BMC Series

Center for Internet Security

Center for Internet Security: A Practical Beginner’s Guide to CIS Controls and Security Hardening

The CyberSec Guru

Learn what the Center for Internet Security is, how CIS Controls and CIS Benchmarks work, and why they matter for ethical hacking, pentesting etc

Introduction to Cybersecurity: A Practical Beginner’s Guide for Ethical Hacking

The CyberSec Guru

Learn cybersecurity from the ground up with this beginner-friendly guide covering security basics, ethical hacking, attack chains, common tools etc

Linux Privilege Escalation Cheatsheet

Linux Privilege Escalation – the Practical Hacking Cheatsheet Series

The CyberSec Guru

A practical Linux Privilege Escalation Cheatsheet covering sudo abuse, SUID binaries, capabilities, cron jobs, kernel exploits, Docker escape and all

Modern Pentesting Methodology

Modern Pentesting Methodology: How Real Penetration Tests Actually Flow

The CyberSec Guru

Learn how real penetration tests flow from recon and scanning to exploitation, privilege escalation, pivoting, and reporting. Full guide for members

Web Application Attack Cheatsheet

Web Application Attack – the Practical Hacking Cheatsheet Series

The CyberSec Guru

A practical Web Application Attack Cheatsheet covering recon, directory brute-forcing, SQL injection, XSS and more, specifically Designed for HTB

Active Directory Attack Cheatsheet for HTB

Active Directory – the Practical Hacking Cheatsheet Series

The CyberSec Guru

Get a practical Active Directory attack cheatsheet covering AD enumeration, BloodHound, LDAP, SMB and More, Specifically Designed for HTB

Linux User and Permission Models

Linux User and Permission Models: A Deep Technical Guide from First Principles to Engineer

The CyberSec Guru

The Linux user and permission models are not just about memorizing chmod 755 or knowing that root is powerful. They define every restriction

Your Password Reset Is Broken

Your Password Reset Is Broken – And You Probably Don’t Know It

The CyberSec Guru

Most developers don't know their password reset flow can be exploited in seconds. Learn how trusting client-side flags like is_verified leads to full account takeover and how to fix it

Who Approved This (Security Edition)

Who Approved This? (Security Edition)

The CyberSec Guru

Discover real-world security design failures that should never exist. This series breaks down how systems are built wrong, how attackers exploit them, and how to fix them properly

Multiboot Explained: How Bootloaders Load Operating Systems

Multiboot Explained: How Bootloaders Load Operating Systems

The CyberSec Guru

A definitive, in-depth guide to the Multiboot specification. Learn why boot standards exist, how GRUB discovers kernels, and the exact structure of the Multiboot header

12 Next