Cyber Security & Tech Articles

How to use Metasploit and Nmap to Enumerate and Scan for Vulnerabilities
How to use Metasploit and Nmap to Enumerate and Scan for Vulnerabilities
In this article, we will discuss combining Nmap and Metasploit together to perform port scanning and enumerate for vulnerabilities. There certain cases where we can’t just go and run noisy... Read more...
Active Directory Pentesting | Offsec Proving Grounds Access Writeup
Active Directory Pentesting | Offsec Proving Grounds Access Writeup
Introduction Proving Grounds Access Lab is a Windows domain controller, utilizing several notable techniques. If you’re studying for OSCP or learning hacking skills, then this box is for you. What... Read more...
HackTheBox Spookypass Challenge Writeup
HackTheBox Spookypass Challenge Writeup
Introduction The “SpookyPass” challenge from Hack The Box’s Hack The Boo 2024 event is a reverse engineering task categorized as very easy. You are provided with an executable that prompts... Read more...
The Unofficial CRTP Notes: The Red Team Professional's Bible
The Unofficial CRTP Notes: The Red Team Professional's Bible
If you are preparing for the Certified Red Team Professional (CRTP) exam, you know that knowing Active Directory is not enough, you need to know how to break it. These... Read more...
The Unofficial CRTE Notes: The Advanced Red Team Blueprint
The Unofficial CRTE Notes: The Advanced Red Team Blueprint
If you are preparing for the Certified Red Team Expert (CRTE) exam, you already know that the basics of Active Directory won't save you. This is a grueling 48-hour assault... Read more...
The Unofficial eCPPT Notes: The PenTesting Professional’s Blueprint
The Unofficial eCPPT Notes: The PenTesting Professional’s Blueprint
If you are preparing for the eLearnSecurity Certified Professional Penetration Tester (eCPPT) certification, you already know that this isn't a simple "Capture the Flag" game. It is a grueling, multi-day... Read more...
The Unofficial THM PT1 Notes
The Unofficial THM PT1 Notes
If you are grinding through the TryHackMe PT1 path (Penetration Testing Level 1), you know the struggle: you complete a room, get the green checkmark, and two days later, you’ve... Read more...
The Unofficial OSINT Notes: The Investigator's Field Manual
The Unofficial OSINT Notes: The Investigator's Field Manual
If you think Open Source Intelligence (OSINT) is just about Googling someone's name, you are doing it wrong. Real intelligence gathering is a disciplined tradecraft that requires a specific mindset,... Read more...
The Unofficial Wazuh Notes: The Ultimate SIEM & IDS Blueprint
The Unofficial Wazuh Notes: The Ultimate SIEM & IDS Blueprint
If you are trying to deploy a modern Security Information and Event Management (SIEM) solution without a roadmap, you are setting yourself up for failure. Wazuh is a beast of... Read more...
The Unofficial Burp Suite Notes: BSCP Notes
The Unofficial Burp Suite Notes: BSCP Notes
If you call yourself a web pentester but only use Burp Suite to intercept traffic, you are barely scratching the surface. These Burp Suite Notes are the definitive companion, meticulously distilling... Read more...
Network Analysis and Forensics Notes
Network Analysis and Forensics Notes
This guide is the definitive Network analysis Notes collection, condensing over 130 pages of protocol dissections, traffic patterns, and forensic methodologies into one lethal manual. Unlike generic networking textbooks that... Read more...
THM’s SEC1 (Cyber Security 101) Review
THM’s SEC1 (Cyber Security 101) Review
Let’s cut the marketing fluff. The industry is currently drowning in certified professionals who can recite the OSI model but freeze when staring at a terminal. TryHackMe’s SEC1 (Cyber Security... Read more...