CoursesFree + Paid
Pre Security
No-prior-experience path covering computers, networking, web basics, and cyber concepts.
Best first
TryHackMeFoundationsBeginner
CoursesFree
Introduction to Cybersecurity
Entry-level overview of threats, career areas, and core security concepts.
Best firstJob-ready
Cisco Networking AcademyFoundationsBeginner
CoursesFree + Paid
Certified in Cybersecurity Training
Foundational security training connected to the ISC2 CC credential.
Best first
ISC2FoundationsBeginner
CoursesPaid
Google Cybersecurity Certificate
Career-oriented program with Linux, SQL, SIEM, Python, and incident response basics.
Best firstJob-readyNeeds lab
Coursera / GoogleFoundationsBeginner
CoursesFree + Paid
Security Learning Plan
AWS security curriculum covering IAM, governance, compliance, and workload protection.
AWS Skill BuilderCloud SecurityIntermediate
CoursesFree
Security Operations Analyst
Defender, Sentinel, incident response, and threat mitigation modules.
Job-ready
Microsoft LearnDFIRIntermediate
CoursesFree + Paid
Hack The Box Academy
Hands-on modules for penetration testing, infrastructure, web, and blue-team skills.
Hands-on
Hack The BoxWeb / AppSecIntermediate
CoursesFree + Paid
Blue Team Labs Online
Defensive investigations, logs, SOC workflows, and incident-response challenges.
BTLODFIRIntermediate
CoursesFree + Paid
LetsDefend SOC Training
SOC analyst simulations with alerts, cases, investigation, and escalation workflows.
Job-ready
LetsDefendDFIRIntermediate
CoursesFree
OpenSecurityTraining2
Free low-level security, x86, exploitation, and reverse engineering courses.
Advanced
OST2Malware / Reverse EngineeringProfessional
CoursesPaid
SANS Cybersecurity Courses
Premium practitioner training across DFIR, cloud, ICS, leadership, and offense.
AdvancedNeeds lab
SANS InstituteProfessionalProfessional
CoursesPaid
PEN-200 / OSCP Prep
Advanced penetration testing preparation connected to the OSCP certification.
Job-readyAdvanced
OffSecWeb / AppSecProfessional
CoursesPaid
Practical Ethical Hacking
Practical pentesting methodology, Active Directory basics, web attacks, and reporting.
Best first
TCM Security AcademyRed Team / Adversary EmulationBeginner
CoursesPaid
Learn Ethical Hacking From Scratch
Beginner-friendly Udemy course covering lab setup, network attacks, web attacks, and common tools.
Best firstHands-onNeeds lab
Udemy / z SecurityWeb / AppSecBeginner
CoursesPaid
Complete Introduction to Cybersecurity 2026
Broad beginner introduction to IT, cybersecurity concepts, attacks, defenses, and next-step planning.
Best first
Udemy / Grant CollinsFoundationsBeginner
CoursesPaid
Exploit Development for Linux (x86)
Linux x86 assembly, stack overflows, shellcode, NX, ASLR, and basic ROP practice.
Hands-on
UdemyExploit DevelopmentIntermediate
CoursesFree
Hands-on Fuzzing and Exploit Development
Short practical introduction to fuzzing and stack-based buffer overflow workflow.
UdemyExploit DevelopmentIntermediate
CoursesPaid
EXP-301 / OSED
Advanced Windows user-mode exploit development and OSED preparation.
Job-readyAdvanced
OffSecExploit DevelopmentProfessional
CoursesFree
Malware Unicorn Workshops
Reverse engineering and malware analysis workshops with practical exercises.
Malware UnicornMalware / Reverse EngineeringIntermediate
CoursesFree
Web LLM Attacks
Interactive labs on prompt injection and attacking LLM APIs, integrations, and tool use.
Best firstHands-onNeeds lab
PortSwiggerAI / LLM SecurityBeginner
CoursesFree
AI Security Fundamentals
Core concepts for securing AI systems: AI risks, controls, governance, and responsible AI.
