1. Introduction
- Introduction
- Download Files
- Installation
- Kali Changes
- Part 1: Basic Commands
- Permissions: Relative
- Permissions: Absolute
- Sudo Users
- APT Commands
- Routers and Switches
- IP Address
- DHCP
- MAC Address
- Services and Ports
- Apache Service
- Bridged and NAT
- DNS
- TCP vs UDP
- Port Forwarding
- Introduction to Recon
- Active Recon & Passive Recon
- OSINT
- Google Hacking
- Shodan
- What are Sniffing Attacks?
- ARP Broadcasting
- MITM (Man-in-the-Middle)
- ARP Poisoning
- MAC Address Spoofing
- Wireshark Sniffing
- What is Nmap
- Target Specification
- Host Discovery
- Scan Techniques: TCP
- Scan Techniques: UDP
- Port Specification
- Service & Version Detection
- OS Detection
- Default Scripts
- Output Save
- Timing and Performance
- FTP
- MySQL
- SMB
- SMTP
- VNC
- Web
- What is a Reverse Shell?
- Netcat Introduction
- Netcat Bind Shell
- Reverse Shell Alternatives
- Real-Time Reverse Shell Access
- Introduction
- Remote Exploits
- Local Exploits
- File Transfer Introduction
- HTTP File Transfer
- PowerShell
- FTP
- SMB
- What is Privilege Escalation?
- SUID - Linux
- Jump User using
su - Sudo Abuse
- Password Attack Introduction
- Wordlist Location
- What is Hashing?
- Hash Identifier
- Crack Hashes Using John and Hashcat
- Nmap Brute Force
- CUPP Password Generator
- Metasploit Introduction
- Auxiliary Basics
- Password Brute Force
- What is a Payload?
- Single Payload Demo
- Staged Payload Demo
- Other MSF Payloads with Platforms
- Introduction to Social Engineering
- Phishing with SEToolkit
- Introduction
- OWASP Juice Shop Installation
- Burp Suite Introduction
- Recon Introduction
- Tech Detection
- Directory Brute Forcing (Manual & Automated)
- Subdomain Enumeration
- Improper Input Validation
- Sensitive Data Exposure
- Security Misconfiguration (Error Handling)
- Outdated Whitelists - Unvalidated Redirection
- Brute Forcing on Login Pages
- Admin Account SQL Injection
- Unrestricted File Upload
- Admin Registration
- Broken Access Control
- SQL Injection Introduction
- SQLMap
- XSS - HTML
- CSRF Attack
- LFI