Difference between revisions of "Main Page"
Jump to navigation
Jump to search
(additional heading ideas) |
(→CVEs) |
||
(9 intermediate revisions by the same user not shown) | |||
Line 4: | Line 4: | ||
== PenTest Runbooks == | == PenTest Runbooks == | ||
− | [[OS-INT on Users]] | + | * [[OS-INT on Users]] |
− | [[OS-INT on Infrastructure]] | + | * [[OS-INT on Infrastructure]] |
− | [[Unauthenticated Network Enumeration]] | + | * [[Unauthenticated Network Enumeration]] |
− | [[Unauthenticated Target Host Enumeration]] | + | * [[Unauthenticated Target Host Enumeration]] |
− | [[Post Exploitation - Enumeration Windows]] | + | * [[Post Exploitation - Enumeration Windows]] |
− | [[Post Exploitation - Enumeration Linux]] | + | * [[Post Exploitation - Enumeration Linux]] |
− | [[Post Exploitation - Enumeration Active Directory]] | + | * [[Post Exploitation - Enumeration Active Directory]] |
− | [[External - Password Spray via Burp Suite]] | + | * [[External - Password Spray via Burp Suite]] |
− | [[Windows Network - Unauthenticated to Domain User via responder/LLMNR]] | + | * [[Windows Network - Unauthenticated to Domain User via responder/LLMNR]] |
− | [[Windows Network - Unauthenticated to Domain User via local admin pass the hash]] | + | * [[Windows Network - Unauthenticated to Domain User via local admin pass the hash]] |
− | [[Windows Network - Unauthenticated to Domain User via password spray]] | + | * [[Windows Network - Unauthenticated to Domain User via password spray]] |
− | [[Windows Network - Domain User to Domain Admin via SPNs]] | + | * [[Windows Network - Domain User to Domain Admin via SPNs]] |
− | [[Wireless Network Attacks]] | + | * [[Wireless Network Attacks]] |
− | [[Cracking Hashes]] | + | * [[Generating Username and Password Lists]] |
+ | * [[Cracking Hashes]] | ||
== Windows Commands == | == Windows Commands == | ||
Line 23: | Line 24: | ||
== Linux Commands == | == Linux Commands == | ||
− | [[wget]] | + | [[smbclient]] - Access SMB / Samba shares from Linux <br> |
+ | [[wget]] - Command line file download | ||
+ | |||
+ | == PenTesting Tools A-Z == | ||
+ | *[[hashcat]] | ||
+ | *[[Nessus]] | ||
+ | *[[nmap]] | ||
+ | *[[responder]] | ||
+ | |||
+ | == Windows Remediation and Security Hardening == | ||
+ | * [[Disable NetBIOS on the DHCP server]] | ||
== Software Releases, Version Numbers and Builds == | == Software Releases, Version Numbers and Builds == | ||
Line 38: | Line 49: | ||
== CVEs == | == CVEs == | ||
− | + | *[[CVE-2019-0708]] - BlueKeep<br> | |
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
+ | *[[]] - Tmp<br> | ||
== Other == | == Other == |
Latest revision as of 09:56, 8 September 2019
SecWiki is currently part of my personal notebook. If your a user, your free to consume the information and add to it too! Sharing is caring at the end of the day.
Consult the User's Guide for information on using the wiki software.
Contents
PenTest Runbooks
- OS-INT on Users
- OS-INT on Infrastructure
- Unauthenticated Network Enumeration
- Unauthenticated Target Host Enumeration
- Post Exploitation - Enumeration Windows
- Post Exploitation - Enumeration Linux
- Post Exploitation - Enumeration Active Directory
- External - Password Spray via Burp Suite
- Windows Network - Unauthenticated to Domain User via responder/LLMNR
- Windows Network - Unauthenticated to Domain User via local admin pass the hash
- Windows Network - Unauthenticated to Domain User via password spray
- Windows Network - Domain User to Domain Admin via SPNs
- Wireless Network Attacks
- Generating Username and Password Lists
- Cracking Hashes
Windows Commands
Linux Commands
smbclient - Access SMB / Samba shares from Linux
wget - Command line file download
PenTesting Tools A-Z
Windows Remediation and Security Hardening
Software Releases, Version Numbers and Builds
Windows
Linux
Networking
- None
Applications
CVEs
- CVE-2019-0708 - BlueKeep
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
- [[]] - Tmp
Other
Activate https://www.mediawiki.org/wiki/Extension:SyntaxHighlight#Installation
SUSE Enterprise Linux PAM - lockout https://unix.stackexchange.com/questions/78182/how-to-lock-users-after-5-unsuccessful-login-tries