Best first
Microsoft LearnAI / LLM SecurityBeginner
CoursesFree
Enhance Security Operations with Security Copilot
Use generative-AI prompts and agents (SC-5006) to triage incidents, hunt, and respond at machine speed.
Microsoft LearnAI-Augmented DefenseIntermediate
CoursesFree + Paid
Machine Learning & Emerging Technologies in Cybersecurity
Apply ML to intrusion detection and anomaly detection with hands-on labs in Security Onion and RapidMiner.
Hands-onNeeds lab
Coursera / Johns HopkinsAI-Augmented DefenseIntermediate
CoursesPaid
SEC595: Applied Data Science and AI/ML
Build custom AI-driven detection: neural networks for malware, phishing, and behavioral analysis (70%+ labs).
Hands-onAdvancedNeeds lab
SANS InstituteAI-Augmented DefenseProfessional
CoursesPaid
Beginner’s Guide to IoT and Hardware Hacking
Foundational hardware and IoT hacking: UART, SPI, firmware extraction, and device security research.
Best first
TCM SecurityHardware / IoTBeginner
CoursesPaid
SEC556: IoT Penetration Testing
Assess the full IoT ecosystem: hardware, firmware, radio, and network attack surfaces.
Advanced
SANS InstituteHardware / IoTProfessional
CoursesFree
Secureum Bootcamp
Smart-contract security and audit bootcamp covering Solidity, the EVM, and DeFi vulnerability classes.
Needs lab
SecureumBlockchain / Web3Intermediate
CoursesFree
Securing Your Software Supply Chain with Sigstore (LFS182)
Free course on signing, verifying, and proving provenance of artifacts with Sigstore (Cosign, Fulcio, Rekor).
Best first
Linux FoundationSupply Chain SecurityBeginner
CoursesPaid
Detection Engineering with Sigma
Write and operationalize Sigma detections using real logs (Sysmon, Zeek, CloudTrail) with a detection-as-code workflow.
Needs lab
Applied Network DefenseDetection EngineeringIntermediate
YouTubeFree
NetworkChuck
Networking, Linux, cloud, home labs, and security basics with approachable projects.
Best firstHands-onNeeds lab
YouTubeFoundationsBeginner
YouTubeFree
Professor Messer
CompTIA A+, Network+, and Security+ video courses and study sessions.
Best firstJob-ready
YouTubeCertificationsBeginner
YouTubeFree
John Hammond
CTFs, malware analysis, threat breakdowns, tooling, and security career videos.
Hands-onJob-ready
YouTubeDFIRIntermediate
YouTubeFree
IppSec
Hack The Box walkthroughs focused on methodology, enumeration, and exploitation.
YouTubeWeb / AppSecIntermediate
YouTubeFree
LiveOverflow
Binary exploitation, reverse engineering, web hacking, and CTF fundamentals.
Hands-on
YouTubeMalware / Reverse EngineeringIntermediate
YouTubeFree + Paid
The Cyber Mentor
Practical ethical hacking, pentesting, career guidance, and training previews.
Best firstJob-ready
YouTubeWeb / AppSecBeginner
YouTubeFree
David Bombal
Networking, hacking, Python, Linux, interviews, and practical lab demos.
Best firstHands-onNeeds lab
YouTubeNetwork SecurityBeginner
YouTubeFree
HackerSploit
Ethical hacking tutorials, Linux, tools, web testing, and red-team basics.
Best first
YouTubeWeb / AppSecBeginner
YouTubeFree
NahamSec
Bug bounty, web security, recon, live hacking, and AppSec interviews.
YouTubeWeb / AppSecIntermediate
YouTubeFree
STOK
Bug bounty methodology, interviews, web hacking workflows, and recon ideas.
YouTubeWeb / AppSecIntermediate
YouTubeFree
InsiderPhD
Bug bounty learning paths, web testing basics, and beginner-friendly methodology.
