styofa doing anything
🪼

❣ Chile in a Photography ❣
Keni
trying on a metaphor
Show & Tell
2025 on Tumblr: Trends That Defined the Year

pixel skylines
Jules of Nature

JVL

blake kathryn

Janaina Medeiros

Origami Around
Peter Solarz
Lint Roller? I Barely Know Her

if i look back, i am lost
let's talk about Bridgerton tea, my ask is open
One Nice Bug Per Day
AnasAbdin
$LAYYYTER

seen from Morocco

seen from Switzerland

seen from India
seen from Finland
seen from Spain
seen from France
seen from New Zealand
seen from Maldives
seen from Denmark

seen from Malaysia
seen from Poland

seen from United States
seen from United States
seen from United States
seen from Saudi Arabia
seen from Canada

seen from Malaysia
seen from Peru
seen from Switzerland

seen from China
@sigusr2
Privilege escalation always comes down to proper enumeration. But to accomplish proper enumeration you need to know what to check and look for. This takes familiarity with systems that normally comes along with experience. At first privilege escalation can seem like a daunting task, but after a while you start...
Often during penetration tests or security assessments you start from the external network and you try to get to the internal network and…
Basic Pivoting Types Type Use Case Listen - Listen Exposed asset, may not want to connect out. Listen - Connect Normal redirect. Connect - Connect Can’t bind, so connect to bridge two hosts
Quick walkthrough of pivot techniques including ssh, meterpreter, ncat, and netcat.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF - swisskyrepo/PayloadsAllTheThings
An organized guide to highlight some of the smartest techniques and resources for your OSCP journey.
Checkpoints: 1. Older APIs versions tend to be more vulnerable and they lack security mechanisms. Leverage the predictable nature of REST AP...
Before you start reading this post, let me tell you all the tips are collected from twitter (few mine 😓) where awesome community folks shar...
Hey Guys, in this post I am just going to copy paste my notes which I collected during my OSCP journey from different sources. Feel free t...
Docker has become such an integral part of my worfklow recently. These examples should demonstrate how Docker can help you be a more efficient pentester
Privilege escalation always comes down to proper enumeration. But to accomplish proper enumeration you need to know what to check and look for. This takes familiarity with systems that normally comes along with experience. At first privilege escalation can seem like a daunting task, but after a while you start...
Lists all of the available service-specific resources, actions, and condition keys that can be used in IAM policies to control access to Identity And Access Management.
AWS Security Consulting
We’re excited to announce the launch of dedicated security chapters in the AWS documentation for over 40 services. Security is a key component of your decision to use the cloud. These chapters can help your organization get in-depth information about both the built-in and the configurable security of AWS services. This information goes beyond “how-to.” […]
Setup and managing a pentest dropbox infrastructure should be simple, reliable, and versatile. In part 1 we'll show you the hardware options, and in part 2 we'll go beyond autossh and create a OpenVPN environment that reduces time spent managing remote network connectivity.
Table of Contents: Overview Dedication A Word of Warning! Section 1: Getting Comfortable with Kali Linux Section 2: Essential Tools in Kali Section 3: Passive Reconnaissance Section 4: Active Reconnaissance Section 5: Vulnerability Scanning Section 6: Buffer Overflows Section 7: Handling Public Exploits Section 8: Transferring Files to your target Section 9: Privilege Escalation Section 10: Client-Side Attacks Section 11: Web Application Attacks Section 12: Password Cracking Section 13: Port Redirection and Pivoting Section 14: Metasploit Framework Section 15: Antivirus Bypassing Extra Resources Setting up your Pentesting Environment Wargames/Hands-on Challenges Capture the Flag Competitions (CTFs)/Cyber Competitions Bug Bounty Programs Vulnerable Machines Tips to participate in the Proctored OSCP exam Other Resources Conclusion