RESOURCES AND SOURCES
This is a non-curated list of sources and resources that helped me get started with hacking and infosec in general. This is by no means a guideline or set path for success in the industry. If you have any questions, reach me on Twitter @Cerbersec.
YouTube
- Ippsec - For all your awesome HackTheBox walkthroughs
- TheCyberMentor - Networking, penetration testing, Buffer overflows, Linux for beginners and much more
- LiveOverflow - Binary exploitation and CTF’s
- Guided Hacking - Malware analysis, binary exploitation, reverse engineering, HackTheBox walkthroughs
- John Hammond - HackTheBox, malware analysis, CTF, AppSec and more
Platforms
- HackTheBox - Penetration testing labs
- Vulnhub - Vulnerable Virtual Machines
- HackerOne - Bug Bounty platform
- MalDev Academy - Everything Malware Development
Subreddits
- r/netsec - Please don’t pollute
- r/netsecstudents
- r/redteamsec
- r/liveoverflow
- r/hackthebox
Capture The Flag
- CTFTime - Capture The Flag platform
Cheatsheets
- HackTricks - Extensive documentation of techniques and tools
- The Hacker Tools - Extensive documentation of tecniques and tools
- Red Teaming cheatsheets - Cheatsheets useful for: pentesting, OSCP, CTF’s
- Pentestmonkey - Pentest goldmine, cheatsheets, tools and more
- GTFOBins - Curated list of exploitable Linux binaries
- LOLBAS - Curated list of living off the land binaries, scripts and libraries
Paid courses
- TCM Academy - Quality courses at affordable prices
- Zero-Point Security - Renowned courses such as CRTO 1 & 2 by the one and only Rasta Mouse
- Zero 2 Automated - Malware analysis/reverse engineering
Offensive Security Certified Professional (OSCP) Specific
- OSCP Goldmine
- OSCP Like HackTheBox boxes List by TJnull
- Awesome OSCP - OSCP related resources
Books
- Grey hat hacking 3rd edition
- Hacking - The Art of Exploitation 2nd edition
- Practical Reverse Engineering
- Reversing - Secrets of Reverse Engineering
- The Shellcoders Handbook
- The Web Application Hacker’s Handbook