Training and Resources
Beginner Training
https://github.com/jassics/security-study-plan - Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...
For complete newbies, start here.
SANS New to Cyber Field Manual - The Ultimate Guide to Getting into Cyber
https://www.cyberaces.org/courses.html - Free SANS intro to security course.
EC Council Essential's Series - The Essential Series includes three courses, each covering essential skills in Network Defense, Ethical Hacking, and Digital Forensics. This introductory course series is designed for today's entry-level careers in information security, network defense, and digital forensics and is ideal for learners aspiring to pursue a career in cybersecurity.
Cisco Networking Academy: Intro to Cyber Security - Learn how to protect your personal data and privacy online and in social media, and why more and more IT jobs require cybersecurity awareness and understanding. Receive a certificate of completion.
Cisco Netwoking Academy: Cyber Security Essentials - Foundational knowledge and essential skills for all cybersecurity domains, including info security, systems sec, network sec, ethics and laws, and defense and mitigation techniques used in protecting businesses.
https://www.hoppersroppers.org/training.html - The training portion of the site is designed to teach core competencies and more importantly, provide a wide base of knowledge on how to find and use the resources available.
MICS - Introduction to Cyber Security - MICS teaches entry-level cyber security skills in domains such as open-source intelligence, security tools, operational security, network reconnaissance and threat hunting. Students who have successfully achieved their MICS Certification from MCSI can apply for winter/summer internships worldwide with the confidence that they have the competencies the industry is seeking.
https://www.mandiant.com/mandiant-gives-back/free-cyber-defense-training - Access free on-demand cyber defense training courses to advance your understanding of the six critical functions of cyber defense and learn how to activate them in your organization. This expert training is based on a new book published by Mandiant, titled The Defender’s Advantage, written by frontline cyber security experts from Mandiant’s strategic consulting and threat intelligence teams.
https://missing.csail.mit.edu/ - The missing CS semester
Networking
Seven Second Subnetting: https://www.youtube.com/watch?v=ZxAwQB8TZsM
Cryptography
Role and Career Resources
Infosec Color Wheel - Making sense of the different groups and roles within Cyber
Certifications
This goes perfectly between Career resources and Training material as cyber certifications cover both. As a rule of thumb, start with getting certifications that qualify you for the job you want. Then pursue other certifications or training depending on what skill set you wish to grow. Combine certification based training with the below resources for optimal growth.
pageCyber Security CertificationsGeneral Cyber Training/Reference
Resource Collections
https://ippsec.rocks/?# - Amazing resource from a hacker with an incredible amount of content. Not only does IPPSEC have a ton of youtube content on various cyber topics, they even have a search engine like tool for looking for resources around any topic you search for.
Infosec_Reference - The only other reference with enough material to rival my own.
Rawsec's CyberSecurity Inventory - Huge repo of tools, guides, and other resources.
https://asecuritysite.com/ - Great Collections of training on different cyber related topics.
Reference Materials and Articles
General Security Platforms and Courses
TryHackMe - Bite sized gamified lessons on various offensive and defensive topics.
https://academy.attackiq.com/ - Free courses taught by cybersecurity practitioners at the cutting edge of the field, students gain realistic, hands-on experience in building a threat-informed defense to improve cybersecurity effectiveness.
https://opensecuritytraining.info/ - Open source platform that provides crowd sources free training on various cyber topics.
https://www.thecybermentor.com/ - The platform of the Cyber Mentor. This site offers both free and premium training material and even their own practical penetration testing certification.
https://www.udemy.com/ - Video learning platform with thousands of courses on various topics. Look for the security related topics and sort bby popularity.
https://my.ine.com/ - The official training platform for https://elearnsecurity.com/ and their collection of certifications.
https://www.cybrary.it/ - Cybrary is the fastest growing, fastest-moving catalog in the industry. By working with an elite community of instructors, experts, and thought leaders, as well as cutting edge hands-on learning providers, we deliver relevant and high-quality content that is accessible anytime, anywhere.
https://www.hacksplaining.com/lessons - Great resource for learning the ins and outs of specific attacks or vulnerabilities.
http://www.securitytube.net/ - Like youtube for security videos. The content is great and they have a helpful forum as well.
https://www.bugcrowd.com/hackers/bugcrowd-university/ - Security, education, and training for the whitehat hacker community.
https://defendtheweb.net/ - Defend the Web is an interactive security platform where you can learn and challenge your skills.
The Awesome Lists - Massive collections of resources on various cyber topics.
