[๐
๐๐๐ ๐๐๐๐๐๐๐๐๐ - ๐๐๐๐๐๐ ๐๐๐๐ ๐๐๐๐๐๐]
๐ ๐ช๐ต๐ฎ๐ ๐ถ๐ ๐๐ฒ๐ฐ๐๐ฟ๐ฒ ๐ฐ๐ผ๐ฑ๐ฒ ๐ฟ๐ฒ๐๐ถ๐ฒ๐?
๐ How to Identify Vulnerabilities in code โ Manual Code Review on Hackingloops
https://lnkd.in/eGdQrB_Q
๐ Security Code Review 101 by Paul Ionescu:
https://lnkd.in/en6gKsfJ
๐ OWASPยฎ Foundation Secure Coding Practice
https://lnkd.in/eEAA7Jcf
๐ ๐๐ป๐๐ฟ๐ผ๐ฑ๐๐ฐ๐๐ถ๐ผ๐ป ๐๐ผ ๐๐ฒ๐ฐ๐๐ฟ๐ฒ ๐ฐ๐ผ๐ฑ๐ฒ ๐ฟ๐ฒ๐๐ถ๐ฒ๐
๐ Farah Hawaโs post about the subject:
https://lnkd.in/eE_zZqdx
๐ Introduction to Secure Code Review on PentesterLab: https://lnkd.in/gXjm_MbJ
๐ Freddy Machoโs Code review checklist
https://lnkd.in/e2vcqR4M
๐ ๐ฃ๐ฟ๐ฎ๐ฐ๐๐ถ๐ฐ๐ฒ ๐ฎ๐ป๐ฑ ๐๐ต๐ฎ๐ฟ๐ฝ๐ฒ๐ป ๐๐ผ๐๐ฟ ๐ฟ๐ฒ๐๐ถ๐ฒ๐๐ฒ๐ฟ ๐๐ธ๐ถ๐น๐น๐
๐ Security training platform for devs Hacksplaining:
https://lnkd.in/gqrXr544
๐ Make a vulnerable PHP App with this video by Wesley (The XSS Rat) Thijs https://lnkd.in/gWTwFtjf
๐ Join the WeHackPurple Community to talk about secure code practice and more
https://lnkd.in/e2FCKTx5
Thank you Gabrielle B. for sharing
๐ ๐ง๐ผ๐ผ๐น๐
๐ Manual code review versus using a SAST Tool on We Hack Purple
https://lnkd.in/er3qnSd7
๐ Code Review tools on HackTricks
https://lnkd.in/e93pWfni
๐ Awesome DevSecOps by TaptuIT
https://lnkd.in/eWSpZWN6
#cybersecurity #cybersรฉcuritรฉ #pentest #sourcecode #testing #coding #coding #community #training #training #training #security #security #video #video #php
๐ ๐ช๐ต๐ฎ๐ ๐ถ๐ ๐๐ฒ๐ฐ๐๐ฟ๐ฒ ๐ฐ๐ผ๐ฑ๐ฒ ๐ฟ๐ฒ๐๐ถ๐ฒ๐?
๐ How to Identify Vulnerabilities in code โ Manual Code Review on Hackingloops
https://lnkd.in/eGdQrB_Q
๐ Security Code Review 101 by Paul Ionescu:
https://lnkd.in/en6gKsfJ
๐ OWASPยฎ Foundation Secure Coding Practice
https://lnkd.in/eEAA7Jcf
๐ ๐๐ป๐๐ฟ๐ผ๐ฑ๐๐ฐ๐๐ถ๐ผ๐ป ๐๐ผ ๐๐ฒ๐ฐ๐๐ฟ๐ฒ ๐ฐ๐ผ๐ฑ๐ฒ ๐ฟ๐ฒ๐๐ถ๐ฒ๐
๐ Farah Hawaโs post about the subject:
https://lnkd.in/eE_zZqdx
๐ Introduction to Secure Code Review on PentesterLab: https://lnkd.in/gXjm_MbJ
๐ Freddy Machoโs Code review checklist
https://lnkd.in/e2vcqR4M
๐ ๐ฃ๐ฟ๐ฎ๐ฐ๐๐ถ๐ฐ๐ฒ ๐ฎ๐ป๐ฑ ๐๐ต๐ฎ๐ฟ๐ฝ๐ฒ๐ป ๐๐ผ๐๐ฟ ๐ฟ๐ฒ๐๐ถ๐ฒ๐๐ฒ๐ฟ ๐๐ธ๐ถ๐น๐น๐
๐ Security training platform for devs Hacksplaining:
https://lnkd.in/gqrXr544
๐ Make a vulnerable PHP App with this video by Wesley (The XSS Rat) Thijs https://lnkd.in/gWTwFtjf
๐ Join the WeHackPurple Community to talk about secure code practice and more
https://lnkd.in/e2FCKTx5
Thank you Gabrielle B. for sharing
๐ ๐ง๐ผ๐ผ๐น๐
๐ Manual code review versus using a SAST Tool on We Hack Purple
https://lnkd.in/er3qnSd7
๐ Code Review tools on HackTricks
https://lnkd.in/e93pWfni
๐ Awesome DevSecOps by TaptuIT
https://lnkd.in/eWSpZWN6