Best first
YouTubeWeb / AppSecBeginner
YouTubeFree
13Cubed
Windows forensics, memory analysis, event logs, and DFIR technique breakdowns.
YouTubeDFIRIntermediate
YouTubeFree + Paid
Black Hills Information Security
Webcasts, purple-team content, detection, pentesting, and defensive tradecraft.
YouTubeSecurity EngineeringIntermediate
YouTubeFree
DEF CON Conference
Security research talks across hardware, policy, privacy, exploitation, and defense.
Advanced
YouTubeProfessionalProfessional
YouTubeFree
Black Hat
Conference briefings and technical research from Black Hat events.
Advanced
YouTubeProfessionalProfessional
YouTubeFree
Computerphile Security
Accessible explanations of crypto, passwords, protocols, privacy, and computing concepts.
Best first
YouTubeFoundationsBeginner
YouTubeFree
freeCodeCamp Cybersecurity
Long-form free courses on security, Linux, networking, Python, and cloud basics.
Best firstNeeds lab
YouTubeFoundationsBeginner
LabsFree
OverTheWire
Wargames for Linux, command line, web, crypto, and exploitation fundamentals.
Best firstHands-on
Practice platformFoundationsBeginner
LabsFree
picoCTF
Beginner-friendly CTF challenges built for students and self-learners.
Best firstHands-on
Practice platformFoundationsBeginner
LabsFree + Paid
Hack The Box
Machines, Sherlocks, tracks, Academy modules, and competitive labs.
Hands-onNeeds lab
Practice platformWeb / AppSecIntermediate
LabsFree + Paid
TryHackMe
Guided rooms, learning paths, and browser-based labs for red and blue team.
Best firstHands-onNeeds lab
Practice platformFoundationsBeginner
LabsFree
PortSwigger Web Security Academy
Free interactive web vulnerability labs and topic explanations.
Best firstHands-onNeeds lab
Practice platformWeb / AppSecBeginner
LabsFree
OWASP Juice Shop
Modern intentionally vulnerable web app covering OWASP Top Ten style issues.
Best firstHands-on
OWASPWeb / AppSecBeginner
LabsFree
VulnHub
Downloadable vulnerable virtual machines for offline practice labs.
Hands-onNeeds lab
Practice platformWeb / AppSecIntermediate
LabsFree
CTFtime
Calendar, teams, and ranking hub for public capture-the-flag competitions.
Hands-on
Practice calendarFoundationsIntermediate
LabsFree + Paid
CyberDefenders
Blue-team labs for forensics, SIEM, malware, threat hunting, and incident response.
Hands-onNeeds lab
Practice platformDFIRIntermediate
LabsFree
Malware Traffic Analysis
PCAP and malware traffic exercises for network forensics and detection practice.
Hands-on
Practice archiveDFIRIntermediate
LabsFree
AttackIQ Academy
Threat-informed defense, MITRE ATT&CK, and purple-team learning modules.
Hands-on
Training platformThreat IntelligenceIntermediate
DocsFree
NIST NICE Framework
Workforce framework for cybersecurity roles, skills, tasks, and career mapping.
Best firstTheoryJob-ready
NISTGRCBeginner
DocsFree
NIST Cybersecurity Framework
Cybersecurity risk management framework for governance and security programs.
Theory
NISTGRCIntermediate
DocsFree
MITRE ATT&CK
Globally accessible knowledge base of adversary tactics and techniques.
Theory
MITREThreat IntelligenceIntermediate
DocsFree
CISA Cybersecurity Resources
Government guidance, alerts, advisories, ransomware resources, and security programs.
Best firstTheory
CISAGRCBeginner
DocsFree
CISA KEV Catalog
Known exploited vulnerabilities catalog for prioritizing remediation.
Theory
CISAThreat IntelligenceIntermediate
DocsFree
CIS Critical Security Controls
Prioritized security controls and safeguards for organizations.
Theory
CISGRCIntermediate
DocsFree
OWASP Top Ten
Awareness document for common web application security risks.
