This page contains all the notes I have taken while getting ready for the PNPT exam ## Active Directory Attacks ### Initial Attack Vectors - [[Gaining Shell Access]] - [[IPv6 DNS Takeover]] - [[LLMNR Poisoning]] - [[Passback Attacks]] - [[SMB Relay]] ### Post-Compromise Enumeration - [[BloodHound]] - [[ldapdomaindump]] - [[PlumHound]] ### Post-Compromise Attacks - [[GPP Attack]] - [[Kerberoasting]] - [[LNK File Attack]] - [[Pass the Hash]] - [[Post Domain Compromise]] - [[Token Impersonation]] ### Post Exploitation - [[File Transfer]] - [[Maintaining Access]] - [[Pivoting]] ## Linux Privilege Escalation - [[Automation Scripts]] - [[Capabilities]] - [[Cron Jobs]] - [[Docker]] - [[TCM/Linux Priv Esc/Initial Enumeration|Initial Enumeration]] - [[TCM/Linux Priv Esc/Kernel Exploits]] - [[Password and File Permissions]] - [[Root Squash]] - [[Sudo]] - [[SUID]] ## Windows Privilege Escalation - [[Automated Tools]] - [[DLL Hijacking]] - [[Executable Files]] - [[getsystem]] - [[TCM/Windows Priv Esc/Initial Enumeration|Initial Enumeration]] - [[TCM/Windows Priv Esc/Kernel Exploits|Kernel Exploits]] - [[Password Hunting]] - [[Registry]] - [[RunAs]] - [[Service Escalation]] - [[Startup Applications]] - [[Windows Subsystem for Linux]]