Penetration Testing
-
mukul975 Bundle Performing Second Order SQL InjectionDetect and exploit second-order SQL injection vulnerabilities where malicious input is stored in a database and later executed in an unsafe SQL query during a different application operation.
24.6k -
mukul975 Bundle Performing Web Cache Deception AttackExploit path normalization discrepancies between CDN caching layers and origin servers to cache and retrieve authenticated content.
24.6k -
mukul975 Bundle Performing Web Cache Poisoning AttackExploit web cache mechanisms to serve malicious content to other users by poisoning cached responses through unkeyed headers and parameters during authorized security tests.
24.6k -
mukul975 Bundle Testing API Authentication WeaknessesTests API authentication mechanisms for weaknesses including broken token validation, missing authentication on endpoints, weak password policies, credential stuffing susceptibility, token leakage in URLs or logs, and session management flaws.
24.6k -
mukul975 Bundle Abusing Shadow Credentials For PrivescTake over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.
24.6k -
mukul975 Bundle Conducting Mobile App Penetration TestConducts penetration testing of iOS and Android mobile applications following the OWASP MASTG to identify vulnerabilities in data storage, network communication, authentication, cryptography, and platform-specific security controls.
24.6k -
mukul975 Bundle Deploying Active Directory HoneytokensDeploys deception-based honeytokens in Active Directory, including fake privileged accounts, SPNs for Kerberoasting detection, decoy GPOs with cpassword traps, and deceptive BloodHound paths, with monitoring for Windows Security Event IDs.
24.6k -
mukul975 Bundle Detecting Bluetooth Low Energy AttacksDetects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration abuse, and Man-in-the-Middle interception using Ubertooth One, nRF52840, bleak, and crackle.
24.6k -
mukul975 Bundle Executing Phishing Simulation CampaignExecutes authorized phishing simulation campaigns to assess an organization's susceptibility to email-based social engineering attacks, including scenario design, infrastructure setup, and metric tracking.
24.6k -
mukul975 Bundle Executing Red Team Engagement PlanningDefines scope, objectives, rules of engagement, threat model selection, and operational timelines for red team engagements before any offensive testing begins.
Audited 24.6k -
mukul975 Bundle Exploiting Kerberoasting With ImpacketPerform Kerberoasting attacks using Impacket's GetUserSPNs to extract and crack Kerberos TGS tickets for Active Directory service accounts.
24.6k -
mukul975 Bundle Exploiting Server Side Request ForgeryIdentify and exploit SSRF vulnerabilities to access internal services, cloud metadata, and restricted network resources during authorized penetration tests.
24.6k -
mukul975 Bundle Extracting Config From Agent Tesla RatExtract embedded configuration from Agent Tesla RAT samples including SMTP/FTP/Telegram exfiltration credentials, keylogger settings, and C2 endpoints using .NET decompilation and memory analysis.
24.6k -
mukul975 Bundle Performing AI Driven Osint CorrelationCorrelate findings across OSINT sources—username enumeration, email lookups, social media profiles, domain records, breach databases, and dark-web mentions—into unified intelligence profiles with confidence scoring and link analysis.
24.6k -
mukul975 Bundle Performing API Inventory And DiscoveryBuild a comprehensive catalog of API endpoints including documented, undocumented, shadow, zombie, and deprecated APIs using passive traffic analysis, active scanning, DNS enumeration, JavaScript analysis, and cloud resource inventory.
24.6k -
mukul975 Bundle Performing Directory Traversal TestingTest web applications for path traversal vulnerabilities that allow reading or writing arbitrary files on the server by manipulating file path parameters.
24.6k -
mukul975 Bundle Performing GRAPHQL Security AssessmentAssess GraphQL API endpoints for introspection leaks, injection attacks, authorization flaws, and denial-of-service vulnerabilities during authorized security tests.
24.6k -
mukul975 Bundle Performing IOS App Security AssessmentConduct authorized iOS application security assessments using Frida, Objection, and static analysis to evaluate app security posture against OWASP MASTG standards.