Best firstTheory
OWASPWeb / AppSecBeginner
DocsFree
OWASP Web Security Testing Guide
Testing methodology for web application security assessments.
Theory
OWASPWeb / AppSecIntermediate
DocsFree
OWASP Cheat Sheet Series
Practical secure development checklists for auth, crypto, APIs, logging, and more.
Best firstTheory
OWASPWeb / AppSecBeginner
DocsFree
OWASP ASVS
Application Security Verification Standard for requirements and assessments.
TheoryAdvanced
OWASPWeb / AppSecProfessional
DocsFree
AWS Security Documentation
Security, identity, compliance, architecture, and service-specific AWS guidance.
Theory
AWSCloud SecurityIntermediate
DocsFree
Microsoft Security Documentation
Microsoft security, compliance, Defender, Sentinel, identity, and Azure guidance.
Theory
MicrosoftCloud SecurityIntermediate
DocsFree
Google Cloud Security Foundations
Google Cloud security foundations, IAM, architecture, and operations guidance.
TheoryNeeds lab
Google CloudCloud SecurityIntermediate
ToolsFree
CyberChef
Browser-based data transformation, decoding, hashing, compression, and analysis tool.
Best first
GCHQDFIRBeginner
ToolsFree
Wireshark Documentation
Packet analysis tool documentation, display filters, and protocol inspection.
Best first
WiresharkNetwork SecurityBeginner
ToolsFree
SigmaHQ
Generic SIEM detection rule format and community rules.
Needs lab
SigmaDFIRIntermediate
ToolsFree
YARA Documentation
Pattern matching rules for malware research and detection.
VirusTotalMalware / Reverse EngineeringIntermediate
ToolsFree + Paid
Elastic Security Docs
SIEM, detection rules, endpoint, and threat hunting documentation.
Needs lab
ElasticDFIRIntermediate
ToolsFree + Paid
Splunk Security Essentials
Security use cases, SPL examples, and detection content for Splunk environments.
SplunkDFIRIntermediate
Blogs / NewsFree
Krebs on Security
Investigative security journalism on breaches, cybercrime, fraud, and threat actors.
BlogThreat IntelligenceIntermediate
Blogs / NewsFree
SANS Internet Storm Center
Daily handlers diary, alerts, threat observations, and defensive analysis.
SANSThreat IntelligenceIntermediate
Blogs / NewsFree
Google Project Zero
Vulnerability research, exploit analysis, root-cause work, and disclosure posts.
Advanced
GoogleSecurity EngineeringProfessional
Blogs / NewsFree
Microsoft Security Blog
Threat intelligence, identity, cloud security, and Microsoft security product research.
Needs lab
MicrosoftCloud SecurityIntermediate
Blogs / NewsFree
Mandiant Blog
Threat intelligence, incident response, malware, and adversary tracking research.
Advanced
Google CloudThreat IntelligenceProfessional
Blogs / NewsFree
Cisco Talos Blog
Threat research, vulnerability analysis, malware reports, and detection context.
CiscoThreat IntelligenceIntermediate
Blogs / NewsFree
Palo Alto Unit 42
Threat intelligence, malware analysis, cloud threats, and incident research.
Needs lab
Palo Alto NetworksThreat IntelligenceIntermediate
PodcastsFree
Darknet Diaries
Narrative stories about breaches, hackers, investigations, and security history.
Best first
PodcastFoundationsBeginner
PodcastsFree
Risky Business
Weekly security news, policy, vulnerability, vendor, and practitioner discussion.
PodcastThreat IntelligenceIntermediate
PodcastsFree
CyberWire Daily
Daily cybersecurity news briefings and interviews.
Best first
PodcastThreat IntelligenceBeginner
PodcastsFree
Smashing Security
Security and privacy stories explained in a lighter weekly format.
Best first
PodcastFoundationsBeginner
CommunitiesFree
r/netsec
Technical security research links and discussion.
RedditProfessionalIntermediate
CommunitiesFree
r/cybersecurity
General cybersecurity careers, news, questions, and community discussion.
