{"version":1,"pages":[{"id":"wvazpJRhoEEFYmKMxymb","title":"Home","pathname":"/pentesting-notes","siteSpaceId":"sitesp_yrK42","icon":"house-chimney-user","description":""},{"id":"8oL3jFyUmviNkzcdXcF3","title":"Content Discovery","pathname":"/pentesting-notes/web/content-discovery","siteSpaceId":"sitesp_yrK42","icon":"magnifying-glass","description":"Discovering content on the website is a important step in the reconnaissance phase of web pentesting.","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"zLb5RQ1rynQ2COX6zKBj","title":"Subdomain Enumeration","pathname":"/pentesting-notes/web/subdomain-enumeration","siteSpaceId":"sitesp_yrK42","icon":"globe-pointer","description":"We can find subdomains of websites using various techniques.","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"59qGSdYiba4VzfOrThnL","title":"Authentication bypass","pathname":"/pentesting-notes/web/authentication-bypass","siteSpaceId":"sitesp_yrK42","icon":"unlock-keyhole","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"OWkr0f8CnCLwon9cc4DX","title":"IDOR (Insecure Direct Object Reference)","pathname":"/pentesting-notes/web/idor-insecure-direct-object-reference","siteSpaceId":"sitesp_yrK42","icon":"3","description":"Insecure Direct Object Reference","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"7NpyKwvpMPXYFLvWMdwf","title":"Git repository","pathname":"/pentesting-notes/web/git-repository","siteSpaceId":"sitesp_yrK42","icon":"code-pull-request","description":"Found a .git folder? Good!","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"wrfJSousnhkhMRxLuMjz","title":"XSS","pathname":"/pentesting-notes/web/xss","siteSpaceId":"sitesp_yrK42","icon":"js","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"NJGErrSjgwkBmiOTC3fa","title":"SSRF","pathname":"/pentesting-notes/web/ssrf","siteSpaceId":"sitesp_yrK42","icon":"arrow-turn-up","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"6incOmhCS8AtMMJ6x9lR","title":"CSRF","pathname":"/pentesting-notes/web/csrf","siteSpaceId":"sitesp_yrK42","icon":"right-left","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"ormDC7JYVqYH6mPFsEld","title":"Injection","pathname":"/pentesting-notes/web/injection","siteSpaceId":"sitesp_yrK42","icon":"syringe","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"j9dbuXhETxquZ0Lj0Ifx","title":"SQL Injection","pathname":"/pentesting-notes/web/injection/sql-injection","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"rEm3192EanwA8mtE8b0c","title":"Cypher injection","pathname":"/pentesting-notes/web/injection/cypher-injection","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"uyZGgfbZv5wH8A3O8oOa","title":"Command injection","pathname":"/pentesting-notes/web/injection/command-injection","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"5CRe76SND3uas1OMZOUZ","title":"Server Side Template Injection","pathname":"/pentesting-notes/web/injection/server-side-template-injection","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"f2szrWzfllofYFVhV4iV","title":"NoSQL injection","pathname":"/pentesting-notes/web/injection/nosql-injection","siteSpaceId":"sitesp_yrK42","description":"","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"dnSQwUdWmygz2CyqSNMU","title":"XXE","pathname":"/pentesting-notes/web/injection/xxe","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Injection","icon":"syringe"}]},{"id":"EtUwM01WV2eSBnp169eG","title":"FI (File Inclusion)","pathname":"/pentesting-notes/web/fi-file-inclusion","siteSpaceId":"sitesp_yrK42","icon":"copy","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"j0G9ZxfsZkfIegN0VNBf","title":"File upload","pathname":"/pentesting-notes/web/file-upload","siteSpaceId":"sitesp_yrK42","icon":"image-landscape","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"2h4IrxZhUSJlsb8pUQHv","title":"OAuth","pathname":"/pentesting-notes/web/oauth","siteSpaceId":"sitesp_yrK42","icon":"at","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"buTP4W766vKWLPmVMZPo","title":"JWT","pathname":"/pentesting-notes/web/jwt","siteSpaceId":"sitesp_yrK42","icon":"cookie","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"oxBDjkpFbYMii3HL6BFT","title":"CORS","pathname":"/pentesting-notes/web/cors","siteSpaceId":"sitesp_yrK42","icon":"reflect-horizontal","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"gQcwPZ8lCEz3ZLuuHbmA","title":"Prototype