diff --git a/README.md b/README.md index 4861741..cc6cafc 100644 --- a/README.md +++ b/README.md @@ -171,7 +171,7 @@ Only main chapters:
:small_orange_diamond: vi - is one of the most common text editors on Unix.
:small_orange_diamond: vim - is a highly configurable text editor.
- :small_orange_diamond: emacs - is an extensible, customizable, free/libre text editor - and more.
+ :small_orange_diamond: emacs - is an extensible, customizable, free/libre text editor, and more.
:small_orange_diamond: micro - is a modern and intuitive terminal-based text editor.
:small_orange_diamond: neovim - is a free open source, powerful, extensible and usable code editor.
:small_orange_diamond: spacemacs - a community-driven Emacs distribution.
@@ -196,9 +196,9 @@ Only main chapters:
:small_orange_diamond: masscan - is the fastest Internet port scanner, spews SYN packets asynchronously.
:small_orange_diamond: pbscan - is a faster and more efficient stateless SYN scanner and banner grabber.
:small_orange_diamond: hping - is a command-line oriented TCP/IP packet assembler/analyzer.
- :small_orange_diamond: mtr - is a tool that combines the functionality of the 'traceroute' and 'ping' programs in a single network diagnostic tool.
- :small_orange_diamond: mylg - is an open source utility which combines the functions of the different network probes in one diagnostic tool.
- :small_orange_diamond: netcat - is a networking utility which reads and writes data across network connections, using the TCP/IP protocol.
+ :small_orange_diamond: mtr - is a tool that combines the functionality of the 'traceroute' and 'ping' programs in a single tool.
+ :small_orange_diamond: mylg - utility which combines the functions of the different network probes in one diagnostic tool.
+ :small_orange_diamond: netcat - utility which reads and writes data across network connections, using the TCP/IP protocol.
:small_orange_diamond: tcpdump - is a powerful command-line packet analyzer.
:small_orange_diamond: tshark - is a tool that allows us to dump and analyze network traffic (wireshark cli).
:small_orange_diamond: Termshark - is a simple terminal user-interface for tshark.
@@ -231,13 +231,13 @@ Only main chapters:
:small_orange_diamond: fierce - is a DNS reconnaissance tool for locating non-contiguous IP space.
:small_orange_diamond: subfinder - is a subdomain discovery tool that discovers valid subdomains for websites.
:small_orange_diamond: sublist3r - is a fast subdomains enumeration tool for penetration testers.
- :small_orange_diamond: amass - is tool that obtains subdomain names by scraping data sources, crawling web archives and more.
+ :small_orange_diamond: amass - is tool that obtains subdomain names by scraping data sources, crawling web archives, and more.
:small_orange_diamond: namebench - provides personalized DNS server recommendations based on your browsing history.
:small_orange_diamond: massdns - is a high-performance DNS stub resolver for bulk lookups and reconnaissance.
:small_orange_diamond: knock - is a tool to enumerate subdomains on a target domain through a wordlist.
:small_orange_diamond: dnsperf - DNS performance testing tools.
:small_orange_diamond: dnscrypt-proxy 2 - a flexible DNS proxy, with support for encrypted DNS protocols.
- :small_orange_diamond: dnsdbq - API client providing access to passive DNS database systems (pDNS at Farsight Security, CIRCL pDNS).
+ :small_orange_diamond: dnsdbq - API client providing access to passive DNS database systems.
:small_orange_diamond: grimd - fast dns proxy, built to black-hole internet advertisements and malware servers.
- :small_orange_diamond: SSLLabs Server Test - free online service performs a deep analysis of the configuration of any SSL web server.
- :small_orange_diamond: SSLLabs Server Test (DEV) - free online service performs a deep analysis of the configuration of any SSL web server.
+ :small_orange_diamond: SSLLabs Server Test - performs a deep analysis of the configuration of any SSL web server.
+ :small_orange_diamond: SSLLabs Server Test (DEV) - performs a deep analysis of the configuration of any SSL web server.
:small_orange_diamond: ImmuniWeb® SSLScan - test SSL/TLS (PCI DSS, HIPAA and NIST).
:small_orange_diamond: SSL Check - scan your website for non-secure content.
:small_orange_diamond: SSL Scanner - analyze website security.
@@ -470,9 +470,9 @@ Only main chapters:
:small_orange_diamond: Report URI - monitoring security policies like CSP and HPKP.
:small_orange_diamond: CSP Evaluator - allows developers and security experts to check if a Content Security Policy.
:small_orange_diamond: Useless CSP - public list about CSP in some big players (might make them care a bit more).
- :small_orange_diamond: Why No HTTPS? - list of the world's top 100 websites by Alexa rank not automatically redirecting insecure requests.
