README.md

March 14, 2026 ยท View on GitHub

๐Ÿ—„๏ธ MSSQL Pentest Cheatsheet

A practical Microsoft SQL Server penetration testing cheat sheet designed for penetration testers, red teamers, and cybersecurity learners to understand how to enumerate, exploit, and abuse misconfigured MSSQL databases during security assessments.

๐ŸŒ Connect With Us

๐Ÿ”ต Telegram โ€“ Join Channel
โšซ Twitter/X โ€“ Follow Us
๐ŸŸฃ Discord โ€“ Join Server
๐Ÿ’ผ LinkedIn โ€“ Follow HackingArticles

๐ŸŽ“ Training Program

๐Ÿš€ Join Our Cybersecurity Training Program

Hands-on training in Penetration Testing, Red Teaming, and Cybersecurity.

image

๐Ÿ—„๏ธ MSSQL for Pentesters

#TopicDescriptionArticle
1๐Ÿ”„ Stored Procedures PersistenceMaintain persistence on MSSQL servers using stored proceduresRead Article
2๐Ÿ”— Abusing Linked DatabaseExploit linked database configurations to pivot across MSSQL serversRead Article
3โš™๏ธ Abusing TrustworthyAbuse the TRUSTWORTHY database property to escalate privilegesRead Article
4๐Ÿง  Command Execution with External ScriptsExecute system commands via MSSQL external scripting featuresRead Article
5๐ŸŽญ ImpersonateAbuse impersonation privileges to escalate database accessRead Article
6๐Ÿš€ MetasploitExploit MSSQL services using Metasploit modulesRead Article
7๐Ÿงฉ Command Execution with CLR AssemblyExecute arbitrary code through custom CLR assembliesRead Article
8โšก Command Execution with OLE AutomationExecute OS commands using OLE Automation proceduresRead Article
9๐Ÿ” DiscoveryDiscover MSSQL services and configurations during reconnaissanceRead Article
10๐Ÿ’ป Command Execution with xp_cmdshellExecute operating system commands via xp_cmdshellRead Article
11๐Ÿ“ก MSSQL Enumeration with NmapDiscover and enumerate MSSQL services using Nmap scriptsRead Article
12๐Ÿ” HashingExtract and analyze password hashes stored in MSSQLRead Article
13๐Ÿ› ๏ธ Extended Stored ProceduresExecute commands using extended stored proceduresRead Article
14๐Ÿ“‚ Extracting Juicy InformationExtract sensitive information from MSSQL databasesRead Article
15๐Ÿงช MSSQL Lab SetupCreate a lab environment to practice MSSQL penetration testingRead Article