pollution","pathname":"/pentesting-notes/web/prototype-pollution","siteSpaceId":"sitesp_yrK42","icon":"atom-simple","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"GDiiRE4tY46vtQn1jmMi","title":"Request Smuggling","pathname":"/pentesting-notes/web/request-smuggling","siteSpaceId":"sitesp_yrK42","icon":"bring-forward","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"zqX4KZZlUGg54CSnh5KZ","title":"Offensive AI testing","pathname":"/pentesting-notes/web/offensive-ai-testing","siteSpaceId":"sitesp_yrK42","icon":"robot","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"}]},{"id":"ek1m8pbBu0p7iKWqp9KM","title":"Reconnaissance","pathname":"/pentesting-notes/web/offensive-ai-testing/reconnaissance","siteSpaceId":"sitesp_yrK42","icon":"searchengin","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"1qxloiS9DKEnzgBwZzW3","title":"Attacking agents","pathname":"/pentesting-notes/web/offensive-ai-testing/attacking-agents","siteSpaceId":"sitesp_yrK42","icon":"robot","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"kIuyG4oPgfaaKds0aTeq","title":"Attacking Multi-Agent Systems","pathname":"/pentesting-notes/web/offensive-ai-testing/attacking-multi-agent-systems","siteSpaceId":"sitesp_yrK42","icon":"gears","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"PBvxbuvrzZpERsacWLP0","title":"Attacking RAG-pipelines","pathname":"/pentesting-notes/web/offensive-ai-testing/attacking-rag-pipelines","siteSpaceId":"sitesp_yrK42","icon":"database","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"qSc8A6tefxlUnA0lw9e6","title":"Attacking Embeddings","pathname":"/pentesting-notes/web/offensive-ai-testing/attacking-embeddings","siteSpaceId":"sitesp_yrK42","icon":"square-binary","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"icybxbaeYswIp5Bqkksv","title":"Attacking MCP & tools","pathname":"/pentesting-notes/web/offensive-ai-testing/attacking-mcp-and-tools","siteSpaceId":"sitesp_yrK42","icon":"hammer","breadcrumbs":[{"label":"Web pentesting","emoji":"1f310"},{"label":"Offensive AI testing","icon":"robot"}]},{"id":"WJSDq6Y9JxDfqVmwqZyt","title":"Enumerating users (No credentials)","pathname":"/pentesting-notes/windows-pentesting/enumerating-users-no-credentials","siteSpaceId":"sitesp_yrK42","icon":"user","description":"Seeking for a foothold heh?","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"6fe60EESW8uVSTvKMird","title":"Privilege Escalation","pathname":"/pentesting-notes/windows-pentesting/privilege-escalation","siteSpaceId":"sitesp_yrK42","icon":"escalator","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"a5P4TJo3JO9F1LWsqAz0","title":"Post-Exploitation","pathname":"/pentesting-notes/windows-pentesting/post-exploitation","siteSpaceId":"sitesp_yrK42","icon":"arrow-down-from-line","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"ZA69rEXreZDExEFqjTXW","title":"Cross-domain enumeration","pathname":"/pentesting-notes/windows-pentesting/cross-domain-enumeration","siteSpaceId":"sitesp_yrK42","icon":"arrow-progress","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"bxHPvh6afwCZUATqA328","title":"LDAP port (389, 636, 3268, 3269)","pathname":"/pentesting-notes/windows-pentesting/ldap","siteSpaceId":"sitesp_yrK42","icon":"memo-circle-info","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"ElG9YjLAWWXQKHZRQv6K","title":"SMB port (139,445)","pathname":"/pentesting-notes/windows-pentesting/smb","siteSpaceId":"sitesp_yrK42","icon":"up-to-bracket","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"VaiUOKG3lqzy4zctqTTf","title":"MSSQL port (1433)","pathname":"/pentesting-notes/windows-pentesting/mssql-port-1433","siteSpaceId":"sitesp_yrK42","icon":"database","description":"","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"piS0fZvqKZHNLeP3RNqZ","title":"Certificate Authority (CA)","pathname":"/pentesting-notes/windows-pentesting/certificate-authority-ca","siteSpaceId":"sitesp_yrK42","icon":"file-certificate","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"bgifaoM3B4Zp4N4Dh73G","title":"Delegation