Collection of notes and scripts I've put together
https://www.offensive-security.com/metasploit-unleashed/
https://www.owasp.org/index.php/XSS_Filter_Evasion_Cheat_Sheet
https://www.netsparker.com/blog/web-security/sql-injection-cheat-sheet/
http://brutelogic.com.br/blog/
http://syscalls.kernelgrok.com/
http://blog.portswigger.net/2016/07/executing-non-alphanumeric-javascript.html
https://ired.team/offensive-security-experiments/offensive-security-cheetsheets