Advanced // Specialist Domains

Advanced Surfaces

This domain collects the surfaces that sit beyond routine web and internal work: cloud, API, mobile, identity, supply chain, AI, OT/ICS and cyber-physical targets. The purpose is to keep specialist areas first-class instead of burying them inside generic notes.

19 notescurated referencespublic research surface

Domain overview

Advanced surfaces are where offensive work becomes more architecture-aware. Cloud identity, API object models, mobile runtime control, federation, build pipelines, model-facing systems and industrial protocols all require different questions, tooling and reporting language from standard web or internal assessments.

Related certification context

These certifications map to parts of the specialist surface collected here.

Curated public references

Domain index

domain

Cloud Offensive Security

Provider control planes, workloads, Kubernetes, cloud identities and automation abuse.

domain hubpublic links
domain

API Security

REST, GraphQL, JWT, OAuth/OIDC, BOLA/BFLA and endpoint fuzzing.

domain hubpublic links
domain

Mobile App Pentesting

Android/iOS testing, Frida, TLS pinning, deep links and mobile reversing.

domain hubpublic links
domain

OT / ICS Security

Industrial protocols, PLC/HMI trust and process-level impact.

domain hubpublic links
domain

AI Security

Prompt injection, agents, tool misuse, retrieval abuse and offensive AI ops.

domain hubpublic links