Welcome
🏠 Spookys's Pentesting Knowledge Base
A growing collection of pentesting notes, CTF writeups, lab walkthroughs, cheat sheets, and methodology.
📚 Knowledge Base
Enumeration
-
Linux Enumeration
-
Windows Enumeration
-
AD Enumeration
-
Web Enumeration
Exploitation
-
SQL Injection
-
SSRF
-
XXE
-
Command Injection
Privilege Escalation
-
Linux PrivEsc
-
Windows PrivEsc
-
Active Directory Abuse
Labs & CTFs
-
HackTheBox
-
TryHackMe
-
Proving Grounds
-
VulnHub
Cheat Sheets
-
Nmap
-
Burp Suite
-
Impacket
-
BloodHound
-
PowerView
🚩 Recent Writeups
-
HTB: Forest
-
HTB: Sauna
-
THM: Attacktive Directory
-
Proving Grounds: ClamAV
🔗 External Resources
-
GitHub
-
LinkedIn
-
Resume
##DISCLAIMER##
All content on this site is provided for educational and informational purposes only and should only be used in training environments for Pen Test learning. Content related to privacy tools, networking, or security is provided for research and educational purposes only. I make no guarantees about the completeness, reliability, or accuracy of the information. Any action you take based on this content is strictly at your own risk. This website and content within this repository may contain links to external sites. I am not responsible for the content or reliability of any external websites. Code examples are provided as-is, without warranty of any kind. Always test in a safe environment before running on production systems.