Best firstJob-ready
RedditFoundationsBeginner
CommunitiesFree
OWASP Community
Local chapters, projects, events, and application security community work.
Best first
OWASPWeb / AppSecBeginner
CommunitiesFree
HackerOne Hacktivity
Public vulnerability reports useful for learning bug bounty patterns.
HackerOneWeb / AppSecIntermediate
Books / ReadingFree
Bugcrowd University
Bug bounty learning content, methodology, and vulnerability examples.
Best first
BugcrowdWeb / AppSecBeginner
Books / ReadingPaid
The Tangled Web
Classic book on browser and web platform security.
Theory
BookWeb / AppSecIntermediate
Books / ReadingPaid
Practical Malware Analysis
Hands-on malware analysis book covering static and dynamic analysis.
Hands-onTheory
BookMalware / Reverse EngineeringIntermediate
Books / ReadingPaid
Real-World Cryptography
Modern applied cryptography for engineers and security practitioners.
BookSecurity EngineeringIntermediate
Books / ReadingPaid
Web Application Hacker’s Handbook
Classic web testing reference; older but still useful for methodology.
Advanced
BookWeb / AppSecProfessional
DocsFree
OWASP Top 10 for LLMs
The canonical list of the most critical security risks in LLM and generative-AI applications.
Best firstTheory
OWASPAI / LLM SecurityBeginner
DocsFree
MITRE ATLAS
Adversarial threat landscape and ATT&CK-style technique matrix for AI and ML systems.
Theory
MITREAI / LLM SecurityIntermediate
DocsFree
NIST AI Risk Management Framework
Voluntary framework for governing, mapping, measuring, and managing AI risk.
Theory
NISTAI / LLM SecurityIntermediate
LabsFree
Lakera Gandalf
Gamified prompt-injection challenge that teaches how LLM guardrails fail, level by level.
Best firstHands-on
LakeraAI / LLM SecurityBeginner
LabsFree
HackAPrompt
Prompt-injection competition and playground for learning real-world LLM attack techniques.
Best firstHands-on
Learn PromptingAI / LLM SecurityBeginner
DocsFree
awesome-ml-for-cybersecurity
Curated list of datasets, papers, tools, and courses for applying machine learning to security.
Theory
GitHubAI-Augmented DefenseIntermediate
DocsFree
Microsoft Security Copilot Docs
Reference for the AI security analysis tool: prompting, plugins, agents, and SOC use cases.
Theory
MicrosoftAI-Augmented DefenseIntermediate
Books / ReadingPaid
Machine Learning and Security
Practical guide to using data and algorithms for detection: spam, malware, anomalies, and clustering.
O’ReillyAI-Augmented DefenseIntermediate
DocsFree
awesome-embedded-and-iot-security
Curated list of tools, papers, and labs for embedded and IoT security research.
Hands-onTheoryNeeds lab
GitHubHardware / IoTIntermediate
LabsFree
OWASP IoTGoat
Deliberately insecure firmware (OpenWrt-based) for practicing IoT vulnerability discovery.
Hands-on
OWASPHardware / IoTIntermediate
LabsFree
Ethernaut
Interactive smart-contract hacking game: reentrancy, delegatecall, access control, and storage bugs.
Best firstHands-on
OpenZeppelinBlockchain / Web3Beginner
LabsFree
Damn Vulnerable DeFi
Offensive DeFi wargame: flash-loan manipulation, price-oracle exploits, and governance attacks.
Hands-on
Web3 wargameBlockchain / Web3Intermediate
DocsFree
Awesome-web3-Security
Curated Web3 security materials for pentesters, auditors, and bug hunters.
Theory
GitHubBlockchain / Web3Intermediate
DocsFree
SLSA Framework
Supply-chain Levels for Software Artifacts: provenance and integrity guarantees against tampering.
Theory
OpenSSFSupply Chain SecurityIntermediate
ToolsFree
Sigstore
Keyless artifact signing and verification: Cosign, Fulcio certificates, and the Rekor transparency log.
