Pentest Compass is a curated collection of diagrams designed to guide enthusiasts and professionals through the complex world of penetration testing. These maps provide will help you demystify various aspects of cybersecurity and enhance your learning experience.
This repository is just the starting point of an ever-evolving collection, growing and expanding in tandem with my ongoing learning journey in cybersecurity.
- Windows privilege escalation
- Linux privilege escalation
- Active Directory Pentesting
- Metasploit scenario
- Kerberoasting
- Silver Ticket
- Domain Controller Synchronization
- WMI
- PsExec
- Pass the Hash
- Overpass the Hash
- Pass the Ticket
- DCOM
- Golden Ticket
- Shadow Copies
I'll take this chance to share my template for notes during pen testing. I'm still new in cybersecurity and haven't found a better method, so I created the Pentest Journal template for Notion.
- node-plantuml in order for
generate.sh
to work - PlantUML VSCode extension for support and easier developing
In this section, you'll find a curated selection of awesome resources, including other mindmaps, comprehensive collections, and informative lists that have enriched my understanding. Many thanks to these authors for their great work and for sharing it freely with the open source community.
- HackTricks
- PayloadAllTheThings
- fareedfauzi's gitbook
- mindmaps by user /u/RootOfNull on Reddit
- Ignitetechnologies/Mindmap on GitHub
- Pentester's Promiscuous Notebook
Contributions to Pentest Compass are always welcome. If you have any improvements or suggestions, feel free to submit a Pull Request. Your insights and enhancements can help make this resource even more valuable for everyone in the cybersecurity community.
See License