Practical Hands-on and CTFs
These sections have guides on how to practice your offensive an defensive skills in either a hosted CTF/CTF style platform, or even how to build everythingyou need in a local environment.
pagePractice LabpageCTFBlue Team Training
Blue Team Labs Online » SECURITY BLUE TEAM - A new CTF style learning platform focused on blue teaming. They offer certification tracks for thier platform and are adding more content daily.
Blue Team Training Toolkit (BT3) - Defensive Security Training Software - Blue Team Training Toolkit (BT3) is software for defensive security training, which will bring your network analysis training sessions, incident response drills and red team engagements to a new level.
OpenSOC - Network Defense Simulation - OpenSOC is a free blue team defensive competition that is as close to "the real thing" as it gets.
https://cyberdefenders.org/ - CyberDefenders is a training platform focused on the defensive side of cybersecurity, aiming to provide a place for blue teams to practice, validate the skills they have, and acquire the ones they need.
TryHackMe - Bite sized gamified lessons on various offensive and defensive topics.
Applied Network Defense - Fantastic sets of courses by some of the best defenders in the industry.
https://letsdefend.io/ - Practical Blue team training.
How to start RE/malware analysis - Amazing free class on getting started in Reverse Engineering and Malware Analysis.
https://phishing.livingsecurity.com/ - Training for analyzing phishing emails and their indicators.
DFIR Training
Red Team Training
TryHackMe - Bite sized gamified lessons on various offensive and defensive topics.
https://institute.sektor7.net/ - Training provider with offensive focused courses
https://www.fortynorthsecurity.com/public-training- Training provider with offensive focused classes both free and premium.
https://www.netspi.com/training/ - Training provider with both public and private offensive focused courses
Nightmare by GuyInAuxedo - Nightmare is an intro to binary exploitation / reverse engineering course based around ctf challenges.
https://hackersploit.org/ - Blog posts and guides to different offensive tactics.
https://pentesting.cloud/ - A Free Pen Testing Learning Platform
Web Application Testing Training
All learning materials | Web Security Academy - This platform has replaced the Web Application Hackers Handbook as the go to learning resource for web application knowledge. Huge list of attacks, resources, and documentation on how to exploit or defend them. There are also amazingly handy hands on labs that you can complete with the community version of Burp!
Burp Suite Certified Practitioner - The official Burp Suite user certification from PortSwigger
Bugcrowd University | Bugcrowd - Resources and training from one of the top Bug Bounty platforms on the market.
Burp Suite: In Depth Survival Guide | Udemy - Burp Suite is huge and complex. This course is a fantastic way to start making sense of all the utility in the tool
crAPI - completely ridiculous API (crAPI) will help you to understand the ten most critical API security risks. crAPI is vulnerable by design, but you'll be able to safely run it to educate/train yourself.
Books and Reading
pageBooks and ReadingTraining Blogs
Check these every day for new tools and tactics for offensive and defensive security.
Workshops and Conventions
https://infosec-conferences.com/ - List of all cons over the course of the year, world wide.
ConCollector - An awesome tool that allows you to parse content from thousands of secrity Cons.
https://wildwesthackinfest.com/training-schedule/ - Keep an eye out for their Pay-What-You-Can SOC Core skills class. Absolute gold for everyone regardless of skill level.
Hacker Summer Camp
B-Sides - Localized security conventions all across the world.
Security Community Resources
Forums
Misc
Useful Links
Useful Gits
Youtube Channels
Peter Yarowski - https://www.youtube.com/c/yaworsk1
HackerOne - https://www.youtube.com/c/HackerOneTV
LiveOverflow - https://www.youtube.com/c/LiveOverflow
PortSwigger - https://www.youtube.com/channel/UCkytgKNbJ0L1UuN1K27GAKA
InsiderPHD's List for Beginners - https://www.youtube.com/playlist?list=PLbyncTkpno5FAC0DJYuJrEqHSMdudEffw
SimplyCyber Weekly vids, Simply Cyber brings Information security related content to help IT or Information Security professionals take their career further, faster. - https://www.youtube.com/c/GeraldAuger
Pentester Academy TV - lots of brief videos, very regular posting, up to +8 a week https://www.youtube.com/channel/UChjC1q6Ami7W0E71TzPZELA
Open SecurityTraining - lots of lengthy lecture-style vids, no recent posts, but quality info. https://www.youtube.com/channel/UCthV50MozQIfawL9a_g5rdg
John Hammond - Solves CTF problems. contains pen testing tips and tricks https://www.youtube.com/user/RootOfTheNull
HackerSploit - regular posts, medium length screenshot vids, with dialog https://www.youtube.com/channel/UC0ZTPkdxlAKf-V33tqXwi3Q
Last updated