OpenSSFSupply Chain SecurityIntermediate
CommunitiesFree
OpenSSF
Open Source Security Foundation: guides, working groups, and best practices for securing the supply chain.
Best firstHands-on
Linux FoundationSupply Chain SecurityBeginner
ToolsFree
Atomic Red Team
Library of small, portable tests mapped to MITRE ATT&CK for validating detections.
Red CanaryDetection EngineeringIntermediate
Blogs / NewsFree
Detection Engineering Weekly
Weekly newsletter tracking detection-as-code, new rules, tooling, and threat research.
NewsletterDetection EngineeringIntermediate
ToolsFree
Nmap Reference Guide
Official reference for host discovery, port scanning, version detection, and the Nmap Scripting Engine.
Best first
NmapNetwork SecurityBeginner
DocsFree
Practical Networking
Clear, structured articles on how networks really work: routing, switching, NAT, TLS, and more.
Best firstTheory
Practical NetworkingNetwork SecurityBeginner
YouTubeFree
Chris Greer
Wireshark and packet-analysis tutorials, TCP/IP deep dives, and troubleshooting walkthroughs.
Best first
YouTubeNetwork SecurityBeginner
Books / ReadingPaid
Practical Packet Analysis
Hands-on guide to capturing and interpreting network traffic with Wireshark.
Hands-on
No StarchNetwork SecurityIntermediate
LabsFree
pwn.college
University-grade modules and challenges covering binary exploitation, reversing, and system security.
Hands-on
Arizona State UniversityExploit DevelopmentIntermediate
LabsFree
exploit.education
Phoenix and Nebula virtual machines for learning memory corruption and privilege escalation.
Best firstHands-on
exploit.educationExploit DevelopmentBeginner
LabsFree
ROP Emporium
Focused challenges that teach return-oriented programming across multiple architectures.
Hands-on
ROP EmporiumExploit DevelopmentIntermediate
DocsFree
Nightmare
Free intro-to-binary-exploitation course built from CTF challenges, from stack overflows to heap.
Hands-onTheory
guyinatuxedoExploit DevelopmentIntermediate
DocsFree
Azeria Labs
ARM assembly and exploitation tutorials aimed at mobile and embedded targets.
Theory
Azeria LabsExploit DevelopmentIntermediate
DocsFree
HackTricks
Massive practical hacking wiki covering pentest methodology, privilege escalation, and AD attacks.
Theory
Carlos PolopRed Team / Adversary EmulationIntermediate
ToolsFree
MITRE Caldera
Automated adversary-emulation platform built on the ATT&CK framework.
Theory
MITRERed Team / Adversary EmulationIntermediate
DocsFree
PayloadsAllTheThings
Reference of payloads and bypass techniques for web, Active Directory, and post-exploitation.
Theory
GitHubRed Team / Adversary EmulationIntermediate
DocsFree
The C2 Matrix
Comparison matrix of command-and-control frameworks to pick the right tool for an engagement.
TheoryAdvanced
SANSRed Team / Adversary EmulationProfessional
YouTubeFree
Red Team Village
Talks and workshops on offensive tradecraft, tooling, and adversary emulation.
YouTubeRed Team / Adversary EmulationIntermediate
DocsFree
OWASP SAMM
Software Assurance Maturity Model for building and measuring a secure development program.
Theory
OWASPProduct SecurityIntermediate
DocsFree
Microsoft SDL
Security Development Lifecycle practices for building security into software from the start.
Hands-onTheory
MicrosoftProduct SecurityIntermediate
ToolsFree
OWASP Threat Dragon
Free threat-modeling tool for drawing data-flow diagrams and recording threats.
OWASPProduct SecurityIntermediate
Books / ReadingPaid
Threat Modeling: Designing for Security
Comprehensive practitioner guide to threat modeling software systems.
Adam ShostackProduct SecurityIntermediate
DocsFree
BSIMM
Building Security In Maturity Model: a data-driven view of what real software security programs do.
