Shell/Command line
๐ธ pure-bash-bible – is a collection of pure bash alternatives to external processes.
๐ธ pure-sh-bible – is a collection of pure POSIX sh alternatives to external processes.
๐ธ bash-guide – is a guide to learn bash.
๐ธ bash-handbook – for those who wanna learn Bash.
๐ธ The Bash Hackers Wiki – hold documentation of any kind about GNU Bash.
๐ธ Shell & Utilities – describes the commands offered to application programs by POSIX-conformant systems.
๐ธ the-art-of-command-line – master the command line, in one page.
๐ธ Shell Style Guide – a shell style guide for Google-originated open-source projects.
โช๏ธ Text Editors
๐ธ Vim Cheat Sheet – great multi language vim guide.
โช๏ธ Python
๐ธ Awesome Python – a curated list of awesome Python frameworks, libraries, software and resources.
๐ธ python-cheatsheet – comprehensive Python cheatsheet.
๐ธ pythoncheatsheet.org – basic reference for beginner and advanced developers.
โช๏ธ Sed & Awk & Other
๐ธ FโAwk Yeah! – advanced sed and awk usage (Parsing for Pentesters 3).
โช๏ธ *nix & Network
๐ธ nixCraft – linux and unix tutorials for new and seasoned sysadmin.
๐ธ TecMint – the ideal Linux blog for Sysadmins & Geeks.
๐ธ Omnisecu – free Networking, System Administration and Security tutorials.
๐ธ linux-cheat – Linux tutorials and cheatsheets. Minimal examples. Mostly user-land CLI utilities.
๐ธ linuxupskillchallenge – learn the skills required to sysadmin.
๐ธ Unix Toolbox – Unix/Linux/BSD commands and tasks which are useful for IT work or for advanced users.
๐ธ Linux Kernel Teaching – is a collection of lectures and labs Linux kernel topics.
๐ธ htop explained – explanation of everything you can see in htop/top on Linux.
๐ธ Linux Guide and Hints – tutorials on system administration in Fedora and CentOS.
๐ธ strace-little-book – a little book which introduces strace.
๐ธ linux-tracing-workshop – examples and hands-on labs for Linux tracing tools workshops.
๐ธ http2-explained – a detailed document explaining and documenting HTTP/2.
๐ธ http3-explained – a document describing the HTTP/3 and QUIC protocols.
๐ธ HTTP/2 in Action – an excellent introduction to the new HTTP/2 standard.
๐ธ Let’s code a TCP/IP stack – great stuff to learn network and system programming at a deeper level.
๐ธ Nginx Admin’s Handbook – how to improve NGINX performance, security and other important things.
๐ธ nginxconfig.io – NGINX config generator on steroids.
๐ธ openssh guideline – is to help operational teams with the configuration of OpenSSH server and client.
๐ธ SSH Handshake Explained – is a relatively brief description of the SSH handshake.
๐ธ ISC’s Knowledgebase – you’ll find some general information about BIND 9, ISC DHCP, and Kea DHCP.
๐ธ PacketLife.net – a place to record notes while studying for Cisco’s CCNP certification.
โช๏ธ Microsoft
๐ธ AD-Attack-Defense – attack and defend active directory using modern post exploitation activity.
โช๏ธ Large-scale systems
๐ธ The System Design Primer – learn how to design large-scale systems.
๐ธ Awesome Scalability – best practices in building High Scalability, High Availability, High Stability, and more.
๐ธ Web Architecture 101 – the basic architecture concepts.
โช๏ธ System hardening
๐ธ CIS Benchmarks – secure configuration settings for over 100 technologies, available as a free PDF.
๐ธ Security Harden CentOS 7 – this walks you through the steps required to security harden CentOS.
๐ธ CentOS 7 Server Hardening Guide – great guide for hardening CentOS; familiar with OpenSCAP.
๐ธ awesome-security-hardening – is a collection of security hardening guides, tools and other resources.
๐ธ The Practical Linux Hardening Guide – provides a high-level overview of hardening GNU/Linux systems.
๐ธ Linux Hardening Guide – how to harden Linux as much as possible for security and privacy.
โช๏ธ Security & Privacy
๐ธ Hacking Articles – LRaj Chandel’s Security & Hacking Blog.
๐ธ AWS security tools – make your AWS cloud environment more secure.
๐ธ Rawsec’s CyberSecurity Inventory – an inventory of tools and resources about CyberSecurity.