attacks","pathname":"/pentesting-notes/windows-pentesting/delegation-attacks","siteSpaceId":"sitesp_yrK42","icon":"fingerprint","description":"","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"pRSEr2QGSO6kpwjO4VVu","title":"Attacking Kerberos","pathname":"/pentesting-notes/windows-pentesting/attacking-kerberos","siteSpaceId":"sitesp_yrK42","icon":"ticket","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"D0wdX6hBhU7hN7Mji6uf","title":"Relay attacks","pathname":"/pentesting-notes/windows-pentesting/relay-attacks","siteSpaceId":"sitesp_yrK42","icon":"shuffle","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"xScMP09OuCzHNfF3xL9H","title":"Bypassing Security","pathname":"/pentesting-notes/windows-pentesting/bypassing-security","siteSpaceId":"sitesp_yrK42","icon":"lock-open","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"9Npkxgvy6ffgesjxjn2e","title":"File Transfer","pathname":"/pentesting-notes/windows-pentesting/file-transfer","siteSpaceId":"sitesp_yrK42","icon":"arrow-down-left-and-arrow-up-right-to-center","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"kOCtceXzdOQDzIWNMuFf","title":"GPO (Group Policy Object)","pathname":"/pentesting-notes/windows-pentesting/gpo-group-policy-object","siteSpaceId":"sitesp_yrK42","icon":"building-shield","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"D0OJTNfESFJWMqYzPV0O","title":"Tools","pathname":"/pentesting-notes/windows-pentesting/tools","siteSpaceId":"sitesp_yrK42","icon":"screwdriver-wrench","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"r9999EWQmrHHIW3Ag2br","title":"Mimikatz","pathname":"/pentesting-notes/windows-pentesting/tools/mimikatz","siteSpaceId":"sitesp_yrK42","icon":"kiwi-fruit","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"U6eAwxiwl3W34PxybU59","title":"NetExec","pathname":"/pentesting-notes/windows-pentesting/tools/netexec","siteSpaceId":"sitesp_yrK42","icon":"spider","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"ddd3TZSW7tQzrgSbE124","title":"Crackmapexec (CME)","pathname":"/pentesting-notes/windows-pentesting/tools/crackmapexec-cme","siteSpaceId":"sitesp_yrK42","icon":"brackets-curly","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"dwMXqe6W32jeEHpw5TcQ","title":"Powerview","pathname":"/pentesting-notes/windows-pentesting/tools/powerview","siteSpaceId":"sitesp_yrK42","icon":"code","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"PCKyFxCCsYC9CUGCvSGu","title":"Bloodhound","pathname":"/pentesting-notes/windows-pentesting/tools/bloodhound","siteSpaceId":"sitesp_yrK42","icon":"dog","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"fM4aZvR1vjUTAJ3YmNIz","title":"Impacket","pathname":"/pentesting-notes/windows-pentesting/tools/impacket","siteSpaceId":"sitesp_yrK42","icon":"windows","description":"Impacket is a collection of Python classes for working with network protocols.","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"yl2s30nyiyDQ9RhhKzV7","title":"BloodyAD","pathname":"/pentesting-notes/windows-pentesting/tools/bloodyad","siteSpaceId":"sitesp_yrK42","icon":"droplet","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"oIpThBVXzEcWHjRpf2Z2","title":"Sliver C2","pathname":"/pentesting-notes/windows-pentesting/tools/sliver-c2","siteSpaceId":"sitesp_yrK42","icon":"wolf-pack-battalion","description":"Sliver is an open source cross-platform adversary emulation/red team framework, it can be used by organizations of all sizes to perform security testing. (Not only for Windows)","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Tools","icon":"screwdriver-wrench"}]},{"id":"rKANOBqUBvFajLQGtpvC","title":"Security internals","pathname":"/pentesting-notes/windows-pentesting/security-internals","siteSpaceId":"sitesp_yrK42","icon":"rectangle-terminal","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"}]},{"id":"zH60A3ot7MxKIjAlFYhg","title":"Kernel","pathname":"/pentesting-notes/windows-pentesting/security-internals/kernel","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Security internals","icon":"rectangle-terminal"}]},{"id":"zeJTwGBqYxF3GPCrGmQB","title":"Remote Procedure Call","pathname":"/pentesting-notes/windows-pentesting/security-internals/remote-procedure-call","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Security