Helm)](network-services-pentesting/44134-pentesting-tiller-helm.md) |
570 | 576 | - [44818/UDP/TCP - Pentesting EthernetIP](network-services-pentesting/44818-ethernetip.md) |
571 | 577 | - [47808/udp - Pentesting BACNet](network-services-pentesting/47808-udp-bacnet.md) |
|
725 | 731 | - [SOME - Same Origin Method Execution](pentesting-web/xss-cross-site-scripting/some-same-origin-method-execution.md) |
726 | 732 | - [Sniff Leak](pentesting-web/xss-cross-site-scripting/sniff-leak.md) |
727 | 733 | - [Steal Info JS](pentesting-web/xss-cross-site-scripting/steal-info-js.md) |
| 734 | + - [Wasm Linear Memory Template Overwrite Xss](pentesting-web/xss-cross-site-scripting/wasm-linear-memory-template-overwrite-xss.md) |
728 | 735 | - [XSS in Markdown](pentesting-web/xss-cross-site-scripting/xss-in-markdown.md) |
729 | 736 | - [XSSI (Cross-Site Script Inclusion)](pentesting-web/xssi-cross-site-script-inclusion.md) |
730 | 737 | - [XS-Search/XS-Leaks](pentesting-web/xs-search/README.md) |
|
768 | 775 | - [Stack Shellcode - arm64](binary-exploitation/stack-overflow/stack-shellcode/stack-shellcode-arm64.md) |
769 | 776 | - [Stack Pivoting - EBP2Ret - EBP chaining](binary-exploitation/stack-overflow/stack-pivoting-ebp2ret-ebp-chaining.md) |
770 | 777 | - [Uninitialized Variables](binary-exploitation/stack-overflow/uninitialized-variables.md) |
771 | | -- [ROP & JOP](binary-exploitation/rop-return-oriented-programing/README.md) |
| 778 | + - [ROP & JOP](binary-exploitation/rop-return-oriented-programing/README.md) |
772 | 779 | - [BROP - Blind Return Oriented Programming](binary-exploitation/rop-return-oriented-programing/brop-blind-return-oriented-programming.md) |
773 | 780 | - [Ret2csu](binary-exploitation/rop-return-oriented-programing/ret2csu.md) |
774 | 781 | - [Ret2dlresolve](binary-exploitation/rop-return-oriented-programing/ret2dlresolve.md) |
|
838 | 845 | - [WWW2Exec - \_\_malloc_hook & \_\_free_hook](binary-exploitation/arbitrary-write-2-exec/aw2exec-__malloc_hook.md) |
839 | 846 | - [Common Exploiting Problems](binary-exploitation/common-exploiting-problems.md) |
840 | 847 | - [Linux kernel exploitation - toctou](binary-exploitation/linux-kernel-exploitation/posix-cpu-timers-toctou-cve-2025-38352.md) |
| 848 | +- [PS5 compromission](binary-exploitation/freebsd-ptrace-rfi-vm_map-prot_exec-bypass-ps5.md) |
841 | 849 | - [Windows Exploiting (Basic Guide - OSCP lvl)](binary-exploitation/windows-exploiting-basic-guide-oscp-lvl.md) |
842 | | -- [iOS Exploiting](binary-exploitation/ios-exploiting.md) |
| 850 | +- [iOS Exploiting](binary-exploitation/ios-exploiting/README.md) |
| 851 | + - [ios CVE-2020-27950-mach_msg_trailer_t](binary-exploitation/ios-exploiting/CVE-2020-27950-mach_msg_trailer_t.md) |
| 852 | + - [ios CVE-2021-30807-IOMobileFrameBuffer](binary-exploitation/ios-exploiting/CVE-2021-30807-IOMobileFrameBuffer.md) |
| 853 | + - [ios Corellium](binary-exploitation/ios-exploiting/ios-corellium.md) |
| 854 | + - [ios Heap Exploitation](binary-exploitation/ios-exploiting/ios-example-heap-exploit.md) |
| 855 | + - [ios Physical UAF - IOSurface](binary-exploitation/ios-exploiting/ios-physical-uaf-iosurface.md) |
843 | 856 |
|
844 | 857 | # 🤖 AI |
845 | 858 | - [AI Security](AI/README.md) |
|
889 | 902 | - [RC4 - Encrypt\&Decrypt](crypto-and-stego/rc4-encrypt-and-decrypt.md) |
890 | 903 | - [Stego Tricks](crypto-and-stego/stego-tricks.md) |
891 | 904 | - [Esoteric languages](crypto-and-stego/esoteric-languages.md) |
892 | | -- [Blockchain & Crypto Currencies](crypto-and-stego/blockchain-and-crypto-currencies.md) |
893 | 905 |
|
894 | 906 | # ✍️ TODO |
895 | 907 |
|
|
931 | 943 | - [Stealing Sensitive Information Disclosure from a Web](todo/stealing-sensitive-information-disclosure-from-a-web.md) |
932 | 944 | - [Post Exploitation](todo/post-exploitation.md) |
933 | 945 | - [Investment Terms](todo/investment-terms.md) |
934 | | -- [Cookies Policy](todo/cookies-policy.md) |
| 946 | +- [Cookies Policy](todo/cookies-policy.md) |
0 commit comments