Ethical Hacking Tutorial — One-Page Cheat Sheet
Authorized pentesting + CTF: think like an attacker so you can defend like one.
Foundations
- Ethical Hacking HOME
- Intro
- Legal / Authorisation
- Methodology
- MITRE ATT&CK
- Cyber Kill Chain
- Lab Setup (Kali / HTB)
- Writing the Report
Reconnaissance
Web App Pentesting
- Web Recon
- Burp Suite
- OWASP ZAP
- Auth Testing
- IDOR
- Broken Access Control
- SQLi Testing
- XSS Testing
- SSRF Testing
- XXE Testing
- JWT Testing
Network & Wireless
Exploit & Post-Exploit
- Metasploit Basics
- Reverse / Bind Shells (Lab)
- Linux Privilege Escalation
- Windows Privilege Escalation
- Persistence Concepts
- Lateral Movement Concepts
- AV / EDR Considerations
People & Process
- Social Engineering
- Phishing Awareness
- Physical Security
- Cloud Pentesting Basics
- Mobile Pentesting Basics
- IoT Pentesting Basics