Common penetration testing techniques and methodologies:

1. Reconnaissance: Gathering information about the target using passive and active techniques.
   - Passive: OSINT, WHOIS, DNS enumeration, certificate transparency logs
   - Active: Port scanning, service enumeration, banner grabbing

2. Scanning and Enumeration:
   - Network scanning with Nmap
   - Web application scanning with Nuclei
   - Directory brute-forcing with FFUF
   - Subdomain enumeration with Amass, Assetfinder

3. Vulnerability Assessment:
   - CVE identification and mapping
   - Configuration audits
   - SSL/TLS analysis
   - Web application vulnerability scanning

4. Exploitation:
   - SQL injection (SQLMap)
   - Brute force attacks (Hydra)
   - Metasploit framework modules
   - Custom exploit development

5. Post-Exploitation:
   - Privilege escalation
   - Lateral movement
   - Data exfiltration assessment
   - Persistence mechanisms

6. Reporting:
   - Executive summary
   - Technical findings with CVSS scores
   - Evidence and proof of concept
   - Remediation recommendations

Common tools: Nmap, Nuclei, SQLMap, Hydra, Metasploit, FFUF, Masscan, HTTPx,
Katana, Amass, Arjun, Assetfinder, AlterX, ShuffleDNS, Scout Suite, SSL Scanner

OWASP Top 10:
- A01: Broken Access Control
- A02: Cryptographic Failures
- A03: Injection
- A04: Insecure Design
- A05: Security Misconfiguration
- A06: Vulnerable and Outdated Components
- A07: Identification and Authentication Failures
- A08: Software and Data Integrity Failures
- A09: Security Logging and Monitoring Failures
- A10: Server-Side Request Forgery (SSRF)