๐ธ The Illustrated TLS Connection – every byte of a TLS connection explained and reproduced.
๐ธ SSL Research – SSL and TLS Deployment Best Practices by SSL Labs.
๐ธ SELinux Game – learn SELinux by doing. Solve Puzzles, show skillz.
๐ธ Certificates and PKI – everything you should know about certificates and PKI but are too afraid to ask.
๐ธ The Art of Subdomain Enumeration – a reference for subdomain enumeration techniques.
๐ธ Quitting Google – the comprehensive guide to quitting Google.
โช๏ธ Web Apps
๐ธ OWASP – worldwide not-for-profit charitable organization focused on improving the security of software.
๐ธ OWASP ASVS 3.0.1 – OWASP Application Security Verification Standard Project.
๐ธ OWASP ASVS 3.0.1 Web App – simple web app that helps developers understand the ASVS requirements.
๐ธ OWASP ASVS 4.0 – is a list of application security requirements or tests.
๐ธ OWASP Testing Guide v4 – includes a “best practice” penetration testing framework.
๐ธ OWASP Dev Guide – this is the development version of the OWASP Developer Guide.
๐ธ OWASP WSTG – is a comprehensive open source guide to testing the security of web apps.
๐ธ OWASP API Security Project – focuses specifically on the top ten vulnerabilities in API security.
๐ธ Mozilla Web Security – help operational teams with creating secure web applications.
๐ธ security-bulletins – security bulletins that relate to Netflix Open Source.
๐ธ API-Security-Checklist – security countermeasures when designing, testing, and releasing your API.
๐ธ Enable CORS – enable cross-origin resource sharing.
๐ธ Application Security Wiki – is an initiative to provide all application security related resources at one place.
๐ธ Weird Proxies – reverse proxy related attacks; it is a result of analysis of various proxies.
๐ธ Webshells – great series about malicious payloads.
๐ธ Practical Web Cache Poisoning – show you how to compromise websites by using esoteric web features.
๐ธ Hidden directories and files – as a source of sensitive information about web application.
๐ธ Explosive blog – great blog about cybersec and pentests.
๐ธ Security Cookies – this paper will take a close look at cookie security.
๐ธ APISecurityBestPractices – help you keep secrets (API keys, db credentials, certificates) out of source code.
โช๏ธ All-in-one
๐ธ LZone Cheat Sheets – all cheat sheets.
๐ธ Danโs Cheat Sheetsโs – massive cheat sheets documentation.
๐ธ Rico’s cheatsheets – this is a modest collection of cheatsheets.
๐ธ DevDocs API – combines multiple API documentations in a fast, organized, and searchable interface.
๐ธ cheat.sh – the only cheat sheet you need.
๐ธ gnulinux.guru – collection of cheat sheets about bash, vim and networking.
โช๏ธ Ebooks
๐ธ free-programming-books – list of free learning resources in many languages.
โช๏ธ Other
๐ธ CTF Series : Vulnerable Machines – the steps below could be followed to find vulnerabilities and exploits.
๐ธ 50M_CTF_Writeup – $50 million CTF from Hackerone – writeup.
๐ธ ctf-tasks – an archive of low-level CTF challenges developed over the years.
๐ธ How to start RE/malware analysis? – collection of some hints and useful links for the beginners.
๐ธ The C10K problem – it’s time for web servers to handle ten thousand clients simultaneously, don’t you think?
๐ธ How 1500 bytes became the MTU of the internet – great story about the Maximum Transmission Unit.
๐ธ poor man’s profiler – like dtrace’s don’t really provide methods to see what programs are blocking on.
๐ธ HTTPS on Stack Overflow – this is the story of a long journey regarding the implementation of SSL.
๐ธ Julia’s Drawings – some drawings about programming and unix world, zines about systems & debugging tools.
๐ธ Hash collisions – this great repository is focused on hash collisions exploitation.
๐ธ sha256-animation – animation of the SHA-256 hash function in your terminal.
๐ธ BGP Meets Cat – after 3072 hours of manipulating BGP, Job Snijders has succeeded in drawing a Nyancat.
๐ธ bgp-battleships – playing battleships over BGP.
๐ธ What happens when… – you type google.com into your browser and press enter?
๐ธ how-web-works – based on the ‘What happens when…’ repository.
๐ธ HTTPS in the real world – great tutorial explain how HTTPS works in the real world.
