diff --git a/src/data/roadmaps/cyber-security/content/acl@35oCRzhzpVfitQPL4K9KC.md b/src/data/roadmaps/cyber-security/content/acl@35oCRzhzpVfitQPL4K9KC.md index 40a5bc8c6..d4f86a1e1 100644 --- a/src/data/roadmaps/cyber-security/content/acl@35oCRzhzpVfitQPL4K9KC.md +++ b/src/data/roadmaps/cyber-security/content/acl@35oCRzhzpVfitQPL4K9KC.md @@ -2,7 +2,7 @@ An Access Control List (ACL) is a security mechanism used to define which users or system processes are granted access to objects, such as files, directories, or network resources, and what operations they can perform on those objects. ACLs function by maintaining a list of permissions attached to each object, specifying the access rights of various entities—like users, groups, or network traffic—thereby providing fine-grained control over who can read, write, execute, or modify the resources. This method is essential in enforcing security policies, reducing unauthorized access, and ensuring that only legitimate users can interact with sensitive data or systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Access Control List: Definition, Types & Usages](https://www.okta.com/uk/identity-101/access-control-list/) - [@video@Access Control Lists](https://www.youtube.com/watch?v=IwLyr0mKK1w) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/acls@8JM95sonFUhZCdaynUA_M.md b/src/data/roadmaps/cyber-security/content/acls@8JM95sonFUhZCdaynUA_M.md index fbef0dbd6..9848cbf0e 100644 --- a/src/data/roadmaps/cyber-security/content/acls@8JM95sonFUhZCdaynUA_M.md +++ b/src/data/roadmaps/cyber-security/content/acls@8JM95sonFUhZCdaynUA_M.md @@ -2,7 +2,7 @@ An Access Control List (ACL) is a security mechanism used to define which users or system processes are granted access to objects, such as files, directories, or network resources, and what operations they can perform on those objects. ACLs function by maintaining a list of permissions attached to each object, specifying the access rights of various entities—like users, groups, or network traffic—thereby providing fine-grained control over who can read, write, execute, or modify the resources. This method is essential in enforcing security policies, reducing unauthorized access, and ensuring that only legitimate users can interact with sensitive data or systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Access Control List: Definition, Types & Usages](https://www.okta.com/uk/identity-101/access-control-list/) - [@video@Access Control Lists](https://www.youtube.com/watch?v=IwLyr0mKK1w) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/antimalware@9QtY1hMJ7NKLFztYK-mHY.md b/src/data/roadmaps/cyber-security/content/antimalware@9QtY1hMJ7NKLFztYK-mHY.md index b9c2abb9e..374a0fe6c 100644 --- a/src/data/roadmaps/cyber-security/content/antimalware@9QtY1hMJ7NKLFztYK-mHY.md +++ b/src/data/roadmaps/cyber-security/content/antimalware@9QtY1hMJ7NKLFztYK-mHY.md @@ -2,8 +2,8 @@ Anti-malware is a type of software designed to detect, prevent, and remove malicious software, such as viruses, worms, trojans, ransomware, and spyware, from computer systems. By continuously scanning files, applications, and incoming data, anti-malware solutions protect devices from a wide range of threats that can compromise system integrity, steal sensitive information, or disrupt operations. Advanced anti-malware programs utilize real-time monitoring, heuristic analysis, and behavioral detection techniques to identify and neutralize both known and emerging threats, ensuring that systems remain secure against evolving cyber attacks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Anti-malware Definition](https://www.computertechreviews.com/definition/anti-malware/) -- [@video@How Does Antivirus and Antimalware Software Work?](https://www.youtube.com/watch?v=bTU1jbVXlmM) - [@article@What is Antimalware?](https://riskxchange.co/1006974/cybersecurity-what-is-anti-malware/) +- [@video@How Does Antivirus and Antimalware Software Work?](https://www.youtube.com/watch?v=bTU1jbVXlmM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/antivirus@3140n5prZYySsuBHjqGOJ.md b/src/data/roadmaps/cyber-security/content/antivirus@3140n5prZYySsuBHjqGOJ.md index fb8ee32b3..be0e6e002 100644 --- a/src/data/roadmaps/cyber-security/content/antivirus@3140n5prZYySsuBHjqGOJ.md +++ b/src/data/roadmaps/cyber-security/content/antivirus@3140n5prZYySsuBHjqGOJ.md @@ -2,7 +2,7 @@ Antivirus software is a specialized program designed to detect, prevent, and remove malicious software, such as viruses, worms, and trojans, from computer systems. It works by scanning files and programs for known malware signatures, monitoring system behavior for suspicious activity, and providing real-time protection against potential threats. Regular updates are essential for antivirus software to recognize and defend against the latest threats. While it is a critical component of cybersecurity, antivirus solutions are often part of a broader security strategy that includes firewalls, anti-malware tools, and user education to protect against a wide range of cyber threats. