CyberCheatsheets

All tools

18 cheatsheets in Exploitation & Payloads

binwalk

Exploitation

Firmware and file analysis tool that scans for embedded files and extracts hidden archives.

carvingfirmwaresteganography

Buffer Overflow

Exploitation

Stack-based buffer overflow workflow: fuzz, find the offset, control EIP, find bad chars, locate a JMP ESP, and get a shell.

binary-exploitationbuffer-overflowoscppwn

checksec

Exploitation

Quick report of binary security mitigations (RELRO, stack canary, NX, PIE, Fortify).

binarycanarymitigationsnx

Chisel

Exploitation

Fast TCP/UDP tunnel over HTTP(S) for pivoting through compromised hosts when SSH is unavailable.

pivotsockstunnel

file

Exploitation

Identify file types from magic bytes — essential before choosing exploit, extraction, or analysis tools.

binaryforensicsmagic

GDB (GEF / Pwndbg)

Exploitation

GNU debugger for binary analysis with GEF or Pwndbg for heap, registers, and exploit-oriented views.

binarydebuggergefpwndbg

Ligolo-ng

Exploitation

Advanced pivoting via TUN interface and agent — cleaner routing than SOCKS for multi-host internal scans.

pivottuntunnel

Linux Privilege Escalation

Exploitation

Enumeration and escalation paths to go from a low-privilege shell to root on Linux during authorized engagements.

enumerationlinuxpost-exploitationprivesc

Metasploit Framework

Exploitation

Modular exploitation framework for scanning, exploiting, and post-exploitation with msfconsole, handlers, and msfvenom.

exploithandlermsfconsolemsfvenom

msfvenom

Exploitation

Generate and encode standalone payloads (reverse shells, shellcode, MSI/EXE/ELF) for authorized exploitation.

metasploitmsfvenompayloadreverse-shell

ngrok

Exploitation

Expose local services to the internet for reverse shells, webhooks, and phishing callbacks during authorized tests.

callbackreverse-shelltunnel

objdump

Exploitation

Disassemble ELF binaries, inspect sections, symbols, and relocations for exploit development.

disassemblyelfreversing

pwntools

Exploitation

Python library for exploit development, remote/local process interaction, and ROP/shellcode workflows.

ctfexploit-devpwnpython

ROPgadget

Exploitation

Classic ROP gadget finder with --ropchain auto-generation for simple execve/sh chains.

gadgetsret2libcrop

Ropper

Exploitation

ROP gadget search tool supporting ELF/PE with semantic filtering and chain building helpers.

binarygadgetsrop

sshuttle

Exploitation

Transparent proxy/VPN over SSH — route subnets through a compromised SSH host without modifying sshd config.

pivotsshvpn

strings

Exploitation

Extract printable strings from binaries and dumps to find URLs, flags, passwords, and error messages.

binaryforensicsrecon

Windows Privilege Escalation

Exploitation

Enumeration and escalation paths from a low-privilege Windows user to SYSTEM or Administrator on authorized engagements.

enumerationpost-exploitationprivesctokens