internals","icon":"rectangle-terminal"}]},{"id":"nqWeFybX1rlQ3CBrpGUa","title":"COM/DCOM","pathname":"/pentesting-notes/windows-pentesting/security-internals/com-dcom","siteSpaceId":"sitesp_yrK42","breadcrumbs":[{"label":"Windows Pentesting","icon":"windows"},{"label":"Security internals","icon":"rectangle-terminal"}]},{"id":"O3y16tfqmlxqdLpxxpOx","title":"Linux Privilege Esclation","pathname":"/pentesting-notes/linux-pentesting/linux-privilege-esclation","siteSpaceId":"sitesp_yrK42","icon":"stairs","breadcrumbs":[{"label":"Linux Pentesting","emoji":"1f427"}]},{"id":"DC34G26cuq2d9cxyicWq","title":"Escape docker","pathname":"/pentesting-notes/linux-pentesting/escape-docker","siteSpaceId":"sitesp_yrK42","icon":"box","breadcrumbs":[{"label":"Linux Pentesting","emoji":"1f427"}]},{"id":"g7OlUIqaAnsUU2lF1ngz","title":"Ansible","pathname":"/pentesting-notes/linux-pentesting/ansible","siteSpaceId":"sitesp_yrK42","icon":"webhook","breadcrumbs":[{"label":"Linux Pentesting","emoji":"1f427"}]},{"id":"ZJ6i1qkPAvnHf4vgzGV4","title":"Pivoting","pathname":"/pentesting-notes/cross-platform-pivoting/pivoting","siteSpaceId":"sitesp_yrK42","icon":"arrows-cross","breadcrumbs":[{"label":"Cross platform pivoting","emoji":"1f54a"}]},{"id":"d1qZBTrFtKQUau2n5kgP","title":"Kubernetes","pathname":"/pentesting-notes/cloud/kubernetes","siteSpaceId":"sitesp_yrK42","icon":"dharmachakra","breadcrumbs":[{"label":"Cloud","emoji":"2601"}]},{"id":"J3jukeiQ4vt8Gix2vxNj","title":"Azure","pathname":"/pentesting-notes/cloud/azure","siteSpaceId":"sitesp_yrK42","icon":"windows","breadcrumbs":[{"label":"Cloud","emoji":"2601"}]},{"id":"9Be8jHwkX1moQ8nywWY1","title":"Architecture","pathname":"/pentesting-notes/cloud/azure/architecture","siteSpaceId":"sitesp_yrK42","icon":"sitemap","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"}]},{"id":"qiumWOFkbHwj9fQgvtSU","title":"RBAC & ABAC roles","pathname":"/pentesting-notes/cloud/azure/architecture/rbac-and-abac-roles","siteSpaceId":"sitesp_yrK42","icon":"id-badge","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Architecture","icon":"sitemap"}]},{"id":"8bJBzfSuEn6JNaZrfwC7","title":"Entra ID roles","pathname":"/pentesting-notes/cloud/azure/architecture/entra-id-roles","siteSpaceId":"sitesp_yrK42","icon":"face-viewfinder","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Architecture","icon":"sitemap"}]},{"id":"nPRkVwA1YAeO3KMcHwBL","title":"Entra ID - Authentication with OAuth and API's","pathname":"/pentesting-notes/cloud/azure/architecture/entra-id-authentication-with-oauth-and-apis","siteSpaceId":"sitesp_yrK42","icon":"unlock-keyhole","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Architecture","icon":"sitemap"}]},{"id":"SvnHCxBnqdiUiQw9uoaX","title":"Consent and Permissions","pathname":"/pentesting-notes/cloud/azure/architecture/consent-and-permissions","siteSpaceId":"sitesp_yrK42","icon":"check","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Architecture","icon":"sitemap"}]},{"id":"3WUMf3c1jJpeIsJOZjyS","title":"Service Discovery, Recon, Enumeration and Initial Access Attacks","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks","siteSpaceId":"sitesp_yrK42","icon":"bullseye-arrow","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"}]},{"id":"cA6HLzVNZu5j41dSFRLE","title":"Unauthenticated Recon","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/unauthenticated-recon","siteSpaceId":"sitesp_yrK42","icon":"glasses-round","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"PBcNbSTpODeOea1L6MUA","title":"Password Spraying","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/password-spraying","siteSpaceId":"sitesp_yrK42","icon":"spray-can","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"MccUkyVazGpwkhP1F0Z7","title":"Azure App Service","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/azure-app-service","siteSpaceId":"sitesp_yrK42","icon":"globe","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"d9viQekqrp9viponRxh2","title":"Azure Blob Storage","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/azure-blob-storage","siteSpaceId":"sitesp_yrK42","icon":"box-archive","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"OShtzghWPvXr8VnXcs3n","title":"Phishing