Skip to content

Latest commit

 

History

34 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 

Repository files navigation

Enumeration and Exploitation Labs

Professional penetration testing labs documenting reconnaissance, enumeration, exploitation, privilege escalation, post-exploitation, and attack surface analysis across Windows, Linux, web applications, and network services.

Status License Platform Focus


Overview

This repository contains hands-on penetration testing assessments and lab reports developed while studying offensive security, network enumeration, exploitation methodologies, and post-exploitation techniques.

The goal of this repository is to document the complete penetration testing lifecycle in a structured and professional manner while building a practical cybersecurity portfolio.


Assessment Methodology

Reconnaissance
      │
      ▼
Host Discovery
      │
      ▼
Port Enumeration
      │
      ▼
Service Enumeration
      │
      ▼
Vulnerability Assessment
      │
      ▼
Exploitation
      │
      ▼
Privilege Escalation
      │
      ▼
Post Exploitation
      │
      ▼
Reporting

Skills Demonstrated

Enumeration

  • Host Discovery
  • Port Scanning
  • Service Fingerprinting
  • Banner Grabbing
  • SMB Enumeration
  • RPC Enumeration
  • WinRM Enumeration
  • RDP Enumeration
  • HTTP Enumeration
  • DNS Enumeration

Exploitation

  • Service Exploitation
  • Credential Attacks
  • Web Exploitation
  • Metasploit Framework
  • Manual Exploitation

Post Exploitation

  • Local Enumeration
  • Privilege Escalation
  • Credential Harvesting
  • Persistence
  • Pivoting

Tools Used

Network Enumeration

  • Nmap
  • Netcat
  • WhatWeb
  • Enum4linux
  • SMBClient
  • SMBMap
  • RPCClient
  • CrackMapExec

Web Assessment

  • Burp Suite
  • Gobuster
  • Dirb
  • Nikto
  • Curl
  • WPSCan
  • SQLMap

Exploitation

  • Metasploit Framework
  • Searchsploit
  • Hydra
  • Evil-WinRM

Disclaimer

All activities, techniques, and assessments documented in this repository were performed within authorized lab environments, training platforms, Capture The Flag (CTF) challenges, or intentionally vulnerable systems.

The content is provided solely for educational and defensive security purposes. Unauthorized testing against systems without explicit permission is prohibited.


Author

@ashrithpeechara

About

A curated collection of enumeration and exploitation labs documenting the complete penetration testing lifecycle—from reconnaissance and service enumeration to exploitation, privilege escalation, and post-exploitation. Each lab includes methodology, tools used, findings, evidence, attack paths, and professional assessment reports.

Topics

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages