How to Use Shodan: The Beginner's Guide to Recon (2026)
How to use Shodan for recon: the search filters that matter, the CLI workflow, credits explained, and where the legal line sits. Start free and practi...
Cybersecurity insights, tutorials, and best practices
Reading about hacking is great, but nothing beats hands-on practice. Try our labs for free.
How to use Shodan for recon: the search filters that matter, the CLI workflow, credits explained, and where the legal line sits. Start free and practi...
SecLists ships 1.8 GB of wordlists and beginners pick the wrong one. Learn which list fits directories, subdomains, usernames and passwords. Start wit...
Learn how to use Impacket in 2026: install it with pipx, decode the target string every script shares, and run the 8 scripts that matter on a Windows ...
Learn how to use WinPEAS: pick the right binary, fix the colors, read the legend, and triage the output into a real Windows privilege escalation path.
Learn how to use tcpdump with real output: capture on eth0, stop after 100 packets, filter by host, port or DNS, print ASCII with -A, save a pcap for ...
How to use Nikto to scan a web server: install it, run your first scan, read the findings, spot the false positives, and know exactly where it fits in...
How to use Hydra for online password attacks: install it on Kali, learn the syntax once, brute force SSH and web login forms, and know when to stop tr...
How to use binwalk to find and pull out files hidden inside other files: install v2 or v3, read the signature table, extract safely, and solve CTF for...
Google dorking for beginners: the search operators that still work in 2026, a tested Google dorks cheat sheet, and how to use them legally in CTFs and...
Learn how to use ffuf for directory, parameter, and vhost fuzzing. Real commands, real output, and the filtering tricks that turn 15 fake hits into 4 ...
How to use Metasploit step by step: start msfconsole, search 2,686 exploits, pick a payload, and land your first session. Real commands, real output, ...
rockyou.txt explained: where the 14,344,392-password wordlist lives in Kali, how to unzip it, and how to crack with it. Plus data on what is really in...
How to use Netcat: listeners, port checks, banner grabbing, file transfer and reverse shells, plus why nc -e fails on Kali. Real commands, real output...
How to use ExifTool step by step: install it (apt, brew, Windows), read GPS and author tags, batch-export to CSV and strip metadata for real, PDFs inc...
CrackMapExec is archived. Learn how to use NetExec, its maintained successor, to enumerate SMB shares, spray passwords and map Active Directory. Start...
Learn how to use Hashcat: hash mode lookup, dictionary, rule, mask and hybrid attacks, plus fixes for the errors everyone hits. Copy-paste commands in...
The best free OSINT tools sorted by investigation stage: domain recon, username hunting, breach data, and image metadata. 12 picks with the commands t...
Bug bounty hunting for beginners: how programs pay ($81M on HackerOne last year), the bugs that get rewarded, a recon-to-report method and a 6-step st...
Windows privilege escalation explained: enumerate the host, then abuse unquoted service paths, weak service ACLs, and Potato token attacks to reach SY...
How to use Wireshark step by step: install it, capture packets, read the three panes, and master the display filters and TCP stream tricks analysts us...
Learn how to use Gobuster for fast directory, DNS, and vhost enumeration. Install it, master the key flags, filter false positives, and practice in re...
Linux privilege escalation explained: enumerate a shell, then abuse SUID binaries, sudo rules, capabilities, and cron jobs to reach root. With hands-o...
Privilege escalation explained: horizontal vs vertical types, real Linux and Windows techniques like GTFOBins and PwnKit, and how to defend against it...
Network penetration testing methodology in 7 steps: scoping, host discovery, enumeration, lateral movement and reporting, plus internal vs external te...
Reverse shell cheat sheet with copy-paste one-liners for Bash, Python, PHP, netcat, and PowerShell. Catch the shell, upgrade to a full TTY, and practi...
Penetration testing explained: the 5 phases of a real engagement, test types, PTES and NIST methods, key tools, and 30 hands-on guides organized by ph...
You cannot truly decrypt MD5, it is one-way. Learn how to reverse an MD5 hash: online lookup databases first, then crack it with Hashcat or John. Hone...
How to use LinPEAS to find Linux privilege escalation paths: the one-line install, the flags that matter, reading the red-on-yellow output, and OSCP t...
How to use John the Ripper to crack password hashes: install the jumbo build on Kali, Windows or macOS, then run wordlist, rule, mask and *2john attac...
Best penetration testing tools used by working pentesters in 2026: Burp Suite, Nmap, Metasploit, sqlmap, GTFOBins, and 7 more. Practical use cases ins...
Hash cracking tutorial with Hashcat and John the Ripper. Learn hash types, attack modes, wordlist selection, and rule-based cracking with hands-on exa...
Msfvenom cheat sheet with copy-paste one-liners for Windows, Linux, macOS, and web payloads. Reverse shells, bind shells, and shellcode commands for 2...
Nmap cheat sheet for 2026: every command for host discovery, port scanning, service and OS detection, NSE scripts and output formats, plus a free prin...
Choose how you want to get started
Sign in to your account