resources
Foundations
Nothing hacking related in this section, just links covering what are considered the foundations of InfoSec
General Links
Networking
General Links
Assigning IP Addresses
Protocols
DHCP
Network Analysis Tools
IPTABLES
Packet Filter
Programming
General Links
Python
PowerShell
CSharp
Windows
General Links
Registry Stuffs
Win Internals
*nix
General Links
Vulnerable labs & practice apps
OWASP Juice Shop — vulnerable web app (Node/Express/Angular), OWASP Top 10 and more.
Metasploitable 2 — purpose-built vulnerable Ubuntu VM for enumeration/exploitation practice.
Metasploitable 3 — template for building vulnerable Windows VMs.
DVWA — PHP/MySQL vulnerable web app with multiple difficulty levels.
Walkthroughs & video
IppSec — HTB box walkthroughs and technique videos.
0xdf hacks stuff — HTB writeups with “Beyond root” sections.
VbScrub — HTB and AD-focused videos.
STÖK — bug bounty and web app testing.
LiveOverflow — wide range of technical infosec topics.
Web App
HTTP/2
GitHub Repos
GitHub Profiles
Blogs
Tools
Pentesting vs. Red Teaming
Pentesting
General Links
Web App Stuffs
Active Directory
AD CS
Kerberoasting
PowerShell For Pentesters
Miscellaneous
GTFOBins
Red Teaming
General Links
Github Repos
Blogs
Tools
DevOps for RT
Pivoting
SSH Tunneling
Persistence
Evasion Techniques
Obfuscation
Bypassin' UAC
Breakin' AMSI
Messing W/ WinAPI
D/Invoke
P/Invoke
AV/EDR? What's that?
Process Injection
Messing w/ Syscalls
Lateral Movement
Exfiltration
Domain Fronting/Borrowing
Domain Borrowing
Domain Fronting
Command and Control
Detecting Attacks
Building out a AdSim Lab
Mudge Youtube Playlists
LOLBAS
Malware Analysis/Dev
Macro Magic
Miscellaneous
DFIR n stuff
General Links
DotNet
Forensics
SOC Stuffs
Attack Detection Series
Github Repos
Twitter Stuffs
Labs
Cons
Training
https://github.com/specterops/at-ps (FREE SpecOps Course)
CheatSheets
WebApp Pentesting (find)
AD Pentesting (find)
ROP
The Best Resource Out There
Last updated