Brain Dump
187 / 187 entriesInfrastructure Enumeration: Mapping the Target
Before you can hack a target, you must understand it. Learn the principles of infrastructure enumeration, from DNS and cloud resources to OSINT and staff profiling.
Passive & Active Enumeration Checklist
Map the target's footprint without setting off alarms — from passive DNS to active service discovery. Phased recon: passive → semi-passive → active.
CPTS: Network Enumeration with Nmap
Comprehensive guide to mastering Nmap for Hack The Box CPTS. Covers Host Discovery, UDP scanning headaches, NSE scripting, Firewall/IDS evasion, and custom ZSH automation for extracting ports.
Nmap Engagement & Evasion Strategy
A systematic Nmap workflow — host discovery to service enumeration to firewall evasion. Run these phases in order.
Bypassing F5 Bot Defense (Shape Security)
How Shape Security / F5 Distributed Cloud Bot Defense detects automation — TLS fingerprints, CDP detection — and the techniques that get around it.
F5 BIG-IP Next and Distributed Cloud
Full proxy architecture, User Configuration Sets, and what F5 Distributed Cloud adds — multicloud, API discovery, and shadow vs zombie APIs.
HTB - Cap Walkthrough
Walkthrough checklist for the HackTheBox Cap machine — IDOR, PCAP analysis, FTP credentials, and Linux Capability exploitation.
F5 BIG-IP Next: Architecture and Migration
Training notes on BIG-IP Next — microservices, Central Manager, Kubernetes flavours, AS3 automation and migrating classic BIG-IP configs across.
F5 BIG-IP Web Application Firewall
Positive vs negative security models, policy templates, learning mode and attack signatures — how the F5 BIG-IP WAF decides what to block.