
Security Knowledge Base
Practical notes covering offensive security, penetration testing, red teaming, vulnerability research, Active Directory, Windows, Linux and purple teaming.
OFFENSIVE SECURITY RED TEAMING VULNERABILITY RESEARCH PURPLE TEAMING
Authorised Security Testing
The material in these notes is intended for educational purposes, security research and authorised security testing.
Explore the Knowledge Base
-
:material-web:{ .lg .middle } Web Application Security
Reconnaissance, authentication, authorisation and web application vulnerability research.
-
:material-microsoft-windows:{ .lg .middle } Active Directory
Enumeration, Kerberos, NTLM, AD CS, privilege escalation and lateral movement.
-
:material-console:{ .lg .middle } Red Teaming
Adversary simulation, execution, persistence, credential access, discovery and lateral movement.
-
:material-shield-search:{ .lg .middle } Vulnerability Research
Vulnerability discovery, source code review, attack surface analysis, fuzzing and security research.
-
:material-shield-half-full:{ .lg .middle } Purple Teaming
MITRE ATT&CK, adversary emulation, detection validation and red and blue team collaboration.
-
:material-linux:{ .lg .middle } Linux
Linux enumeration, security testing, privilege escalation and system administration notes.
-
:material-microsoft-windows-classic:{ .lg .middle } Windows
Windows enumeration, security testing, PowerShell and privilege escalation notes.
-
:material-tools:{ .lg .middle } Tools
Security tooling, commands, installation notes and practical references used during assessments.
-
:material-file-document-multiple-outline:{ .lg .middle } Cheatsheets
Quick references for commands, techniques, tools and common security assessment workflows.
About This Knowledge Base
This knowledge base documents practical techniques, methodologies, tooling and research across offensive and defensive cybersecurity.
Living Knowledge Base
These notes are continuously expanded as new techniques, research and tooling are explored.