List of links and websites with updates on Cyber Security and Computer Science Knowledge
This page will be always >> work in progress <<. List of links for websites with updates on Cyber Security and other knowledges areas on Computer Science Knowledge.
-
https://www.youtube.com/user/schafer5/playlists - Corey Schafer
-
https://www.youtube.com/channel/UC4xKdmAXFh4ACyhpiQ_3qBw/videos - TechLead
A¶
Alienvault¶
AWS¶
- https://aws.amazon.com/training/
- https://www.youtube.com/user/AmazonWebServices/search?query=deep+dive
- https://www.youtube.com/playlist?list=PLhr1KZpdzukfdjsOHZ-BazZt1iK1J8UUw - AWS Knowledge Center Videos
- https://www.youtube.com/user/AWSwebinars/videos - AWS Online Tech Talks
-
https://www.youtube.com/playlist?list=PLhr1KZpdzukcaA06WloeNmGlnM_f1LrdP - AWS Management and Governance
-
https://www.wellarchitectedlabs.com/security/
AWS well architected labs
B¶
C¶
- https://github.com/carlospolop?tab=repositories -
Carlos Polop
,https://book.hacktricks.xyz
,PEASS-ng for priviledge escalation
-
https://github.com/carlospolop/PEASS-ng -
PEASS-ng - Privilege Escalation Awesome Scripts SUITE new generation
-
https://gchq.github.io/CyberChef/ -
CyberChef
- https://www.crest-approved.org/certification-careers/about-crest-exams/
-
https://service-selection-platform.crest-approved.org/accredited_companies/soc/
D¶
- https://www.flickr.com/photos/95869671@N08/ -
Domain of Science - Dominic Walliman
E¶
edx-org¶
F¶
-
https://www.youtube.com/c/Freecodecamp/videos -
Freecodecamp
G¶
Steve Gibson at grc.com
- https://www.grc.com/cookies/cookies.htm
- https://www.grc.com/cookies/forensics.htm
-
https://www.grc.com/securitynow.htm -
Security Now podcast by Steve Gibson and Leo Laporte
-
https://securityprofession.blog.gov.uk/ - Government security
- https://hodigital.blog.gov.uk/ - Home Office Digital, Data and Technology
- https://hodigital.blog.gov.uk/wp-content/uploads/sites/161/2020/03/Cyber-Threat-Intelligence-A-Guide-For-Decision-Makers-and-Analysts-v2.0.pdf
H¶
I¶
-
https://www.infosecmatter.com/where-to-learn-ethical-hacking-and-penetration-testing/
- https://www.immersivelabs.com/labs-and-content/red-team-training/
-
https://www.digitalmarketplace.service.gov.uk/g-cloud/services/556859949626618
Gov UK > Digital Marketplace > Cloud hosting, software and support > Cloud > softwareImmersive Labs
-
https://www.flashpoint-intel.com/blog/threat-intelligence-lifecycle/ - Threat Intelligence Lifecycle
- The threat intelligence lifecycle is considered to comprise five stages, each of which helps to ensure quality CTI data which can be utilised to support cyber defence.
- 1) Planning and direction: Set the scope and objectives for core intel roles and processes.
- 2) Collection: Deploy data gathering and processing techniques and sources.
- 3) Analysis: Translate raw intel into meaningful and taxonomized actors, events, and attributes.
- 4) Production: Assess intel significance and severity based on business and environmental context.
-
5) Dissemination and feedback: Report on finished intel, considering urgency and confidentiality.
-
Planning and direction This stage involves defining a business strategy and goals which the CTI program will support.
It will cover the information and processes to be protected, priorities, and CTI required to complete this goal. -
Collection This stage involves defining what information should be collected in order to resolve a full picture of the threat landscape.
Threat data will be collected from numerous sources and formats; this data will need to be deduplicated and normalised before use. -
Analysis The analysis stage of the CTI lifecycle involves analysts processing the collected data against the guidance and requirements laid out in the planning and direction stage.
The analysis should determine the reliability and relevance of the data collected. -
Production The results of the analysis stage should be delivered to the necessary teams within the organisation.
The CTI should be distributed to stakeholders in a manner which is suitable for consumption, whether this is a report, presentation, or other format. -
Dissemination and feedback Teams that receive CTI should be part of the CTI lifecycle.
They should report whether the information proved to be valuable against the goals laid out in the planning and direction stages.
This feedback will be used in the next planning and direction cycle stage.
J¶
- https://www.youtube.com/c/JohnHammond010/videos -
John Hammond
K¶
L¶
- https://training.linuxfoundation.org/training/developing-secure-software-lfd121/
-
https://training.linuxfoundation.org/resources/?_sft_content_type=free-course -
link to free-course
M¶
N¶
O¶
- https://help.offensive-security.com/hc/en-us/sections/6970444968596-Penetration-Testing-with-Kali-Linux-PEN-200- -
- https://www.twitch.tv/offsecofficial
P¶
Q¶
R¶
-
https://replit.com/pricing ← collaborative coding and learning via browser
S¶
- https://www.grc.com/securitynow.htm -
Security Now podcast
-
https://twit.tv/shows/security-now - Security Now
- https://www.sans.org/posters/
- https://www.sans.org/cyber-security-courses/defensible-security-architecture-and-engineering/
- https://www.sans.org/blog/password-hash-cracking-amazon-web-services/
-
https://www.schneier.com/ -
Bruce Schneier
- https://exposure.shodan.io/#/
-
https://ugc.futurelearn.com/uploads/files/3f/d3/3fd36a66-d941-4595-b587-1a7b41998ae9/Week_3_Sophos_Threatsaurus_AZ.pdf -
Sophos Threatsaurus AZ
-
https://www.simplilearn.com/tutorials/cyber-security-tutorial -
Cyber Security Tutorial - A Step-by-Step Guide
T¶
- https://talosintelligence.com/
- https://talosintelligence.com/resources
-
https://takahiro-oda.medium.com/ -
takahiro oda
, good whireshark tutorials and others.
U¶
V¶
W¶
Wireshark¶
- https://www.wireshark.org/#learnWS
- https://www.wireshark.org/docs/wsug_html_chunked/
- https://packetlife.net/media/library/13/Wireshark_Display_Filters.pdf
X¶
Y¶
-
https://news.ycombinator.com/ -
Hacker News
-
https://www.youtube.com/user/advexon/videos - Advexon Science Network
-
https://www.youtube.com/user/ProgrammingKnowledge/videos - ProgrammingKnowledge
Z¶
- https://www.zaproxy.org/videos/ -
OWASP ZAP
- https://www.zaproxy.org/zap-deep-dive/
- https://zapcon.io/
- https://www.youtube.com/c/StackHawk/videos -
StackHawk makes it simple for developers to find, triage, and fix application security bugs. Scan your application for AppSec bugs in the code your team wrote, triage and fix with provided documentation, and automate in your pipeline to prevent future bugs from hitting prod.