Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Type
/
to search
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
blaCCkHatHacEEkr
/
PENTESTING-BIBLE
Public
Notifications
You must be signed in to change notification settings
Fork
2.5k
Star
13.9k
Code
Issues
21
Pull requests
7
Actions
Projects
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
master
Branches
Tags
Go to file
Code
Open more actions menu
Folders and files
Name
Name
Last commit message
Last commit date
Latest commit
History
482 Commits
482 Commits
1-part-100-article
1-part-100-article
10-part-100-article
10-part-100-article
11-part-24-article
11-part-24-article
2-part-100-article
2-part-100-article
2
2
3-part-100-article
3-part-100-article
4-part-100-article
4-part-100-article
5-part-100-article
5-part-100-article
6-part-100-article
6-part-100-article
7-part-100-article
7-part-100-article
8-part-100-article
8-part-100-article
9-part-100-article
9-part-100-article
latest_articles
latest_articles
new
new
0xsp | Privilege Escalation cheatsheet.pdf
0xsp | Privilege Escalation cheatsheet.pdf
10 Minute Tips.pdf
10 Minute Tips.pdf
100% evasion - Write a crypter in any language to bypass AV.pdf
100% evasion - Write a crypter in any language to bypass AV.pdf
A Complete Penetration Testing & Hacking Tools List for Hackers & Security Professionals.pdf
A Complete Penetration Testing & Hacking Tools List for Hackers & Security Professionals.pdf
A Guide To Social Media Intelligence Gathering (SOCMINT).pdf
A Guide To Social Media Intelligence Gathering (SOCMINT).pdf
A Pentester's Guide - Part 2 (OSINT - LinkedIn is not just for jobs).pdf
A Pentester's Guide - Part 2 (OSINT - LinkedIn is not just for jobs).pdf
A Pivot Cheatsheet for Pentesters.pdf
A Pivot Cheatsheet for Pentesters.pdf
A guide to Linux Privilege Escalation.pdf
A guide to Linux Privilege Escalation.pdf
A guide to searching LinkedIn by email address.pdf
A guide to searching LinkedIn by email address.pdf
AWAE-OSWE PREP (Code analysis to gaining rce and automating everything with Python).pdf
AWAE-OSWE PREP (Code analysis to gaining rce and automating everything with Python).pdf
Abusing Firefox in Enterprise Environments.pdf
Abusing Firefox in Enterprise Environments.pdf
Analysing over 1M leaked passwords from the UK's biggest companies.pdf
Analysing over 1M leaked passwords from the UK's biggest companies.pdf
Android App Hacking: Hardcoded Credentials.pdf
Android App Hacking: Hardcoded Credentials.pdf
Apache Tomcat RCE by deserialization (CVE-2020-9484) – write-up and exploit.pdf
Apache Tomcat RCE by deserialization (CVE-2020-9484) – write-up and exploit.pdf
Attacking Azure Container Registries with Compromised Credentials.pdf
Attacking Azure Container Registries with Compromised Credentials.pdf
Authenticate against a MySQL server without knowing the cleartext password.pdf
Authenticate against a MySQL server without knowing the cleartext password.pdf
Beginner Tips to Own Boxes at HackTheBox !.pdf
Beginner Tips to Own Boxes at HackTheBox !.pdf
BountyCon CTF 2020 Write-up.pdf
BountyCon CTF 2020 Write-up.pdf
Brute Forcing User IDS via CSRF To Delete all Users with CSRF attack..pdf
Brute Forcing User IDS via CSRF To Delete all Users with CSRF attack..pdf
Bug Bounty (JavaScript Files).pdf
Bug Bounty (JavaScript Files).pdf
Bug Bounty Cheatsheet.pdf
Bug Bounty Cheatsheet.pdf
Bug Bounty Tips.pdf
Bug Bounty Tips.pdf
Bug Bytes #71 – 20K Facebook XSS, LevelUp 0x06 & Naffy’s Notes.pdf
Bug Bytes #71 – 20K Facebook XSS, LevelUp 0x06 & Naffy’s Notes.pdf
Bypassing modern XSS mitigations with code-reuse attacks.pdf
Bypassing modern XSS mitigations with code-reuse attacks.pdf
C3.pdf
C3.pdf
Cisco Password Cracking and Decrypting Guide - InfosecMatter.pdf
Cisco Password Cracking and Decrypting Guide - InfosecMatter.pdf
Comprehensive Guide on Password Spraying Attack.pdf
Comprehensive Guide on Password Spraying Attack.pdf
Comprehensive Guide to tcpdump (Part 2) .pdf
Comprehensive Guide to tcpdump (Part 2) .pdf
Corporate Reconnaissance.pdf
Corporate Reconnaissance.pdf
Credential Dumping: Applications.pdf
Credential Dumping: Applications.pdf