๐ธ Gitlab and NFS bug – how we spent two weeks hunting an NFS bug in the Linux kernel.
๐ธ Gitlab melts down – postmortem on the database outage of January 31 2017 with the lessons we learned.
๐ธ How To Become A Hacker – if you want to be a hacker, keep reading.
๐ธ Operation Costs in CPU – should help to estimate costs of certain operations in CPU clocks.
๐ธ Let’s Build a Simple Database – writing a sqlite clone from scratch in C.
๐ธ simple-computer – great resource to understand how computers work under the hood.
๐ธ The story of “Have I been pwned?” – working with 154 million records on Azure Table Storage.
๐ธ TOP500 Supercomputers – shows the 500 most powerful commercially available computer systems known to us.
๐ธ How to build a 8 GPU password cracker – any “black magic” or hours of frustration like desktop components do.
๐ธ CERN Data Centre – 3D visualizations of the CERN computing environments (and more).
๐ธ How fucked is my database – evaluate how fucked your database is with this handy website.
๐ธ Linux Troubleshooting 101 , 2016 Edition – everything is a DNS Problem…
๐ธ Five Whys – you know what the problem is, but you cannot solve it?
๐ธ Maersk, me & notPetya – how did ransomware successfully hijack hundreds of domain controllers?
๐ธ howhttps.works – how HTTPS works …in a comic!
๐ธ howdns.works – a fun and colorful explanation of how DNS works.
๐ธ POSTGRESQLCO.NF – your postgresql.conf documentation and recommendations.
Inspiring Lists [TOC]
โช๏ธ SysOps/DevOps
๐ธ Awesome Sysadmin – amazingly awesome open source sysadmin resources.
๐ธ Awesome Shell – awesome command-line frameworks, toolkits, guides and gizmos.
๐ธ Command-line-text-processing – finding text to search and replace, sorting to beautifying, and more.
๐ธ Awesome Pcaptools – collection of tools developed by other researchers to process network traces.
๐ธ awesome-ebpf – a curated list of awesome projects related to eBPF.
๐ธ Linux Network Performance – where some of the network sysctl variables fit into the Linux/Kernel network flow.
๐ธ Awesome Postgres – list of awesome PostgreSQL software, libraries, tools and resources.
๐ธ quick-SQL-cheatsheet – a quick reminder of all SQL queries and examples on how to use them.
๐ธ Awesome-Selfhosted – list of Free Software network services and web applications which can be hosted locally.
๐ธ List of applications – huge list of apps sorted by category, as a reference for those looking for packages.
๐ธ CS-Interview-Knowledge-Map – build the best interview map.
๐ธ DevOps-Guide – DevOps Guide from basic to advanced with Interview Questions and Notes.
๐ธ FreeBSD Journal – it is a great list of periodical magazines about FreeBSD and other important things.
๐ธ devops-interview-questions – contains interview questions on various DevOps and SRE related topics.
โช๏ธ Developers
๐ธ Web Developer Roadmap – roadmaps, articles and resources to help you choose your path, learn and improve.
๐ธ Front-End-Checklist – the perfect Front-End Checklist for modern websites and meticulous developers.
๐ธ Front-End-Performance-Checklist – Front-End Performance Checklist that runs faster than the others.
๐ธ Python’s Magic Methods – what are magic methods? They’re everything in object-oriented Python.
๐ธ wtfpython – a collection of surprising Python snippets and lesser-known features.
๐ธ js-dev-reads – a list of books and articles for the discerning web developer to read.
๐ธ Commit messages guide – a guide to understand the importance of commit messages.
โช๏ธ Security/Pentesting
๐ธ Awesome Web Security – a curated list of Web Security materials and resources.
๐ธ awesome-cyber-skills – a curated list of hacking environments where you can train your cyber skills.
๐ธ awesome-devsecops – an authoritative list of awesome devsecops tools.
๐ธ awesome-osint – is a curated list of amazingly awesome OSINT.
๐ธ HolyTips – tips and tutorials on Bug Bounty Hunting and Web App Security.
๐ธ awesome-threat-intelligence – a curated list of Awesome Threat Intelligence resources.
๐ธ Red-Teaming-Toolkit – a collection of open source and commercial tools that aid in red team operations.
๐ธ awesome-burp-extensions – a curated list of amazingly awesome Burp Extensions.
๐ธ Free Security eBooks – list of a Free Security and Hacking eBooks.
๐ธ Hacking-Security-Ebooks – top 100 Hacking & Security E-Books.
