Overview

01
Windows Internals
DLL Internals
DLL loading, hijacking, proxying, and injection techniques.
→
02
Windows Internals
PE Structure
Portable Executable format: headers, sections, imports, and exports.
→
03
Windows Internals
Processes & Threads
Process creation, hollowing, injection, and thread manipulation.
→
04
Windows Internals
Security Mechanisms
ASLR, DEP, CFG, PPL, and Windows security subsystem internals.
→
05
Windows Internals
Memory Mapping
Virtual memory, section objects, VAD trees, and mapped files.
→
06
Active Directory
Kerberos
Kerberoasting, AS-REP, delegation attacks, and ticket abuse.
→
07
Active Directory
LAPS
Local Administrator Password Solution — enumeration and bypass.
→
08
Active Directory
Certificate Services (AD CS)
ESC1–ESC8 abuse, template misconfigurations, and certificate theft.
→
09
Red Team
Post-Exploitation Enumeration
Host and domain enumeration after initial foothold.
→
10
Red Team
Privilege Escalation
Local and domain privilege escalation techniques on Windows.
→
11
Red Team
Lateral Movement
Pass-the-Hash, Pass-the-Ticket, WMI, DCOM, and SMB relay.
→
12
Red Team
Persistence
Registry, scheduled tasks, services, and AD persistence mechanisms.
→
13
Red Team
OPSEC
Avoiding detection: log evasion, AMSI bypass, and EDR blinding.
→
14
Red Team
Proxying & Traffic Channeling
SOCKS proxies, port forwarding, and traffic redirection techniques.
→
15
Web Security
CSRF
Cross-site request forgery — patterns, bypasses, and SameSite evasion.
→
16
Web Security
GraphQL
Introspection, batching attacks, IDOR, and auth bypass in GraphQL APIs.
→
17
Web Security
HTTP Request Smuggling
CL.TE and TE.CL desync, server-side request poisoning.
→
18
Web Security
JWT Attacks
Algorithm confusion, none algorithm, kid injection, and secret cracking.
→
19
Web Security
Logic Flaws
Business logic vulnerabilities, price manipulation, and workflow bypass.
→
20
Web Security
Race Conditions
Single-endpoint and multi-endpoint races, limit overrun, and TOCTOU.
→
21
Web Security
WebSocket Attacks
CSWSH, message hijacking, and WebSocket-based SSRF chains.
→
no results — try a different filter