24.6k -
mukul975 Bundle Reverse Engineering IOS App With FridaDynamically instrument iOS apps with Frida to trace methods, extract secrets, and bypass security controls during authorized penetration testing.
24.6k -
mukul975 Bundle Testing API Security With Owasp Top 10Systematically assess REST and GraphQL API endpoints against the OWASP API Security Top 10 risks using automated and manual testing techniques.
24.6k -
mukul975 Bundle Auditing MCP Servers For Tool PoisoningScan Model Context Protocol servers and tool metadata for poisoning, SSRF, and unauthenticated exposure.
24.6k -
mukul975 Bundle Exploiting Constrained Delegation AbuseExploit Kerberos Constrained Delegation misconfigurations in Active Directory to impersonate privileged users via S4U2self and S4U2proxy extensions for lateral movement and privilege escalation.
24.6k -
mukul975 Bundle Exploiting Mass Assignment In REST ApisDiscover and exploit mass assignment vulnerabilities in REST APIs to escalate privileges, modify restricted fields, and bypass authorization controls by injecting unexpected parameters in API requests.
24.6k -
mukul975 Bundle Extracting Credentials From Memory DumpExtract cached credentials, password hashes, Kerberos tickets, and authentication tokens from memory dumps using Volatility and Mimikatz for forensic investigation.
24.6k -
mukul975 Bundle Extracting Memory Artifacts With RekallAnalyze Windows memory dumps for signs of compromise using the Rekall memory forensics framework, including process injection, hidden processes, and rootkit detection.
24.6k -
mukul975 Bundle Implementing Security Chaos EngineeringDeliberately disables or degrades security controls to verify detection and response capabilities, including WAF bypass, firewall rule removal, log pipeline disruption, and EDR disablement scenarios using boto3 and subprocess.
24.6k -
mukul975 Bundle Mapping Attack Paths With Bloodhound CeCollect Active Directory data with SharpHound and Entra ID data with AzureHound, ingest into BloodHound Community Edition, and analyze on-prem, cloud, and hybrid attack paths with built-in queries and custom Cypher.
24.6k -
mukul975 Bundle Performing Binary Exploitation AnalysisAnalyze ELF binaries for exploitation vectors using checksec, ROPgadget, and pwntools for buffer overflow and ROP chain development during authorized security testing and CTF challenges.
24.6k -
mukul975 Bundle Performing GRAPHQL Introspection AttackExtracts GraphQL API schemas through introspection attacks, identifies sensitive fields and mutations, and tests for query depth and complexity vulnerabilities.
24.6k -
mukul975 Bundle Reverse Engineering Malware With GhidraReverse engineer malware binaries using NSA's Ghidra disassembler and decompiler to understand internal logic, cryptographic routines, C2 protocols, and evasion techniques at the assembly and pseudo-C level.
24.6k -
mukul975 Bundle Exploiting API Injection VulnerabilitiesTests APIs for injection vulnerabilities including SQL, NoSQL, OS command, LDAP, and SSRF through parameters, headers, and request bodies.
24.6k -
mukul975 Bundle Exploiting Bgp Hijacking VulnerabilitiesSimulates BGP hijacking attacks in isolated lab environments to test RPKI deployment, route origin validation, and BGP monitoring defenses against prefix hijacking and route leak attacks.
24.6k -
mukul975 Bundle Exploiting SQL Injection VulnerabilitiesIdentifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap.
24.6k -
mukul975 Bundle Exploiting Type Juggling VulnerabilitiesExploit PHP type juggling vulnerabilities caused by loose comparison operators to bypass authentication, circumvent hash verification, and manipulate application logic through type coercion attacks.
24.6k -
mukul975 Bundle Performing Bluetooth Security AssessmentScan for Bluetooth Low Energy devices, enumerate GATT services and characteristics, and detect security vulnerabilities such as unencrypted data exposure and known vulnerable device fingerprints.
24.6k -
mukul975 Bundle Performing Initial Access With Evilginx3Conduct authorized red team initial access using EvilGinx3 adversary-in-the-middle phishing to capture session tokens and bypass multi-factor authentication.
24.6k