+ :small_orange_diamond: Why No HTTPS? - top 100 websites by Alexa rank not automatically redirecting insecure requests.
:small_orange_diamond: TLS Cipher Suite Search
- :small_orange_diamond: cipherli.st - strong ciphers for Apache, Nginx, Lighttpd and more.*
+ :small_orange_diamond: cipherli.st - strong ciphers for Apache, Nginx, Lighttpd, and more.*
:small_orange_diamond: dhtool - public Diffie-Hellman parameter service/tool.
:small_orange_diamond: badssl.com - memorable site for testing clients against bad SSL configs.
:small_orange_diamond: tlsfun.de - registered for various tests regarding the TLS/SSL protocol.
@@ -492,7 +492,7 @@ Only main chapters:
:small_orange_diamond: Security Headers - analyse the HTTP response headers (with rating system to the results).
:small_orange_diamond: Observatory by Mozilla - set of tools to analyze your website.
- :small_orange_diamond: webhint - is a linting tool that will help you with your site's accessibility, speed, security and more.
+ :small_orange_diamond: webhint - is a linting tool that will help you with your site's accessibility, speed, security, and more.
:small_orange_diamond: Netcraft - detailed report about the site, helping you to make informed choices about their integrity.*
:small_orange_diamond: RIPE NCC Atlas - a global, open, distributed Internet measurement platform.
- :small_orange_diamond: Robtex - uses various sources to gather public information about IP numbers, domain names, host names, routes etc.
+ :small_orange_diamond: Robtex - uses various sources to gather public information about IP numbers, domain names, host names, etc.
:small_orange_diamond: Security Trails - APIs for Security Companies, Researchers and Teams.
:small_orange_diamond: Online Curl - curl test, analyze HTTP Response Headers.
:small_orange_diamond: Online Tools for Developers - HTTP API tools, testers, encoders, converters, formatters, and other tools.
@@ -571,8 +571,8 @@ Only main chapters:
:small_orange_diamond: ShellCheck - finds bugs in your shell scripts.
:small_orange_diamond: explainshell - get interactive help texts for shell commands.
- :small_orange_diamond: jsbin - live pastebin for HTML, CSS & JavaScript and more.
- :small_orange_diamond: CodeSandbox - online code editor for web application development. Supports React, Vue, Angular, CxJS, Dojo, etc.
+ :small_orange_diamond: jsbin - live pastebin for HTML, CSS & JavaScript, and more.
+ :small_orange_diamond: CodeSandbox - online code editor for web application development.
:small_orange_diamond: PHP Sandbox - test your PHP code with this code tester.
:small_orange_diamond: Repl.it - an instant IDE to learn, build, collaborate, and host all in one place.
:small_orange_diamond: vclFiddle - is an online tool for experimenting with the Varnish Cache VCL.
@@ -687,7 +687,7 @@ performance of any of your sites from across the globe.
##### :black_small_square: Secure Webmail Providers
- :small_orange_diamond: CounterMail - is a secure and easy to use online email service, designed to provide maximum security and privacy.
+ :small_orange_diamond: CounterMail - online email service, designed to provide maximum security and privacy.
:small_orange_diamond: Mail2Tor - is a Tor Hidden Service that allows anyone to send and receive emails anonymously.
:small_orange_diamond: Tutanota - is the world's most secure email service and amazingly easy to use.
:small_orange_diamond: Protonmail - is the world's largest secure email service, developed by CERN and MIT scientists.
@@ -717,7 +717,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: Kali Linux - Linux distribution used for Penetration Testing, Ethical Hacking and network security assessments.
:small_orange_diamond: Parrot Security OS - cyber security GNU/Linux environment.
:small_orange_diamond: Backbox Linux - penetration test and security assessment oriented Ubuntu-based Linux distribution.
- :small_orange_diamond: BlackArch - is an Arch Linux-based penetration testing distribution for penetration testers and security researchers.
+ :small_orange_diamond: BlackArch - is an Arch Linux-based penetration testing distribution for penetration testers.
:small_orange_diamond: Pentoo - is a security-focused livecd based on Gentoo.
:small_orange_diamond: Security Onion - Linux distro for intrusion detection, enterprise security monitoring, and log management.
:small_orange_diamond: Tails - is a live system that aims to preserve your privacy and anonymity.
@@ -757,7 +757,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: maltrail - malicious traffic detection system.
:small_orange_diamond: security_monkey - monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.
:small_orange_diamond: firecracker - secure and fast microVMs for serverless computing.
- :small_orange_diamond: streisand - sets up a new server running your choice of WireGuard, OpenSSH, OpenVPN, Shadowsocks, and more.