Credential Dumping: Windows Credential Manager.pdf
Credential Dumping: Windows Credential Manager.pdf
Cross-Site Scripting (XSS) Cheat Sheet - 2020 Edition.pdf
Cross-Site Scripting (XSS) Cheat Sheet - 2020 Edition.pdf
DNS Rebinding: Stealing WiFi credentials through your solar panel inverter.pdf
DNS Rebinding: Stealing WiFi credentials through your solar panel inverter.pdf
DOM XSS in Gmail with a little helpfrom Chrome.pdf
DOM XSS in Gmail with a little helpfrom Chrome.pdf
Decrypting and analyzing HTTPS traffic without MITM.pdf
Decrypting and analyzing HTTPS traffic without MITM.pdf
Discovering the IP address of a Wordpress site hidden behind Cloudflare.pdf
Discovering the IP address of a Wordpress site hidden behind Cloudflare.pdf
Documenting the impossible: Unexploitable XSS labs.pdf
Documenting the impossible: Unexploitable XSS labs.pdf
Domain Persistence: Golden Ticket Attack .pdf
Domain Persistence: Golden Ticket Attack .pdf
Evading Detection with Excel 4.0 Macros and the BIFF8 XLS Format .pdf
Evading Detection with Excel 4.0 Macros and the BIFF8 XLS Format .pdf
Everything You Need to Know About IDOR (Insecure Direct Object References).pdf
Everything You Need to Know About IDOR (Insecure Direct Object References).pdf
Extract credentials from lsass remotely.pdf
Extract credentials from lsass remotely.pdf
Google Dorks .pdf
Google Dorks .pdf
Hacking-OSCP cheatsheet.pdf
Hacking-OSCP cheatsheet.pdf
Harvesting Whois Data for OSINT.pdf
Harvesting Whois Data for OSINT.pdf
How to hack a company by circumventing its WAF for fun and profit – part 3.pdf
How to hack a company by circumventing its WAF for fun and profit – part 3.pdf
LICENSE
LICENSE
LinkedIn OSINT Techniques: Part I.pdf
LinkedIn OSINT Techniques: Part I.pdf
Linux Notes.pdf
Linux Notes.pdf
MR. ROBOT 1 – CAPTURE THE FLAG CHALLENGE, WALK THROUGH.pdf
MR. ROBOT 1 – CAPTURE THE FLAG CHALLENGE, WALK THROUGH.pdf
Metasploit Community CTF 2020 Writeup.pdf
Metasploit Community CTF 2020 Writeup.pdf
NTLM Relay.pdf
NTLM Relay.pdf
OSINT: Google and LinkedIn.pdf
OSINT: Google and LinkedIn.pdf
OWASP Amass: A Solid Information Gathering Tool.pdf
OWASP Amass: A Solid Information Gathering Tool.pdf
OWNING O365 THROUGH BETTER BRUTE-FORCING.pdf
OWNING O365 THROUGH BETTER BRUTE-FORCING.pdf
Out of Band Exploitation (OOB) CheatSheet.pdf
Out of Band Exploitation (OOB) CheatSheet.pdf
PENTEST-HACKING
PENTEST-HACKING
README.md
README.md
Relaying NTLM authentication over RPC.pdf
Relaying NTLM authentication over RPC.pdf
Roasting your way to DA - Build-Break-Defend-Fix.pdf
Roasting your way to DA - Build-Break-Defend-Fix.pdf
S3 Bucket Misconfiguration: From Basics to Pawn.pdf
S3 Bucket Misconfiguration: From Basics to Pawn.pdf
SSH Pentesting Guide.pdf
SSH Pentesting Guide.pdf
Shodan Pentesting Guide.pdf
Shodan Pentesting Guide.pdf
TWEETS:@cry__pto
TWEETS:@cry__pto
Tools
Tools
TryHackMe DailyBugle Writeup - Exploiting Joomla Version 3.7.0.pdf
TryHackMe DailyBugle Writeup - Exploiting Joomla Version 3.7.0.pdf
Tutorial on privilege escalation and post exploitation tactics in Google Cloud Platform environments .pdf
Tutorial on privilege escalation and post exploitation tactics in Google Cloud Platform environments .pdf
UAC bypass through Trusted Folder abuse.pdf
UAC bypass through Trusted Folder abuse.pdf
WPScan:WordPress Pentesting Framework.pdf
WPScan:WordPress Pentesting Framework.pdf
Windows Firewall Post Exploitation with Netsh.pdf
Windows Firewall Post Exploitation with Netsh.pdf
Windows Notes.pdf
Windows Notes.pdf
Windows Privilege Escalation Cheatsheet for OSCP .pdf
Windows Privilege Escalation Cheatsheet for OSCP .pdf
bug bounty writeups
bug bounty writeups
bug bounty writeups.csv
bug bounty writeups.csv
errors.csv
errors.csv
using-snapchat-for-osint-.pdf
using-snapchat-for-osint-.pdf
View all files
Repository files navigation
README
MIT license
More
items
Loading
About
articles
twitter.com/cry__pto
Resources
Readme
MIT license
Activity
Stars
13.9k
stars
Watchers
678
watching
Forks
2.5k
forks
Report repository
Releases
Packages
Used by
Contributors
You can’t perform that action at this time.