#cybersecurity #cybersรฉcuritรฉ #pentest #sourcecode #testing #coding #coding #community #training #training #training #security #security #video #video #php
lnkd.in
LinkedIn
This link will take you to a page thatโs not on LinkedIn
๐ฅ [๐
๐๐๐ ๐๐๐๐๐๐๐๐๐ - ๐๐๐ ๐๐ฒ๐๐๐ซ ๐๐๐ฏ๐] ๐ฅ
โจ Alert to win - https://alf.nu/alert1
โจ Attack-Defense - https://attackdefense.com
โจ Bancocn - https://bancocn.com
๐ก Certified Secure - https://lnkd.in/gBKK-i-s
๐ก CMD Challenge - https://cmdchallenge.com
๐ก CryptoHack - https://cryptohack.org/
๐งถ CTF Komodo Security - https://ctf.komodosec.com
๐งถ Ctftime - https://ctftime.org/
๐งถ Cyberdefenders - https://lnkd.in/gCf8v4Ju
๐ CyberSecLabs - https://lnkd.in/gmyzMXju
๐ EchoCTF - https://echoctf.red/
๐ Explotation Education - https://exploit.education
๐ฅ Google CTF - https://lnkd.in/e46drbz8
๐ฅ Hack The Box - https://lnkd.in/ggfAMdQ8
๐ฅ Hackaflag BR - https://hackaflag.com.br/
โจ Hacker Security - https://lnkd.in/gJbSaY3f
โจ Hacker101 - https://ctf.hacker101.com
โจ Hacking-Lab - https://hacking-lab.com/
๐ก Hacksplaining - https://lnkd.in/gVd9dNkK
๐ก HackTheBox - https://www.hackthebox.com
๐ก Hackthis - https://www.hackthis.co.uk
๐งถ HackXpert - https://hackxpert.com/
๐งถ HSTRIKE - https://hstrike.com
๐งถ ImmersiveLabs - https://immersivelabs.com
๐ LetsDefend- https://letsdefend.io/
๐ NewbieContest - https://lnkd.in/gZ4UjDhy
๐ OSBOXES - http://www.osboxes.org/
๐ฅ OverTheWire - http://overthewire.org
๐ฅ Penetration Testing Practice Labs - https://lnkd.in/grQev9Kk
๐ฅ PentestIT LAB - https://lab.pentestit.ru
โจ Pentestlab - https://pentesterlab.com
โจ PicoCTF - https://picoctf.com
โจ PortSwigger Web Security Academy - https://lnkd.in/gAPq2ezr
๐ก Practical Pentest Labs - https://lnkd.in/gUSqv6xS
๐ก Pwn college - https://dojo.pwn.college/
๐ก PWNABLE - https://lnkd.in/gNcyqG64
๐งถ RangeForce - https://lnkd.in/gGy3feqt
๐งถ Root in Jail - http://rootinjail.com
๐งถ Root-Me - https://www.root-me.org
๐ SANS Challenger - https://lnkd.in/gG-5_ZPF
๐ SmashTheStack - https://lnkd.in/gMFNTURc
๐ TCM Security - https://lnkd.in/gbQinqvf
๐ฅ The Cryptopals Crypto Challenges - https://cryptopals.com
๐ฅ Try Hack Me - https://tryhackme.com
๐ฅ Vulnhub - https://www.vulnhub.com
โจ Vulnmachines https://vulnmachines.com/
โจ W3Challs - https://w3challs.com
โจ WeChall - http://www.wechall.net
โจ Zenk-Security - https://lnkd.in/g_y_p5ha
โจ Webgoat - https://lnkd.in/gjsgegYw
Resource collection credit: Patrick Gorman
If any other usefull websites we have missed, please share them in the comments.
