◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈ ◈
Offensive Security Field Guides

Attack
Playbooks
for Pentesters

git clone redops/playbooks
cd auth-attack && cat README.md
// structured pentesting methodology

Step-by-step attack chains, tooling references, and detection notes — built for offensive security professionals who prefer methodology over guesswork.

scroll
14+
Techniques Documented
across 1 playbook
6
Attack Categories
playbooks in roadmap
4
Severity Levels
critical to low
/opt/redops/playbooks

Playbook Library

critical

Auth Attack Playbook

Authentication & Session Exploitation

Structured methodology for testing authentication mechanisms — brute force, credential stuffing, session fixation, token forgery, and OAuth abuse chains.

#auth#session#oauth#jwt
Techniques
14
Updated
2025-05
Open →
Coming Soon
recon

Web Recon Playbook

Passive & Active Reconnaissance

Full-spectrum recon methodology covering OSINT, subdomain enumeration, tech fingerprinting, and attack surface mapping before exploitation.

#recon#osint#enumeration
Techniques
22
Updated
soon
Pending
Coming Soon
critical

SQL Injection Deep Dive

Injection Attack Chains

From error-based to blind time-based SQLi, covering WAF bypass techniques, OOB exfiltration, and privilege escalation via database misconfiguration.

#sqli#injection#exfil#waf-bypass
Techniques
19
Updated
soon
Pending
Coming Soon
high

Linux Privilege Escalation

Post-Exploitation — Local PE

Enumerating SUID binaries, writable cron paths, sudo misconfigurations, capabilities abuse, and kernel exploit triage for CTF and real engagements.

#linux#privesc#post-exploit
Techniques
31
Updated
soon
Pending
Coming Soon
high

API Security Playbook

REST & GraphQL Testing

BOLA, broken function-level authorization, mass assignment, and rate-limiting bypass across REST endpoints and GraphQL introspection abuse.

#api#rest#graphql#bola
Techniques
17
Updated
soon
Pending
Coming Soon
medium

Network Lateral Movement

Internal Network Traversal

Pass-the-hash, Kerberoasting, AS-REP roasting, NTLM relay, and pivoting techniques for internal network traversal in AD environments.

#ad#kerberos#lateral#smb
Techniques
26
Updated
soon
Pending
// methodology

Built for the field,
not the classroom

Each playbook is a living document — structured as an attack chain with prerequisite context, tooling commands, detection indicators, and remediation notes for responsible disclosure.

Designed for authorized penetration testing, bug bounty engagements, CTF competitions, and red team operations. Always obtain written authorization before testing.

Read a Playbook
Structured Attack Chains
Techniques ordered by phase — recon → exploit → post-exploit — not a random tool dump.
Tooling References
Real commands with flags, not vague descriptions. Copy-paste ready for supported tools.
Detection Notes
Each technique includes blue team indicators so defenders understand what to watch for.
Severity Classification
CVSS-informed severity ratings per technique to prioritize remediation effectively.