+ :small_orange_diamond: streisand - sets up a new server running your choice of WireGuard, OpenSSH, OpenVPN, and more.
- :small_orange_diamond: LBNL's Network Research Group - home page of the Network Research Group (NRG); tools, talks, papers and more.
+ :small_orange_diamond: LBNL's Network Research Group - home page of the Network Research Group (NRG).
- :small_orange_diamond: AD-Attack-Defense - attack and defend active directory using modern post exploitation adversary tradecraft activity.
+ :small_orange_diamond: AD-Attack-Defense - attack and defend active directory using modern post exploitation activity.
:small_orange_diamond: The System Design Primer - learn how to design large-scale systems.
- :small_orange_diamond: Awesome Scalability - best practices in building High Scalability, High Availability, High Stability and more.
+ :small_orange_diamond: Awesome Scalability - best practices in building High Scalability, High Availability, High Stability, and more.
:small_orange_diamond: Web Architecture 101 - the basic architecture concepts.
- :small_orange_diamond: CIS Benchmarks - are secure configuration settings for over 100 technologies, available as a free PDF download.
+ :small_orange_diamond: CIS Benchmarks - secure configuration settings for over 100 technologies, available as a free PDF.
:small_orange_diamond: Security Harden CentOS 7 - this walks you through the steps required to security harden CentOS.
:small_orange_diamond: CentOS 7 Server Hardening Guide - great guide for hardening CentOS; familiar with OpenSCAP.
:small_orange_diamond: awesome-security-hardening - is a collection of security hardening guides, tools and other resources.
@@ -935,7 +935,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: API-Security-Checklist - security countermeasures when designing, testing, and releasing your API.
:small_orange_diamond: Enable CORS - enable cross-origin resource sharing.
:small_orange_diamond: Application Security Wiki - is an initiative to provide all application security related resources at one place.
- :small_orange_diamond: Weird Proxies - reverse proxy related attacks; it is a result of analysis of various reverse proxies, cache proxies, etc.
+ :small_orange_diamond: Weird Proxies - reverse proxy related attacks; it is a result of analysis of various proxies.
:small_orange_diamond: Webshells - great series about malicious payloads.
:small_orange_diamond: Practical Web Cache Poisoning - show you how to compromise websites by using esoteric web features.
:small_orange_diamond: Hidden directories and files - as a source of sensitive information about web application.
@@ -963,7 +963,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: How to start RE/malware analysis? - collection of some hints and useful links for the beginners.
:small_orange_diamond: The C10K problem - it's time for web servers to handle ten thousand clients simultaneously, don't you think?
:small_orange_diamond: How 1500 bytes became the MTU of the internet - great story about the Maximum Transmission Unit.
- :small_orange_diamond: poor man's profiler - sampling tools like dtrace's don't really provide methods to see what programs are blocking on.
+ :small_orange_diamond: poor man's profiler - like dtrace's don't really provide methods to see what programs are blocking on.
:small_orange_diamond: HTTPS on Stack Overflow - this is the story of a long journey regarding the implementation of SSL.
:small_orange_diamond: Julia's Drawings - some drawings about programming and unix world, zines about systems & debugging tools.
:small_orange_diamond: Hash collisions - this great repository is focused on hash collisions exploitation.
@@ -976,7 +976,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: Gitlab and NFS bug - how we spent two weeks hunting an NFS bug in the Linux kernel.
:small_orange_diamond: Gitlab melts down - postmortem on the database outage of January 31 2017 with the lessons we learned.
:small_orange_diamond: How To Become A Hacker - if you want to be a hacker, keep reading.
- :small_orange_diamond: Operation Costs in CPU - an infographics which should help to estimate costs of certain operations in CPU clocks.
+ :small_orange_diamond: Operation Costs in CPU - should help to estimate costs of certain operations in CPU clocks.
:small_orange_diamond: Let's Build a Simple Database - writing a sqlite clone from scratch in C.
:small_orange_diamond: simple-computer - great resource to understand how computers work under the hood.
:small_orange_diamond: The story of "Have I been pwned?" - working with 154 million records on Azure Table Storage.
@@ -986,7 +986,7 @@ performance of any of your sites from across the globe.
:small_orange_diamond: How fucked is my database - evaluate how fucked your database is with this handy website.
:small_orange_diamond: Linux Troubleshooting 101 , 2016 Edition - everything is a DNS Problem...
:small_orange_diamond: Five Whys - you know what the problem is, but you cannot solve it?
- :small_orange_diamond: Maersk, me & notPetya - how did ransomware successfully hijack hundreds of domain controllers around the world in one company?
