Cyber Bangla
1.67K subscribers
187 photos
10 videos
13 files
424 links
Cyber Bangla Official Channel
Download Telegram
[๐…๐‘๐„๐„ ๐‘๐„๐’๐Ž๐”๐‘๐‚๐„๐’ - ๐’๐„๐‚๐”๐‘๐„ ๐‚๐Ž๐ƒ๐„ ๐‘๐„๐•๐ˆ๐„๐–]

๐Ÿ‘‰ ๐—ช๐—ต๐—ฎ๐˜ ๐—ถ๐˜€ ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฐ๐—ผ๐—ฑ๐—ฒ ๐—ฟ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„?
๐ŸŒŸ How to Identify Vulnerabilities in code โ€“ Manual Code Review on Hackingloops
https://lnkd.in/eGdQrB_Q
๐ŸŒŸ Security Code Review 101 by Paul Ionescu:
https://lnkd.in/en6gKsfJ
๐ŸŒŸ OWASPยฎ Foundation Secure Coding Practice
https://lnkd.in/eEAA7Jcf

๐Ÿ‘‰ ๐—œ๐—ป๐˜๐—ฟ๐—ผ๐—ฑ๐˜‚๐—ฐ๐˜๐—ถ๐—ผ๐—ป ๐˜๐—ผ ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฐ๐—ผ๐—ฑ๐—ฒ ๐—ฟ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„
๐ŸŒŸ Farah Hawaโ€™s post about the subject:
https://lnkd.in/eE_zZqdx
๐ŸŒŸ Introduction to Secure Code Review on PentesterLab: https://lnkd.in/gXjm_MbJ
๐ŸŒŸ Freddy Machoโ€™s Code review checklist
https://lnkd.in/e2vcqR4M

๐Ÿ‘‰ ๐—ฃ๐—ฟ๐—ฎ๐—ฐ๐˜๐—ถ๐—ฐ๐—ฒ ๐—ฎ๐—ป๐—ฑ ๐˜€๐—ต๐—ฎ๐—ฟ๐—ฝ๐—ฒ๐—ป ๐˜†๐—ผ๐˜‚๐—ฟ ๐—ฟ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„๐—ฒ๐—ฟ ๐˜€๐—ธ๐—ถ๐—น๐—น๐˜€
๐ŸŒŸ Security training platform for devs Hacksplaining:
https://lnkd.in/gqrXr544
๐ŸŒŸ Make a vulnerable PHP App with this video by Wesley (The XSS Rat) Thijs https://lnkd.in/gWTwFtjf
๐ŸŒŸ Join the WeHackPurple Community to talk about secure code practice and more
https://lnkd.in/e2FCKTx5

Thank you Gabrielle B. for sharing
๐Ÿ‘‰ ๐—ง๐—ผ๐—ผ๐—น๐˜€
๐ŸŒŸ Manual code review versus using a SAST Tool on We Hack Purple
https://lnkd.in/er3qnSd7
๐ŸŒŸ Code Review tools on HackTricks
https://lnkd.in/e93pWfni
๐ŸŒŸ Awesome DevSecOps by TaptuIT
https://lnkd.in/eWSpZWN6


#cybersecurity #cybersรฉcuritรฉ #pentest #sourcecode #testing #coding #coding #community #training #training #training #security #security #video #video #php
๐Ÿ’ฅ [๐…๐‘๐„๐„ ๐‘๐„๐’๐Ž๐”๐‘๐‚๐„๐’ - ๐“๐Ž๐ ๐‚๐ฒ๐›๐ž๐ซ ๐‹๐š๐—ฏ๐˜€] ๐Ÿ’ฅ

โœจ Alert to win - https://alf.nu/alert1
โœจ Attack-Defense - https://attackdefense.com
โœจ Bancocn - https://bancocn.com

๐ŸŽก Certified Secure - https://lnkd.in/gBKK-i-s
๐ŸŽก CMD Challenge - https://cmdchallenge.com
๐ŸŽก CryptoHack - https://cryptohack.org/

๐Ÿงถ CTF Komodo Security - https://ctf.komodosec.com
๐Ÿงถ Ctftime - https://ctftime.org/
๐Ÿงถ Cyberdefenders - https://lnkd.in/gCf8v4Ju

๐ŸŽ‡ CyberSecLabs - https://lnkd.in/gmyzMXju
๐ŸŽ‡ EchoCTF - https://echoctf.red/
๐ŸŽ‡ Explotation Education - https://exploit.education

๐Ÿ’ฅ Google CTF - https://lnkd.in/e46drbz8
๐Ÿ’ฅ Hack The Box - https://lnkd.in/ggfAMdQ8
๐Ÿ’ฅ Hackaflag BR - https://hackaflag.com.br/

โœจ Hacker Security - https://lnkd.in/gJbSaY3f
โœจ Hacker101 - https://ctf.hacker101.com
โœจ Hacking-Lab - https://hacking-lab.com/

๐ŸŽก Hacksplaining - https://lnkd.in/gVd9dNkK
๐ŸŽก HackTheBox - https://www.hackthebox.com
๐ŸŽก Hackthis - https://www.hackthis.co.uk

