Main Page
From Wiki Aghanim
BOOK_GHANIM
Welcome to Book Ghanim - A collection of cybersecurity notes, write-ups, programming guides, and homelab documentation.
Ghanim Wiki
This website is created by Alaa Ghanim. I'm currently working as a red team operator and this website is mainly used for documenting my cyber security journey. There is so much to learn and keep track of, so it's kind of a library where I add everything new I learn and use it as a reference point.
For more, see the About page.
Note: Just migrated away from wordpress, so there might be some broken changes that I might not have adressed yet.
Handbooks
| Handbook | Description |
|---|---|
| Handbook I - Basic | Pentesting fundamentals - enumeration, services, shells, privilege escalation, tools |
| Handbook II - Advanced | Advanced techniques and methodologies |
| Handbook III - Cloud | Cloud security notes |
| Handbook IV - RedTeam | Red team operations and techniques |
| Handbook V - Maldev | Malware development notes and resources |
Quick Links
| Methodology | Toolbox | OSEP Checklist |
| Active Directory | AV Evasion | Pivoting Guide |
Sections
Offensive Security
- Active Directory - Notes, Methodology, Cheatsheet
- AV Evasion 101
- Buffer Overflow - Notes and Cheatsheet
- Command and Control - C2 Framework
- Pivoting and Port Forwarding Guide
- OSEP Checklist
Write-ups
See all write-ups or browse by platform:
Learning Path (TryHackMe Course Notes)
See Learning Path for the full ordered list.
Programming
HomeLab
- Setting Up a Detection Lab
- NGINX SSL Reverse Proxy
- Snort3 + ELK Stack
- Homelab Cheatsheet
- All HomeLab guides
Recently changed
{Link:
List of abbreviations:
- N
- This edit created a new page (also see list of new pages)
- m
- This is a minor edit
- b
- This edit was performed by a bot
- (±123)
- The page size changed by this number of bytes
18 February 2026
| 10:34 | Offensive Security/Buffer Overflow diffhist −161 Administrator talk contribs | ||||
| 10:33 | Homelab Cheatsheet diffhist −89 Administrator talk contribs | ||||
|
|
08:15 | Offensive Security/Extract BitLocker VMK from TPM 5 changes history +14,442 [Administrator (5×)] | |||
|
|
08:15 (cur | prev) +6 Administrator talk contribs | ||||
|
|
08:14 (cur | prev) −19 Administrator talk contribs (→Creating LNK File) | ||||
|
|
08:13 (cur | prev) −395 Administrator talk contribs (→Deploying Stager) | ||||
|
|
08:11 (cur | prev) −104 Administrator talk contribs (→Decrypting the Drive) | ||||
|
|
08:10 (cur | prev) +14,954 Administrator talk contribs | ||||
17 February 2026
|
|
23:45 | Programming/Use SQLite in Csharp 2 changes history +78 [Administrator (2×)] | |||
|
|
23:45 (cur | prev) −27 Administrator talk contribs (→Use in C#) | ||||
|
|
23:45 (cur | prev) +105 Administrator talk contribs (→Use in C#) | ||||
|
|
23:12 | (Move log) [Administrator (3×)] | |||
|
|
23:12 Administrator talk contribs moved page Programming/Use SQLite in C to Programming/Use SQLite in Csharp | ||||
|
|
22:30 Administrator talk contribs moved page Extract BitLocker VMK from TPM to Offensive Security/Extract BitLocker VMK from TPM | ||||
|
|
22:08 Administrator talk contribs moved page Toolbox to SecurityTools (Misspelled title) | ||||
|
|
23:09 | Handbook I - Basic 2 changes history −1,883 [Administrator (2×)] | |||
|
|
23:09 (cur | prev) −1,868 Administrator talk contribs | ||||
|
|
22:09 (cur | prev) −15 Administrator talk contribs (→Network Mapping) | ||||
|
|
23:07 | Main Page 6 changes history −273 [Administrator (6×)] | |||
|
|
23:07 (cur | prev) −370 Administrator talk contribs | ||||