+ :small_orange_diamond: Maersk, me & notPetya - how did ransomware successfully hijack hundreds of domain controllers?
:small_orange_diamond: howhttps.works - how HTTPS works ...in a comic!
:small_orange_diamond: howdns.works - a fun and colorful explanation of how DNS works.
:small_orange_diamond: POSTGRESQLCO.NF - your postgresql.conf documentation and recommendations.
@@ -999,14 +999,14 @@ performance of any of your sites from across the globe.
:small_orange_diamond: Awesome Sysadmin - amazingly awesome open source sysadmin resources.
:small_orange_diamond: Awesome Shell - awesome command-line frameworks, toolkits, guides and gizmos.
- :small_orange_diamond: Command-line-text-processing - from finding text to search and replace, from sorting to beautifying text and more.
+ :small_orange_diamond: Command-line-text-processing - finding text to search and replace, sorting to beautifying, and more.
:small_orange_diamond: Awesome Pcaptools - collection of tools developed by other researchers to process network traces.
:small_orange_diamond: awesome-ebpf - a curated list of awesome projects related to eBPF.
- :small_orange_diamond: Linux Network Performance - learn where some of the network sysctl variables fit into the Linux/Kernel network flow.
+ :small_orange_diamond: Linux Network Performance - where some of the network sysctl variables fit into the Linux/Kernel network flow.
:small_orange_diamond: Awesome Postgres - list of awesome PostgreSQL software, libraries, tools and resources.
:small_orange_diamond: quick-SQL-cheatsheet - a quick reminder of all SQL queries and examples on how to use them.
:small_orange_diamond: Awesome-Selfhosted - list of Free Software network services and web applications which can be hosted locally.
- :small_orange_diamond: List of applications - huge collection of applications sorted by category, as a reference for those looking for packages.
+ :small_orange_diamond: List of applications - huge list of apps sorted by category, as a reference for those looking for packages.
:small_orange_diamond: CS-Interview-Knowledge-Map - build the best interview map.
:small_orange_diamond: DevOps-Guide - DevOps Guide from basic to advanced with Interview Questions and Notes.
:small_orange_diamond: FreeBSD Journal - it is a great list of periodical magazines about FreeBSD and other important things.
@@ -1073,13 +1073,13 @@ performance of any of your sites from across the globe.
:small_orange_diamond: Varnish for PHP developers - very interesting presentation of Varnish by Mattias Geniar.
- :small_orange_diamond: A Netflix Guide to Microservices - Josh Evans talks about the chaotic and vibrant world of microservices at Netflix.
+ :small_orange_diamond: A Netflix Guide to Microservices - alks about the chaotic and vibrant world of microservices at Netflix.
- :small_orange_diamond: Comparing C to machine language - compare a simple C program with the compiled machine code of that program.
+ :small_orange_diamond: Comparing C to machine lang - compare a simple C app with the compiled machine code of that program.
:small_orange_diamond: Linux Audit - the Linux security blog about auditing, hardening and compliance by Michael Boelen.
:small_orange_diamond:
-Linux Security Expert - trainings, howtos, checklists, security tools and more.
+Linux Security Expert - trainings, howtos, checklists, security tools, and more.
:small_orange_diamond: The Grymoire - collection of useful incantations for wizards, be you computer wizards, magicians, or whatever.
:small_orange_diamond: Secjuice - is the only non-profit, independent and volunteer led publication in the information security space.
:small_orange_diamond: Decipher - security news that informs and inspires.
@@ -1121,12 +1121,12 @@ Linux Security Expert - trainings, howtos, checklists, security tools an
:small_orange_diamond: Tenable Podcast - conversations and interviews related to Cyber Exposure, and more.
:small_orange_diamond: Sophos - threat news room, giving you news, opinion, advice and research on computer security issues.
- :small_orange_diamond: Tripwire State of Security - blog featuring the latest news, trends and insights on current information security issues.
+ :small_orange_diamond: Tripwire State of Security - blog featuring the latest news, trends and insights on current security issues.
:small_orange_diamond: Malwarebytes Labs Blog - security blog aims to provide insider news about cybersecurity.
:small_orange_diamond: TrustedSec - latest news, and trends about cybersecurity.
:small_orange_diamond: PortSwigger Web Security Blog - about web app security vulns and top tips from our team of web security.
:small_orange_diamond: AT&T Cybersecurity blog - news on emerging threats and practical advice to simplify threat detection.
- :small_orange_diamond: Thycotic - where CISOs and IT Admins come to learn about industry trends, IT security, data breaches, and more.
+ :small_orange_diamond: Thycotic - where CISOs and IT Admins come to learn about industry trends, IT security, and more.