with Evilginx","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/phishing-with-evilginx","siteSpaceId":"sitesp_yrK42","icon":"face-angry-horns","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"fjas5cnRIxscexkhkjJ7","title":"Conditional Access","pathname":"/pentesting-notes/cloud/azure/service-discovery-recon-enumeration-and-initial-access-attacks/conditional-access","siteSpaceId":"sitesp_yrK42","icon":"scale-balanced","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Service Discovery, Recon, Enumeration and Initial Access Attacks","icon":"bullseye-arrow"}]},{"id":"pJufUoZVutlamNexMvZ5","title":"Authenticated Enumeration","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration","siteSpaceId":"sitesp_yrK42","icon":"magnifying-glass","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"}]},{"id":"inuZjViWDXJVB24YbaNG","title":"ROADTools","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/roadtools","siteSpaceId":"sitesp_yrK42","icon":"screwdriver-wrench","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"vKG1kiLi0gMvLpQfjK8O","title":"BloodHound & AzureHound","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/bloodhound-and-azurehound","siteSpaceId":"sitesp_yrK42","icon":"map-location","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"vVPA1gvZFyZLGCkkZ2oM","title":"Storage Accounts (database)","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/storage-accounts-database","siteSpaceId":"sitesp_yrK42","icon":"database","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"yLcz1B190JCgZkRQTLGa","title":"MFASweep","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/mfasweep","siteSpaceId":"sitesp_yrK42","icon":"key","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"ZpLSfaP1DvyydXl1PoMa","title":"GraphRunner","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/graphrunner","siteSpaceId":"sitesp_yrK42","icon":"person-running-fast","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"r152J3cEbyEPIwyd13jV","title":"Azure SQL databases","pathname":"/pentesting-notes/cloud/azure/authenticated-enumeration/azure-sql-databases","siteSpaceId":"sitesp_yrK42","icon":"database","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Authenticated Enumeration","icon":"magnifying-glass"}]},{"id":"UI0YjpNDhgAOuBWXtFGf","title":"Privilege Escalation","pathname":"/pentesting-notes/cloud/azure/privilege-escalation","siteSpaceId":"sitesp_yrK42","icon":"stairs","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"}]},{"id":"MFbeSFvr1TYTGsJXWouu","title":"Illicit Consent Grant","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/illicit-consent-grant","siteSpaceId":"sitesp_yrK42","icon":"octagon-check","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"IAu6Wk269QPHC2N42sOE","title":"Macro enabled Word-files (Revshell)","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/macro-enabled-word-files-revshell","siteSpaceId":"sitesp_yrK42","icon":"file-doc","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"s8TADNb0WEpiCy1UfOOk","title":"Add secrets to app","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/add-secrets-to-app","siteSpaceId":"sitesp_yrK42","icon":"key","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"BN3YHlryjjUwVi7GswXf","title":"Automation Accounts & Function Apps","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/automation-accounts-and-function-apps","siteSpaceId":"sitesp_yrK42","icon":"webhook","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"9Rb6W0iwbCKC8bKXoSNQ","title":"Virtual Machines","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/virtual-machines","siteSpaceId":"sitesp_yrK42","icon":"bring-forward","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"Qm8lsr1uAQ1Qn7uW1YV0","title":"Key Vault","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/key-vault","siteSpaceId":"sitesp_yrK42","icon":"key-skeleton","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"zRhE2lu1iBtjPrPNcA9Q","title":"ARM Deployment History","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/arm-deployment-history","siteSpaceId":"sitesp_yrK42","icon":"rectangle-history","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"Q5Sn3ZyxahtiS71DC3jt","title":"Enterprise