|
|
23:06 (cur | prev) −17 Administrator talk contribs | ||||
|
|
22:25 (cur | prev) −15 Administrator talk contribs (→Recently Created Pages) | ||||
|
|
21:50 (cur | prev) +71 Administrator talk contribs | ||||
|
|
21:47 (cur | prev) +24 Administrator talk contribs | ||||
|
|
21:46 (cur | prev) +34 Administrator talk contribs | ||||
|
|
N 22:50 | Programming/Use SQLite in C 7 changes history +1,862 [Administrator (7×)] | |||
|
|
22:50 (cur | prev) −11 Administrator talk contribs Tag: Manual revert | ||||
|
|
22:49 (cur | prev) +11 Administrator talk contribs Tag: Reverted | ||||
|
|
22:48 (cur | prev) −8 Administrator talk contribs (→SQLite) | ||||
|
|
22:47 (cur | prev) −19 Administrator talk contribs | ||||
|
|
22:47 (cur | prev) +249 Administrator talk contribs | ||||
|
|
22:44 (cur | prev) −5 Administrator talk contribs (→Use in C#) | ||||
| N |
|
22:43 (cur | prev) +1,645 Administrator talk contribs (Created page with "== SQLite == SQLite is a relational database that is small, and does not require much resources to run. == Use in C# == To use SQLite in your C# project you first need to install ''Sqlite'' packages from EntityFrameworkCore. <syntaxhighlight lang="bash"> dotnet add package Microsoft.EntityFrameworkCore.Sqlite </syntaxhighlight> Create a ''DBContext'' class, such as the one below. <syntaxhighlight lang="csharp"> { public class DBContext : DbContext // Custom...") | |||
|
|
22:49 | Offensive Security/Command and Control 2 changes history −255 [Administrator (2×)] | |||
|
|
22:49 (cur | prev) −39 Administrator talk contribs | ||||
|
|
22:22 (cur | prev) −216 Administrator talk contribs | ||||
|
|
N 22:29 | Extract BitLocker VMK from TPM 2 changes history +44 [Administrator (2×)] | |||
|
|
22:29 (cur | prev) +34 Administrator talk contribs | ||||
| N |
|
22:25 (cur | prev) +10 Administrator talk contribs (Created page with "== Extract") | |||
| 22:19 | Offensive Security/Pivoting and Port Forwarding diffhist −315 Administrator talk contribs | ||||
| 22:19 | Offensive Security/AV Evasion diffhist −1,250 Administrator talk contribs | ||||
| 22:13 | Offensive Security/Active Directory diffhist −1,030 Administrator talk contribs | ||||
| 22:12 | Handbook IV - RedTeam diffhist −1,083 Administrator talk contribs | ||||
| 22:11 | Handbook V - Maldev diffhist −74 Administrator talk contribs | ||||
| 22:11 | Handbook III - Cloud diffhist −5 Administrator talk contribs | ||||
|
|
22:11 | Handbook II - Advanced 4 changes history −2,397 [Administrator (4×)] | |||
|
|
22:11 (cur | prev) −2,329 Administrator talk contribs | ||||
|
|
21:37 (cur | prev) −53 Administrator talk contribs | ||||
|
|
21:36 (cur | prev) −11 Administrator talk contribs (→Reflective injection) | ||||
|
|
21:35 (cur | prev) −4 Administrator talk contribs (→Bypass CLM using Meterpreter Powershell_execute) | ||||
| 22:10 | Learning Path/Shells diffhist −176 Administrator talk contribs | ||||
|
|
22:09 | MediaWiki:Sidebar 6 changes history +7 [Administrator (6×)] | |||
|
|
22:09 (cur | prev) +7 Administrator talk contribs | ||||
|
|
22:02 (cur | prev) −1 Administrator talk contribs | ||||
|
|
22:01 (cur | prev) −27 Administrator talk contribs | ||||
|
|
22:01 (cur | prev) +17 Administrator talk contribs | ||||
|
|
22:01 (cur | prev) −19 Administrator talk contribs | ||||
|
|
22:01 (cur | prev) +30 Administrator talk contribs | ||||
|
|
21:59 | HomeLab/Nvidia GPU Transcoding 2 changes history −16 [Administrator (2×)] | |||
|
|
21:59 (cur | prev) +1 Administrator talk contribs | ||||
|
|
21:58 (cur | prev) −17 Administrator talk contribs | ||||