TheoryAdvanced
Black DuckProduct SecurityProfessional
DocsFree
OAuth 2.0
Authoritative hub for the OAuth 2.0 authorization framework, specifications, and security guidance.
Theory
oauth.netIAMIntermediate
DocsFree
OpenID Connect
How OpenID Connect adds an identity layer on top of OAuth 2.0 for authentication.
Theory
OpenID FoundationIAMIntermediate
DocsFree
NIST SP 800-63 Digital Identity Guidelines
Federal guidelines for identity proofing, authentication, and federation assurance levels.
TheoryAdvanced
NISTIAMProfessional
DocsFree
AWS IAM User Guide
Reference for AWS identity, policies, roles, and least-privilege access design.
Theory
AWSIAMIntermediate
DocsFree
OWASP MAS (MASVS + MASTG)
Mobile Application Security Verification Standard and Testing Guide for iOS and Android.
Theory
OWASPMobile SecurityIntermediate
ToolsFree
MobSF
Automated static and dynamic analysis framework for Android and iOS applications.
Theory
GitHubMobile SecurityIntermediate
ToolsFree
Frida
Dynamic instrumentation toolkit for hooking and tracing apps at runtime.
FridaMobile SecurityIntermediate
DocsFree
Android Security Documentation
Platform security model, app sandboxing, permissions, and secure-development guidance.
Theory
GoogleMobile SecurityIntermediate
LabsFree
Cryptopals Crypto Challenges
Hands-on challenges that teach attacks against real-world crypto by building them yourself.
Hands-on
CryptopalsPrivacy / CryptographyIntermediate
Books / ReadingFree
Crypto 101
Free introductory book on applied cryptography for programmers.
Best firstTheory
Crypto 101Privacy / CryptographyBeginner
Books / ReadingFree
A Graduate Course in Applied Cryptography
Free, rigorous textbook covering modern cryptographic primitives and proofs.
TheoryAdvanced
Boneh & ShoupPrivacy / CryptographyProfessional
DocsFree
EFF Surveillance Self-Defense
Practical guides to digital privacy, personal threat modeling, and protective tools.
Best firstTheory
EFFPrivacy / CryptographyBeginner
Books / ReadingPaid
Serious Cryptography
Modern, practical introduction to cryptographic algorithms and how they are used.
No StarchPrivacy / CryptographyIntermediate
DocsFree
CISA Industrial Control Systems
Advisories, recommended practices, and training for securing industrial control systems.
Hands-onTheory
CISAOT / ICSIntermediate
DocsFree
MITRE ATT&CK for ICS
ATT&CK knowledge base of adversary tactics and techniques targeting ICS environments.
Theory
MITREOT / ICSIntermediate
Blogs / NewsFree
SANS ICS Security
ICS/OT security blog, whitepapers, webcasts, and community resources.
SANSOT / ICSIntermediate
LabsFree
GRFICS
Graphical framework simulating an industrial process for safe ICS attack-and-defend practice.
Hands-onTheory
Fortiphyd LogicOT / ICSIntermediate
ToolsFree
AFL++
State-of-the-art fuzzer for finding memory-safety bugs in native code.
Advanced
GitHubVulnerability ResearchProfessional
Books / ReadingFree
Phrack Magazine
Long-running ezine with deep technical articles on exploitation and system internals.
Advanced
PhrackVulnerability ResearchProfessional
Books / ReadingPaid
Hacking: The Art of Exploitation
Foundational book on exploitation techniques, from C and assembly to shellcode.
Theory
No StarchVulnerability ResearchIntermediate
DocsFree
Awesome Fuzzing
Curated list of fuzzing tools, papers, and tutorials.
TheoryAdvanced
GitHubVulnerability ResearchProfessional
DocsFree
OWASP IoT Top 10
The ten most common IoT security weaknesses, from default passwords to insecure interfaces.
Best firstTheory
OWASPHardware / IoTBeginner
ToolsFree
binwalk
Firmware-analysis tool for extracting and inspecting embedded file systems and code.