Application / Service Principal","pathname":"/pentesting-notes/cloud/azure/privilege-escalation/enterprise-application-service-principal","siteSpaceId":"sitesp_yrK42","icon":"gear-code","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Privilege Escalation","icon":"stairs"}]},{"id":"0WFxtqYavEHN42mjgY6x","title":"Lateral Movement","pathname":"/pentesting-notes/cloud/azure/lateral-movement","siteSpaceId":"sitesp_yrK42","icon":"sign-post","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"}]},{"id":"AxLz9Medr09IgsPEVYWK","title":"Entra ID Devices & Primary Refresh Tokens","pathname":"/pentesting-notes/cloud/azure/lateral-movement/entra-id-devices-and-primary-refresh-tokens","siteSpaceId":"sitesp_yrK42","icon":"tickets-perforated","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Lateral Movement","icon":"sign-post"}]},{"id":"xODRLHW1U8EdWn5x9HPW","title":"Dynamic Groups","pathname":"/pentesting-notes/cloud/azure/lateral-movement/dynamic-groups","siteSpaceId":"sitesp_yrK42","icon":"people-group","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Lateral Movement","icon":"sign-post"}]},{"id":"L7BBdxK2c84mnw7WXWfT","title":"Application Proxy","pathname":"/pentesting-notes/cloud/azure/lateral-movement/application-proxy","siteSpaceId":"sitesp_yrK42","icon":"arrow-progress","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Lateral Movement","icon":"sign-post"}]},{"id":"zT8NAEYVSjK0paSNLBbU","title":"Hybrid Identity","pathname":"/pentesting-notes/cloud/azure/lateral-movement/hybrid-identity","siteSpaceId":"sitesp_yrK42","icon":"right-left","breadcrumbs":[{"label":"Cloud","emoji":"2601"},{"label":"Azure","icon":"windows"},{"label":"Lateral Movement","icon":"sign-post"}]},{"id":"9IFGZFkRRCHHfXshGfgn","title":"Windows executables and DLL's","pathname":"/pentesting-notes/reversing/windows-executables-and-dlls","siteSpaceId":"sitesp_yrK42","icon":"windows","breadcrumbs":[{"label":"Reversing","emoji":"1f501"}]},{"id":"PvyXYw9EUikxyyimv5d1","title":"Linux binaries","pathname":"/pentesting-notes/reversing/linux-binaries","siteSpaceId":"sitesp_yrK42","icon":"page","description":"","breadcrumbs":[{"label":"Reversing","emoji":"1f501"}]},{"id":"sVvaNojDMkMCKscN9vZu","title":"Java applications","pathname":"/pentesting-notes/reversing/java-applications","siteSpaceId":"sitesp_yrK42","icon":"java","breadcrumbs":[{"label":"Reversing","emoji":"1f501"}]},{"id":"iklA9UJwuRsrstfXLlvp","title":"Android APK","pathname":"/pentesting-notes/reversing/android-apk","siteSpaceId":"sitesp_yrK42","icon":"mobile-signal","breadcrumbs":[{"label":"Reversing","emoji":"1f501"}]},{"id":"23ZXLmp8eEzAkRHlPe4A","title":"WPA/WPA2","pathname":"/pentesting-notes/wireless-networks/wpa-wpa2","siteSpaceId":"sitesp_yrK42","icon":"wifi","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"wqQX7mKNq6BdhJHJUgeR","title":"WPS","pathname":"/pentesting-notes/wireless-networks/wps","siteSpaceId":"sitesp_yrK42","icon":"campfire","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"GfsENQmV2d1BjdBvX0DF","title":"WEP","pathname":"/pentesting-notes/wireless-networks/wep","siteSpaceId":"sitesp_yrK42","icon":"wifi-slash","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"9ycm8ejkca8yZKnJAyYt","title":"Capative portal bypass","pathname":"/pentesting-notes/wireless-networks/capative-portal-bypass","siteSpaceId":"sitesp_yrK42","icon":"unlock-keyhole","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"m5c0mYg31VoLyrTqA9yg","title":"Setting up a Rogue Access Point","pathname":"/pentesting-notes/wireless-networks/setting-up-a-rogue-access-point","siteSpaceId":"sitesp_yrK42","icon":"router","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"jHALQWAvUoW6y3ldx7T2","title":"WPA Enterpise (WPA-MGT)","pathname":"/pentesting-notes/wireless-networks/wpa-enterpise-wpa-mgt","siteSpaceId":"sitesp_yrK42","icon":"file-certificate","breadcrumbs":[{"label":"Wireless networks","emoji":"1f6dc"}]},{"id":"JRERYf8D0Eh7imnQGWZt","title":"Tips and tricks","pathname":"/pentesting-notes/tips-and-tricks/tips-and-tricks","siteSpaceId":"sitesp_yrK42","icon":"star","breadcrumbs":[{"label":"Tips and tricks","emoji":"2b50"}]}]}