/resources

A curated list of different pentesting resources

Pentesting Learning Resources

Here, I have a created curated list for learning and exploring the world of Pentesting. This is for everyone and anyone who need's a headsup, or wants to get more clearer on certain topics.

Also play CTF's as they allow you to utilize your hacking skills legally in a more controlled and protected environment.

Also, I highly recommend to start by reading a article asking a question: So you want to be a web security researcher?

Also, don't forget to check out my blog or say hi to me on my Twitter!


Web Application

  1. TryHackMe
  2. Pentesterlab
  3. PortSwigger's Web Security Academy
  4. HackTheBox
  5. RootMe
  6. HackThisSite
  7. Hacker101
  8. PentesterAcademy
  9. The Offensive Labs
  10. Cybrary
  11. INE
  12. Damn Vulnerable Web Application
  13. Xtreme Vulnerable Web Application
  14. BWAPP
  15. OWASP JuiceShop
  16. OWASP WebGoat
  17. OWASP Attacks
  18. OWASP Vulnerabilities
  19. OWASP Vulnerable Web Application
  20. HackTricks
  21. Awesome Web Security
  22. Awesome Web Hacking
  23. #web-security
  24. Stanford Web Security
  25. James Kettle's hackxor

    Video Content

  26. Stanford Web Security
  27. LiveOverflow Web Hacking
  28. PwnFunction Web Security
  29. Hussen Nasser Web Security
  30. Computerphile
  31. List of all Important Video Resources for Web Application Testing

    Books

  32. Web Hacking 101
  33. Web Application Security, A Beginner's Guide
  34. The Web Application Hacker's Handbook
  35. The Book of Secret Knowledge