GitHubHardware / IoTIntermediate
Books / ReadingPaid
The Hardware Hacking Handbook
Guide to attacking embedded systems with fault injection and side-channel analysis.
No StarchHardware / IoTIntermediate
LabsFree
DetectionLab
Preconfigured lab with logging and tooling to build and test detections quickly.
Hands-onNeeds lab
GitHubDetection EngineeringIntermediate
Blogs / NewsFree
The DFIR Report
Detailed intrusion reports with timelines, TTPs, and concrete detection opportunities.
The DFIR ReportDetection EngineeringIntermediate
DocsFree
Awesome Detection Engineering
Curated resources on detection-as-code, methodologies, and rule repositories.
Theory
GitHubDetection EngineeringIntermediate
ToolsFree
OWASP Dependency-Check
Software composition analysis tool that flags known-vulnerable dependencies.
Best first
OWASPSupply Chain SecurityBeginner
ToolsFree
in-toto
Framework for cryptographically verifying the integrity of the software supply chain.
Theory
in-totoSupply Chain SecurityIntermediate
DocsFree
Solidity by Example
Annotated Solidity snippets including common vulnerabilities and on-chain hacks.
Best firstTheory
Solidity by ExampleBlockchain / Web3Beginner
LabsFree
Capture the Ether
Game of smart-contract security challenges on Ethereum.
Hands-on
Capture the EtherBlockchain / Web3Intermediate
Blogs / NewsFree
rekt.news
Post-mortems of major DeFi hacks and exploits with technical breakdowns.
rektBlockchain / Web3Intermediate
ToolsFree
garak
LLM vulnerability scanner that probes for jailbreaks, prompt injection, and data leakage.
NVIDIAAI / LLM SecurityIntermediate
Blogs / NewsFree
Prompt injection (Simon Willison)
Ongoing analysis of prompt-injection attacks and why they remain hard to fix.
BlogAI / LLM SecurityIntermediate
ToolsFree
PyRIT
Python Risk Identification Toolkit for red-teaming generative-AI systems.
MicrosoftAI-Augmented DefenseIntermediate
ToolsFree
Adversarial Robustness Toolbox
Library for defending and attacking ML models: evasion, poisoning, and extraction.
IBMAI-Augmented DefenseIntermediate
ToolsFree
Ghidra
Free software reverse-engineering suite with a powerful decompiler.
NSAMalware / Reverse EngineeringIntermediate
YouTubeFree
OALabs
Practical malware reverse-engineering streams, unpacking, and tooling tutorials.
YouTubeMalware / Reverse EngineeringIntermediate
ToolsFree
MalwareBazaar
Community malware-sample repository for research and detection.
abuse.chMalware / Reverse EngineeringIntermediate
Books / ReadingFree
Building Secure and Reliable Systems
Free Google SRE book on designing, implementing, and maintaining secure systems.
TheoryAdvanced
GoogleSecurity EngineeringProfessional
DocsFree
Awesome Security
Broad curated list of security tools, references, and learning resources.
Theory
GitHubSecurity EngineeringIntermediate
LabsFree
flAWS Challenge
Guided AWS security challenge teaching common cloud misconfigurations step by step.
Hands-onNeeds lab
flaws.cloudCloud SecurityIntermediate
LabsFree
CloudGoat
Vulnerable-by-design AWS deployment tool for practicing cloud attack scenarios.
Hands-onNeeds lab
Rhino Security LabsCloud SecurityIntermediate
DocsFree
Hacking the Cloud
Encyclopedia of offensive techniques and TTPs across AWS, Azure, and GCP.
Theory
Hacking the CloudCloud SecurityIntermediate
DocsFree
FAIR Institute
Quantitative risk analysis model (Factor Analysis of Information Risk) and supporting resources.
Theory
FAIR InstituteGRCIntermediate
DocsFree
ISO/IEC 27001
Overview of the international standard for information security management systems.
Theory
ISOGRCIntermediate