๐Ÿงถ HackXpert - https://hackxpert.com/
๐Ÿงถ HSTRIKE - https://hstrike.com
๐Ÿงถ ImmersiveLabs - https://immersivelabs.com

๐ŸŽ‡ LetsDefend- https://letsdefend.io/
๐ŸŽ‡ NewbieContest - https://lnkd.in/gZ4UjDhy
๐ŸŽ‡ OSBOXES - http://www.osboxes.org/

๐Ÿ’ฅ OverTheWire - http://overthewire.org
๐Ÿ’ฅ Penetration Testing Practice Labs - https://lnkd.in/grQev9Kk
๐Ÿ’ฅ PentestIT LAB - https://lab.pentestit.ru

โœจ Pentestlab - https://pentesterlab.com
โœจ PicoCTF - https://picoctf.com
โœจ PortSwigger Web Security Academy - https://lnkd.in/gAPq2ezr

๐ŸŽก Practical Pentest Labs - https://lnkd.in/gUSqv6xS
๐ŸŽก Pwn college - https://dojo.pwn.college/
๐ŸŽก PWNABLE - https://lnkd.in/gNcyqG64

๐Ÿงถ RangeForce - https://lnkd.in/gGy3feqt
๐Ÿงถ Root in Jail - http://rootinjail.com
๐Ÿงถ Root-Me - https://www.root-me.org

๐ŸŽ‡ SANS Challenger - https://lnkd.in/gG-5_ZPF
๐ŸŽ‡ SmashTheStack - https://lnkd.in/gMFNTURc
๐ŸŽ‡ TCM Security - https://lnkd.in/gbQinqvf

๐Ÿ’ฅ The Cryptopals Crypto Challenges - https://cryptopals.com
๐Ÿ’ฅ Try Hack Me - https://tryhackme.com
๐Ÿ’ฅ Vulnhub - https://www.vulnhub.com

โœจ Vulnmachines https://vulnmachines.com/
โœจ W3Challs - https://w3challs.com
โœจ WeChall - http://www.wechall.net
โœจ Zenk-Security - https://lnkd.in/g_y_p5ha
โœจ Webgoat - https://lnkd.in/gjsgegYw

Resource collection credit: Patrick Gorman
If any other usefull websites we have missed, please share them in the comments.


#hacking #penetrationtesting #cyber #security #education #share #2023planning #google #offensivesecurity #defensive #planning #cybersecurity #free #cyberattacks #cyberdefence #socanalyst #securityoperations #pentest #vapt #osint #ceh #hackthebox #wechat #management #kpmg #pwc #deloitte #ey #australia #cybercrime
๐Ÿ‘จโ€๐Ÿ’ป๐Ÿ’ฅ[Web Pentesting Home-Lab]๐Ÿ’ฅ๐Ÿ‘ฉโ€๐Ÿ’ป
.
.
๐ŸŸข Pre-requisites
๐Ÿ“Œ Free Resources - Phases pf Pentest by Gabrielle B. https://lnkd.in/dqkPd4Df
๐Ÿ“Œ ChatGPT for Pentester https://lnkd.in/drhUhtVA
๐Ÿ“Œ Zero to CyberHero Cybersecurity Career https://lnkd.in/dDtanqyn


๐ŸŸข Platform and OS Setup
๐Ÿ“Œ Setup Virtual-box https://lnkd.in/d8Shs5VE
๐Ÿ“Œ Setup Kali Linux on Virtualbox https://lnkd.in/dN7Rv5Qk
๐Ÿ“Œ Setup Ubuntu Server with Docker https://lnkd.in/dbSisgqb
๐ŸŸข Set-up Vulnerable Applications
๐Ÿ“Œ Setup DVWA on Kali-Linux https://lnkd.in/d9t2aWzD
๐Ÿ“Œ Download bWAPP on Kali-Linux https://lnkd.in/dqHjCxCi [password: bee/bug]
๐Ÿ“Œ Setup OWASP Mutillidae on Ubuntu Docker https://lnkd.in/drVJ4MV8
๐Ÿ“Œ Set up WebGoat on Ubuntu Docker https://lnkd.in/dM5D6nWh
๐ŸŸข Burp-Suite Excercises
๐Ÿ“Œ Intercepting HTTP requests https://lnkd.in/d5v8yyNm
๐Ÿ“Œ Testing WebSockets with Burp SUite https://lnkd.in/d7vQiHbD
๐Ÿ“Œ Testing Reflected XSS https://lnkd.in/dWiZ8WHN
๐Ÿ“Œ Detect SQL Injection https://lnkd.in/dWEPA6bS
๐Ÿ“Œ Enumerating subdomains using Burp Intruder https://lnkd.in/drGmi7SW
๐Ÿ“Œ Credential stuffing using a Burp Intruder Pitchfork attack https://lnkd.in/dd_rHxsJ
Pentest GPT

AI assistant that can run different hashtag#pentest tools. Available for free:

- CVEMap
- Subdomain Finder
- Link Finder
- WAF Detector
- Whois Lookup

Nuclei, SQLi Exploiter, Katana, and Linux terminal commands are available in the PRO version.

https://pentestgpt.ai/