QUICK REFERENCE

Pentesting Cheatsheets

Essential commands for scanning, enumeration, exploitation, and privilege escalation.

Scanning & Recon

Nmap, RustScan, Autorecon, network discovery and port scanning commands

View cheatsheet

HTTP/HTTPS Enum

Directory busting, web scanning, gobuster, feroxbuster, nikto, wpscan

View cheatsheet

SMB Enumeration

SMBclient, smbmap, NetExec (nxc), enum4linux, share enumeration

View cheatsheet

Reverse Shells

One-liners for Bash, Netcat, PHP, Python, PowerShell, and TTY upgrades

View cheatsheet

File Transfers

wget, curl, PowerShell, certutil, SMB server, and more

View cheatsheet

Linux Privesc

SUID, sudo, cron, capabilities, kernel exploits, LinPEAS

View cheatsheet

Windows Privesc

Token impersonation, service misconfig, Potato exploits, WinPEAS

View cheatsheet

Active Directory

BloodHound, Kerberoasting, Pass-the-Hash, lateral movement

View cheatsheet

Windows Evasion

AMSI bypass, CLM bypass, AppLocker evasion, LOLBins, Defender evasion

View cheatsheet

Web App Attacks

XSS, SQLi, SSRF, file upload, 403 bypass, WAF evasion, OWASP Top 10

View cheatsheet

Password Attacks

Hashcat, John, Hydra, password spraying, hash cracking

View cheatsheet

BSCP Exam

XSS, SQLi, SSRF, XXE, deserialization, SSTI, request smuggling, auth bypass

View cheatsheet

CRTO Exam

Cobalt Strike, C2 infrastructure, OPSEC, lateral movement, AD attacks, persistence

View cheatsheet
EXAM READY

OSCP Exam Cheatsheet

Comprehensive exam-focused reference: methodology, scanning, service enumeration, web attacks, Active Directory, Linux/Windows privesc, shells, file transfers, pivoting, and password attacks. Everything you need on exam day.

Open OSCP cheatsheet

Useful External Resources