Terminal

// Knowledge vault4 pillars · 29 assets

Resources

A curated directory of the outside world: where to learn, what to practise on, who to read, and where to ask. Everything here is a live resource I would send someone to myself.

Learning resources

Start here, in this order

  1. CTF progression — TryHackMe to HackTheBox

    Start on guided rooms where the answer is checked for you, then move to boxes where nothing tells you if you are close. The jump is the point: it is the first time you have to decide for yourself whether an idea is worth ten more minutes.

    tryhackme.com

    RoadmapHands-onFree tier

  2. Web security fundamentals — PortSwigger Academy

    Free, and still the most complete treatment of web vulnerability classes anywhere. Work the labs in order rather than cherry-picking: the later ones assume the mental model the earlier ones build.

    portswigger.net/web-security

    RoadmapWebFree

  3. Certification prep — CPTS and OSCP

    Both reward methodology over tool knowledge. Keep a written enumeration checklist from day one and refine it every box; by exam day the checklist is the thing being tested, not your recall.

    offsec.com — PEN-200

    CertCPTSOSCP

Roadmaps & certification prep

Tools & labs

Platforms & essential tools

News & blogs

Threat intel, original research, and the newsletters worth an inbox slot. Read the research slowly; the news exists to tell you what to go and look up.

Krebs on SecurityLong-form investigative reporting on cybercrime, usually well ahead of the trade press and frequently the original source they cite.NewsInvestigativeCybercrime(opens in a new tab)Google Project ZeroFull technical write-ups of real zero-days, at a depth almost nothing else publishes. Slow to post, worth reading every time.ResearchExploitationDeep dive(opens in a new tab)PortSwigger ResearchOriginal web security research from the team behind Burp — new attack classes, not commentary on other people’s findings.ResearchWebOriginal(opens in a new tab)SANS Internet Storm CenterA daily diary of what is actually being scanned and exploited right now, written by handlers looking at live sensor data.Threat intelDailyFree(opens in a new tab)BleepingComputerFast, reliable breach and ransomware reporting. The place a story usually breaks before it reaches the mainstream outlets.NewsBreachesRansomware(opens in a new tab)The Hacker NewsHigh-volume industry news. Useful as a wide net for what happened this week, best paired with a source that goes deeper.NewsDailyIndustry(opens in a new tab)tl;dr secA weekly newsletter summarising conference talks, tools and research. One of the few that reliably saves more time than it costs.NewsletterWeeklyCurated(opens in a new tab)Darknet DiariesNarrative interviews with people who were actually there — breaches, intrusions and the occasional arrest, told first-hand.PodcastStoriesInterviews(opens in a new tab)Risky BusinessA weekly news podcast with practitioner commentary rather than vendor talking points. The news segment alone is worth the subscription.PodcastWeeklyAnalysis(opens in a new tab)

Communities & forums

Discord entries point at each platform's own community page rather than an invite code — invite codes expire, and a dead invite is worse than no link.