๐ธ privacy-respecting – curated list of privacy respecting services and software.
๐ธ reverse-engineering – list of awesome reverse engineering resources.
๐ธ linux-re-101 – a collection of resources for linux reverse engineering.
๐ธ reverseengineering-reading-list – a list of Reverse Engineering articles, books, and papers.
๐ธ Awesome-WAF – a curated list of awesome web-app firewall (WAF) stuff.
๐ธ awesome-shodan-queries – interesting, funny, and depressing search queries to plug into shodan.io.
๐ธ RobotsDisallowed – a curated list of the most common and most interesting robots.txt disallowed directories.
๐ธ HackingNeuralNetworks – is a small course on exploiting and defending neural networks.
๐ธ wildcard-certificates – why you probably shouldn’t use a wildcard certificate.
๐ธ Don’t use VPN services – which is what every third-party “VPN provider” does.
๐ธ awesome-yara – a curated list of awesome YARA rules, tools, and people.
๐ธ macOS-Security-and-Privacy-Guide – guide to securing and improving privacy on macOS.
๐ธ macos_security – macOS Security Compliance Project.
๐ธ awesome-sec-talks – is a collected list of awesome security talks.
๐ธ Movies for Hackers – list of movies every hacker & cyberpunk must watch.
๐ธ Cryptography_1 – materials used whilst taking Prof. Dan Boneh Stanford Crypto course.
๐ธ Crypton – library to learn and practice Offensive and Defensive Cryptography.
โช๏ธ Other
๐ธ Cheatography – over 3,000 free cheat sheets, revision aids and quick references.
๐ธ awesome-static-analysis – static analysis tools for all programming languages.
๐ธ computer-science – path to a free self-taught education in Computer Science.
๐ธ post-mortems – is a collection of postmortems (config errors, hardware failures, and more).
๐ธ build-your-own-x – build your own (insert technology here).
๐ธ Project-Based-Tutorials-in-C – is a curated list of project-based tutorials in C.
๐ธ The-Documentation-Compendium – various README templates & tips on writing high-quality documentation.
๐ธ awesome-python-applications – free software that works great, and also happens to be open-source Python.
๐ธ awesome-public-datasets – a topic-centric list of HQ open datasets.
๐ธ machine-learning-algorithms – a curated list of all machine learning algorithms and concepts.
Blogs/Podcasts/Videos [TOC]
โช๏ธ SysOps/DevOps
๐ธ Varnish for PHP developers – very interesting presentation of Varnish by Mattias Geniar.
๐ธ A Netflix Guide to Microservices – talks about the chaotic and vibrant world of microservices at Netflix.
โช๏ธ Developers
๐ธ Comparing C to machine lang – compare a simple C app with the compiled machine code of that program.
โช๏ธ Geeky Persons
๐ธ Brendan Gregg’s Blog – is an industry expert in computing performance and cloud computing.
๐ธ Gynvael “GynDream” Coldwind – is a IT security engineer at Google.
๐ธ Michaล “lcamtuf” Zalewski – white hat hacker, computer security expert.
๐ธ Mattias Geniar – developer, sysadmin, blogger, podcaster and public speaker.
๐ธ Nick Craver – software developer and systems administrator for Stack Exchange.
๐ธ Scott Helme – security researcher, speaker and founder of securityheaders.com and report-uri.com.
๐ธ Brian Krebs – The Washington Post and now an Independent investigative journalist.
๐ธ Bruce Schneier – is an internationally renowned security technologist, called a “security guru”.
๐ธ Chrissy Morgan – advocate of practical learning, Chrissy also takes part in bug bounty programs.
๐ธ Andy Gill – is a hacker at heart who works as a senior penetration tester.
๐ธ Daniel Miessler – cybersecurity expert and writer.
๐ธ Samy Kamkar – is an American privacy and security researcher, computer hacker.
๐ธ Javvad Malik – is a security advocate at AlienVault, a blogger event speaker and industry commentator.
๐ธ Graham Cluley – public speaker and independent computer security analyst.
๐ธ Kacper Szurek – detection engineer at ESET.
๐ธ Troy Hunt – web security expert known for public education and outreach on security topics.
๐ธ raymii.org – sysadmin specializing in building high availability cloud environments.
๐ธ Robert Penz – IT security expert.
โช๏ธ Geeky Blogs
๐ธ Linux Audit – the Linux security blog about auditing, hardening and compliance by Michael Boelen.