#hacking #penetrationtesting #cyber #security #education #share #2023planning #google #offensivesecurity #defensive #planning #cybersecurity #free #cyberattacks #cyberdefence #socanalyst #securityoperations #pentest #vapt #osint #ceh #hackthebox #wechat #management #kpmg #pwc #deloitte #ey #australia #cybercrime
โจ Alert to win - https://alf.nu/alert1
โจ Attack-Defense - https://attackdefense.com
โจ Bancocn - https://bancocn.com
๐ก Certified Secure - https://lnkd.in/gBKK-i-s
๐ก CMD Challenge - https://cmdchallenge.com
๐ก CryptoHack - https://cryptohack.org/
๐งถ CTF Komodo Security - https://ctf.komodosec.com
๐งถ Ctftime - https://ctftime.org/
๐งถ Cyberdefenders - https://lnkd.in/gCf8v4Ju
๐ CyberSecLabs - https://lnkd.in/gmyzMXju
๐ EchoCTF - https://echoctf.red/
๐ Explotation Education - https://exploit.education
๐ฅ Google CTF - https://lnkd.in/e46drbz8
๐ฅ Hack The Box - https://lnkd.in/ggfAMdQ8
๐ฅ Hackaflag BR - https://hackaflag.com.br/
โจ Hacker Security - https://lnkd.in/gJbSaY3f
โจ Hacker101 - https://ctf.hacker101.com
โจ Hacking-Lab - https://hacking-lab.com/
๐ก Hacksplaining - https://lnkd.in/gVd9dNkK
๐ก HackTheBox - https://www.hackthebox.com
๐ก Hackthis - https://www.hackthis.co.uk
๐งถ HackXpert - https://hackxpert.com/
๐งถ HSTRIKE - https://hstrike.com
๐งถ ImmersiveLabs - https://immersivelabs.com
๐ LetsDefend- https://letsdefend.io/
๐ NewbieContest - https://lnkd.in/gZ4UjDhy
๐ OSBOXES - http://www.osboxes.org/
๐ฅ OverTheWire - http://overthewire.org
๐ฅ Penetration Testing Practice Labs - https://lnkd.in/grQev9Kk
๐ฅ PentestIT LAB - https://lab.pentestit.ru
โจ Pentestlab - https://pentesterlab.com
โจ PicoCTF - https://picoctf.com
โจ PortSwigger Web Security Academy - https://lnkd.in/gAPq2ezr
๐ก Practical Pentest Labs - https://lnkd.in/gUSqv6xS
๐ก Pwn college - https://dojo.pwn.college/
๐ก PWNABLE - https://lnkd.in/gNcyqG64
๐งถ RangeForce - https://lnkd.in/gGy3feqt
๐งถ Root in Jail - http://rootinjail.com
๐งถ Root-Me - https://www.root-me.org
๐ SANS Challenger - https://lnkd.in/gG-5_ZPF
๐ SmashTheStack - https://lnkd.in/gMFNTURc
๐ TCM Security - https://lnkd.in/gbQinqvf
๐ฅ The Cryptopals Crypto Challenges - https://cryptopals.com
๐ฅ Try Hack Me - https://tryhackme.com
๐ฅ Vulnhub - https://www.vulnhub.com
โจ Vulnmachines https://vulnmachines.com/
โจ W3Challs - https://w3challs.com
โจ WeChall - http://www.wechall.net
โจ Zenk-Security - https://lnkd.in/g_y_p5ha
โจ Webgoat - https://lnkd.in/gjsgegYw
Resource collection credit: Patrick Gorman
If any other usefull websites we have missed, please share them in the comments.
#hacking #penetrationtesting #cyber #security #education #share #2023planning #google #offensivesecurity #defensive #planning #cybersecurity #free #cyberattacks #cyberdefence #socanalyst #securityoperations #pentest #vapt #osint #ceh #hackthebox #wechat #management #kpmg #pwc #deloitte #ey #australia #cybercrime
lnkd.in
LinkedIn
This link will take you to a page thatโs not on LinkedIn
๐จโ๐ป๐ฅ[Web Pentesting Home-Lab]๐ฅ๐ฉโ๐ป
.
.
