su7t3 // Security Writeups π΅οΈ#
Hands-on penetration-testing documentation β full walkthroughs for every HackSmarter lab on the road to OSCP, plus reusable methodology notes and cheat-sheets.
Welcome. This is my working knowledge base: I document each lab the way a real engagement is written up β recon β foothold β privilege escalation β loot β so the methodology sticks instead of the trivia.
Start here#
- π Writeups β step-by-step lab walkthroughs (Active Directory, Windows, Linux, web, cloud, pivoting).
- π§° Docs / Notes β methodology cheat-sheets and tradecraft I reuse on every box.
- π Use the search box in the left sidebar to jump straight to a lab, tool, or technique.
What’s inside#
| Area | Coverage |
|---|---|
| Active Directory | Kerberoasting, BloodHound, ACL abuse, ADCS, lateral movement, DCSync |
| Windows / Linux | Local privilege escalation, foothold-to-root chains |
| Web | SQLi, file upload, CORS, race conditions, OWASP Top 10 |
| Cloud & Pivoting | AWS IAM, secrets exposure, tunneling & port-forwarding |