๐ธ Linux Security Expert – trainings, howtos, checklists, security tools, and more.
๐ธ The Grymoire – collection of useful incantations for wizards, be you computer wizards, magicians, or whatever.
๐ธ Secjuice – is the only non-profit, independent and volunteer led publication in the information security space.
๐ธ Decipher – security news that informs and inspires.
โช๏ธ Geeky Vendor Blogs
๐ธ Tenable Podcast – conversations and interviews related to Cyber Exposure, and more.
๐ธ Sophos – threat news room, giving you news, opinion, advice and research on computer security issues.
๐ธ Tripwire State of Security – blog featuring the latest news, trends and insights on current security issues.
๐ธ Malwarebytes Labs Blog – security blog aims to provide insider news about cybersecurity.
๐ธ TrustedSec – latest news, and trends about cybersecurity.
๐ธ PortSwigger Web Security Blog – about web app security vulns and top tips from our team of web security.
๐ธ AT&T Cybersecurity blog – news on emerging threats and practical advice to simplify threat detection.
๐ธ Thycotic – where CISOs and IT Admins come to learn about industry trends, IT security, and more.
โช๏ธ Geeky Cybersecurity Podcasts
๐ธ Risky Business – is a weekly information security podcast featuring news and in-depth interviews.
๐ธ Cyber, by Motherboard – stories, and focus on the ideas about cybersecurity.
๐ธ Tenable Podcast – conversations and interviews related to Cyber Exposure, and more.
๐ธ Cybercrime Investigations – podcast by Geoff White about cybercrimes.
๐ธ The many hats club – featuring stories from a wide range of Infosec people (Whitehat, Greyhat and Blackhat).
๐ธ Darknet Diaries – true stories from the dark side of the Internet.
๐ธ OSINTCurious Webcasts – is the investigative curiosity that helps people be successful in OSINT.
๐ธ Security Weekly – the latest information security and hacking news.
โช๏ธ Geeky Cybersecurity Video Blogs
๐ธ rev3rse security – offensive, binary exploitation, web app security, hardening, red team, blue team.
๐ธ LiveOverflow – a lot more advanced topics than what is typically offered in paid online courses – but for free.
๐ธ J4vv4D – the important information regarding our internet security.
๐ธ CyberTalks – talks, interviews, and article about cybersecurity.
Build your own DNS Servers
๐ธ Unbound DNS Tutorial – a validating, recursive, and caching DNS server.
๐ธ Knot Resolver on Fedora – how to get faster and more secure DNS resolution with Knot Resolver on Fedora.
๐ธ DNS-over-HTTPS – tutorial to setup your own DNS-over-HTTPS (DoH) server.
๐ธ dns-over-https – a cartoon intro to DNS over HTTPS.
๐ธ DNS-over-TLS – following to your DoH server, setup your DNS-over-TLS (DoT) server.
๐ธ DNS Servers – how (and why) i run my own DNS Servers.
Build your own Certificate Authority
๐ธ OpenSSL Certificate Authority – build your own certificate authority (CA) using the OpenSSL tools.
๐ธ step-ca Certificate Authority – build your own certificate authority (CA) using open source step-ca.
Build your own System/Virtual Machine
ย ย ๐ธย os-tutorialย – how to create an OS from scratch.
ย ย ๐ธย Write your Own Virtual Machineย – how to write your own virtual machine (VM).
ย ย ๐ธย x86 Bare Metal Examplesย – dozens of minimal operating systems to learn x86 system programming.
ย ย ๐ธย simple-computerย – the scott CPU from “But How Do It Know?” by J. Clark Scott.
ย ย ๐ธย littleosbookย – the little book about OS development.
Iโm a DevOps/SRE/DevSecOps/Cloud Expert passionate about sharing knowledge and experiences. I have worked at Cotocus. I share tech blog at DevOps School, travel stories at Holiday Landmark, stock market tips at Stocks Mantra, health and fitness guidance at My Medic Plus, product reviews at TrueReviewNow , and SEO strategies at Wizbrand.
Do you want to learn Quantum Computing?
Please find my social handles as below;
Rajesh Kumar Personal Website
Rajesh Kumar at YOUTUBE
Rajesh Kumar at INSTAGRAM
Rajesh Kumar at X
Rajesh Kumar at FACEBOOK
Rajesh Kumar at LINKEDIN
Rajesh Kumar at WIZBRAND