๐ข Pre-requisites
๐ Free Resources - Phases pf Pentest by Gabrielle B. https://lnkd.in/dqkPd4Df
๐ ChatGPT for Pentester https://lnkd.in/drhUhtVA
๐ Zero to CyberHero Cybersecurity Career https://lnkd.in/dDtanqyn
๐ข Platform and OS Setup
๐ Setup Virtual-box https://lnkd.in/d8Shs5VE
๐ Setup Kali Linux on Virtualbox https://lnkd.in/dN7Rv5Qk
๐ Setup Ubuntu Server with Docker https://lnkd.in/dbSisgqb
๐ข Set-up Vulnerable Applications
๐ Setup DVWA on Kali-Linux https://lnkd.in/d9t2aWzD
๐ Download bWAPP on Kali-Linux https://lnkd.in/dqHjCxCi [password: bee/bug]
๐ Setup OWASP Mutillidae on Ubuntu Docker https://lnkd.in/drVJ4MV8
๐ Set up WebGoat on Ubuntu Docker https://lnkd.in/dM5D6nWh
๐ข Burp-Suite Excercises
๐ Intercepting HTTP requests https://lnkd.in/d5v8yyNm
๐ Testing WebSockets with Burp SUite https://lnkd.in/d7vQiHbD
๐ Testing Reflected XSS https://lnkd.in/dWiZ8WHN
๐ Detect SQL Injection https://lnkd.in/dWEPA6bS
๐ Enumerating subdomains using Burp Intruder https://lnkd.in/drGmi7SW
๐ Credential stuffing using a Burp Intruder Pitchfork attack https://lnkd.in/dd_rHxsJ
.
.
๐ข Pre-requisites
๐ Free Resources - Phases pf Pentest by Gabrielle B. https://lnkd.in/dqkPd4Df
๐ ChatGPT for Pentester https://lnkd.in/drhUhtVA
๐ Zero to CyberHero Cybersecurity Career https://lnkd.in/dDtanqyn
๐ข Platform and OS Setup
๐ Setup Virtual-box https://lnkd.in/d8Shs5VE
๐ Setup Kali Linux on Virtualbox https://lnkd.in/dN7Rv5Qk
๐ Setup Ubuntu Server with Docker https://lnkd.in/dbSisgqb
๐ข Set-up Vulnerable Applications
๐ Setup DVWA on Kali-Linux https://lnkd.in/d9t2aWzD
๐ Download bWAPP on Kali-Linux https://lnkd.in/dqHjCxCi [password: bee/bug]
๐ Setup OWASP Mutillidae on Ubuntu Docker https://lnkd.in/drVJ4MV8
๐ Set up WebGoat on Ubuntu Docker https://lnkd.in/dM5D6nWh
๐ข Burp-Suite Excercises
๐ Intercepting HTTP requests https://lnkd.in/d5v8yyNm
๐ Testing WebSockets with Burp SUite https://lnkd.in/d7vQiHbD
๐ Testing Reflected XSS https://lnkd.in/dWiZ8WHN
๐ Detect SQL Injection https://lnkd.in/dWEPA6bS
๐ Enumerating subdomains using Burp Intruder https://lnkd.in/drGmi7SW
๐ Credential stuffing using a Burp Intruder Pitchfork attack https://lnkd.in/dd_rHxsJ
Linkedin
#cybersecurity #cybersรฉcuritรฉ #pentest | Gabrielle B. | 52 comments
[๐
๐๐๐ ๐๐๐๐๐๐๐๐๐ - ๐๐๐๐๐๐ ๐๐
๐๐๐๐๐๐๐]
Want to know more about the phases of a pentest?
This post is for you!
๐ ๐ช๐ต๐ฎ๐ ๐ฎ๐ฟ๐ฒ ๐๐ต๐ฒ ๐ฝ๐ต๐ฎ๐๐ฒ๐ ๐ผ๐ณ ๐ฃ๐ฒ๐ป๐๐ฒ๐๐
๐ Basis of penetration testing execution by the PTES
http://ow.ly/Jaii50Mciyp
๐ Penetration Testing Phases & Stepsโฆ
Want to know more about the phases of a pentest?
This post is for you!
๐ ๐ช๐ต๐ฎ๐ ๐ฎ๐ฟ๐ฒ ๐๐ต๐ฒ ๐ฝ๐ต๐ฎ๐๐ฒ๐ ๐ผ๐ณ ๐ฃ๐ฒ๐ป๐๐ฒ๐๐
๐ Basis of penetration testing execution by the PTES
http://ow.ly/Jaii50Mciyp
๐ Penetration Testing Phases & Stepsโฆ
Pentest GPT
AI assistant that can run different hashtag#pentest tools. Available for free:
- CVEMap
- Subdomain Finder
- Link Finder
- WAF Detector
- Whois Lookup
Nuclei, SQLi Exploiter, Katana, and Linux terminal commands are available in the PRO version.
https://pentestgpt.ai/
AI assistant that can run different hashtag#pentest tools. Available for free:
- CVEMap
- Subdomain Finder
- Link Finder
- WAF Detector
- Whois Lookup
Nuclei, SQLi Exploiter, Katana, and Linux terminal commands are available in the PRO version.
https://pentestgpt.ai/