Pentest Playbook A collection of notes and resources that I have gathered during my journey in cybersecurity. Contributions to the project are welcomed! Table of contents Web Bug Bounty Methodology #BugBountyTips XSS Methodology XSS Filter Evasion Advanced web exploitation OWASP API SQL injections Pwn Linux privilege escalation Password cracking Reverse shells Scripting Bash Python (TODO) Mobile (iOS) iOS Penetration Testing Cydia Sources Tools Nmap FFUF Burp Amass Nuclei (TODO) Docker (TODO) Resources Youtube Security Research Blogs Chrome Extensions Vulnerability Research Onion links Networking Subnet cheatsheet