#
Title
1

Episode 96 — Final Exam Readiness Drill (Audio Practice)

2

Episode 95 — Executive Summary That Doesn’t Suck

3

Episode 94 — Building the Attack Narrative

4

Episode 93 — Cleanup and Restoration

5

Episode 92 — Data Handling and Evidence

6

Episode 91 — Staging and Exfiltration Concepts

7

Episode 90 — Common Lateral Paths (SMB/RDP/SSH/WinRM/WMI)

8

Episode 89 — Pivoting Concepts

9

Episode 88 — Lateral Movement Logic

10

Episode 87 — Credential Reuse and Expansion

11

Episode 86 — Persistence Families

12

Episode 85 — Post-Exploitation Goals

13

Episode 84 — Automation and BAS Concepts

14

Episode 83 — AI-Related Attacks (High-Level)

15

Episode 82 — Specialized Systems: OT, NFC, RFID, Bluetooth

16

Episode 81 — Mobile Attack Concepts

17

Episode 80 — Social Engineering Patterns

18

Episode 79 — Wireless Attack Patterns

19

Episode 78 — Cloud Attack Patterns: Storage and Metadata

20

Episode 77 — Cloud Attack Patterns: Identity First

21

Episode 76 — Web Attack Mini-Scenarios

22

Episode 75 — Deserialization and File Inclusion Concepts

23

Episode 74 — SSRF vs CSRF (And Why They Differ)

24

Episode 73 — Access Control Failures: IDOR and AuthZ

25

Episode 72 — XSS Types and Outcomes

26

Episode 71 — Injection Families (SQL/Command/Template)

27

Episode 70 — Web Attack Surface: Inputs, Auth, Sessions

28

Episode 69 — Host Attack Mini-Scenarios

29

Episode 68 — Evasion and Operational Security

30

Episode 67 — Living-off-the-Land Concepts

31

Episode 66 — Credential Access Patterns

32

Episode 65 — Local Privilege Escalation Patterns

33

Episode 64 — Auth Attack Mini-Scenarios

34

Episode 63 — Federation Basics: SAML and OIDC

35

Episode 62 — Token and Session Attacks

36

Episode 61 — Kerberos Concepts for the Exam

37

Episode 60 — MFA Bypass Patterns (Conceptual)

38

Episode 59 — Password Attacks: Spray vs Stuff vs Brute Force

39

Episode 58 — Network Attack Mini-Scenarios

40

Episode 57 — Service Exploitation Logic

41

Episode 56 — Segmentation and Trust Failures

42

Episode 55 — Name Resolution and Relay Concepts

43

Episode 54 — On-Path Attacks (Conceptual)

44

Episode 53 — Common Network Weakness Patterns

45

Episode 52 — Exploit Selection and Safety

46

Episode 51 — Prioritization: High Value Targets and Quick Wins

47

Episode 50 — Attack Planning: From Findings to a Path

48

Episode 49 — Vulnerability Analysis Mini-Scenarios

49

Episode 48 — Physical Security Techniques (Conceptual)

50

Episode 47 — OT/ICS Assessment Concepts (High-Level)

51

Episode 46 — False Positives and False Negatives

52

Episode 45 — Validating Findings Without Breaking Things

53

Episode 44 — Prioritization Cues (CVE/CVSS/CWE/EPSS)

54

Episode 43 — IaC and Configuration Findings

55

Episode 42 — Container Vulnerability Concepts

56

Episode 41 — Secrets Scanning Concepts

57

Episode 40 — Dependency and Supply Chain Findings

58

Episode 39 — Web/App Scanning Families

59

Episode 38 — Network Vulnerability Scanning Concepts

60

Episode 37 — Authenticated vs Unauthenticated Scanning

61

Episode 36 — Discovery vs Validation vs Exploitation

62

Episode 35 — Recon/Enum Output Interpretation Drills

63

Episode 34 — Scripting Concepts for Recon (Bash/Python/PowerShell)

64

Episode 33 — Cloud Enumeration Concepts

65

Episode 32 — Wireless Recon Basics

66

Episode 31 — Authentication Surface Enumeration

67

Episode 30 — Web Enumeration: Robots, Sitemaps, and Metadata

68

Episode 29 — Web Enumeration: Content and Paths

69

Episode 28 — DNS Enumeration Patterns

70

Episode 27 — Banner Grabbing and Fingerprinting

71

Episode 26 — Port/Service Scanning Concepts

72

Episode 25 — Host Discovery Logic

73

Episode 24 — OSINT: Breaches and Credential Exposure

74

Episode 23 — OSINT: Code and Artifact Leaks

75

Episode 22 — OSINT: Domains, DNS, and Internet Exposure

76

Episode 21 — OSINT: People and Org Footprints

77

Episode 20 — Active Recon Fundamentals

78

Episode 19 — Passive Recon Fundamentals

79

Episode 18 — Recon vs Enumeration

80

Episode 17 — Remediation Recommendations That Fit

81

Episode 16 — Reporting: What a Strong Report Includes

82

Episode 15 — MITRE ATT&CK in PenTesting Context

83

Episode 14 — OWASP: Top 10 and MASVS

84

Episode 13 — Methodologies: PTES and OSSTMM

85

Episode 12 — Communication During Testing

86

Episode 11 — Ethics and Mandatory Reporting

87

Episode 10 — Engagement Types and Constraints

88

Episode 9 — Legal Docs You Must Recognize

89

Episode 8 — ROE Deep Dive

90

Episode 7 — Scoping the Engagement

91

Episode 6 — Your Daily Listening Study Loop

92

Episode 5 — Risk Language: Severity vs Impact vs Likelihood

93

Episode 4 — Scope, ROE, and Staying Legal

94

Episode 3 — Tool Purpose Map (No Commands)

95

Episode 2 — The PenTest Workflow as a Timeline

96

Episode 1 — How PenTest+ Questions Work

97

Welcome to the PenTest+ Audio Course