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is an Antivirus and how does it keep us safe?](https://www.youtube.com/watch?v=jW626WMWNAE) -- [@article@What is Antivirus Software?](https://www.webroot.com/gb/en/resources/tips-articles/what-is-anti-virus-software) \ No newline at end of file +- [@article@What is Antivirus Software?](https://www.webroot.com/gb/en/resources/tips-articles/what-is-anti-virus-software) +- [@video@What is an Antivirus and how does it keep us safe?](https://www.youtube.com/watch?v=jW626WMWNAE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/anyrun@GZHFR43UzN0WIIxGKZOdX.md b/src/data/roadmaps/cyber-security/content/anyrun@GZHFR43UzN0WIIxGKZOdX.md index 8166e32b0..74b598e42 100644 --- a/src/data/roadmaps/cyber-security/content/anyrun@GZHFR43UzN0WIIxGKZOdX.md +++ b/src/data/roadmaps/cyber-security/content/anyrun@GZHFR43UzN0WIIxGKZOdX.md @@ -2,7 +2,7 @@ ANY.RUN is an interactive online malware analysis platform that allows users to safely execute and analyze suspicious files and URLs in a controlled, virtualized environment. This sandbox service provides real-time insights into the behavior of potentially malicious software, such as how it interacts with the system, what files it modifies, and what network connections it attempts to make. Users can observe and control the analysis process, making it a valuable tool for cybersecurity professionals to identify and understand new threats, assess their impact, and develop appropriate countermeasures. ANY.RUN is particularly useful for dynamic analysis, enabling a deeper understanding of malware behavior in real-time. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Any.run](https://any.run/) - [@video@Malware analysis with ANY.RUN](https://www.youtube.com/watch?v=QH_u7DHKzzI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/apt@l0BvDtwWoRSEjm6O0WDPy.md b/src/data/roadmaps/cyber-security/content/apt@l0BvDtwWoRSEjm6O0WDPy.md index 4282cdf5e..82bbdc310 100644 --- a/src/data/roadmaps/cyber-security/content/apt@l0BvDtwWoRSEjm6O0WDPy.md +++ b/src/data/roadmaps/cyber-security/content/apt@l0BvDtwWoRSEjm6O0WDPy.md @@ -2,7 +2,7 @@ Advanced Persistent Threats, or APTs, are a class of cyber threats characterized by their persistence over a long period, extensive resources, and high level of sophistication. Often associated with nation-state actors, organized cybercrime groups, and well-funded hackers, APTs are primarily focused on targeting high-value assets, such as critical infrastructure, financial systems, and government agencies. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is an Advanced Persistent Threat?](https://www.youtube.com/watch?v=sGthMsDlqew) -- [@article@Advanced Persistent Threat (APT)](https://www.crowdstrike.com/cybersecurity-101/advanced-persistent-threat-apt/) \ No newline at end of file +- [@article@Advanced Persistent Threat (APT)](https://www.crowdstrike.com/cybersecurity-101/advanced-persistent-threat-apt/) +- [@video@What is an Advanced Persistent Threat?](https://www.youtube.com/watch?v=sGthMsDlqew) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/arp@M52V7hmG4ORf4TIVw3W3J.md b/src/data/roadmaps/cyber-security/content/arp@M52V7hmG4ORf4TIVw3W3J.md index 42a51e4f0..deb1b360a 100644 --- a/src/data/roadmaps/cyber-security/content/arp@M52V7hmG4ORf4TIVw3W3J.md +++ b/src/data/roadmaps/cyber-security/content/arp@M52V7hmG4ORf4TIVw3W3J.md @@ -6,8 +6,8 @@ When one device on a LAN wants to communicate with another, it needs to know the Once the requesting device receives the MAC address, it updates its ARP cache—a table that stores IP-to-MAC address mappings—allowing it to send data directly to the correct hardware address. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@ARP - Wikipedia](https://en.wikipedia.org/wiki/Address_Resolution_Protocol) -- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) -- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) \ No newline at end of file +- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) +- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/arp@fzdZF-nzIL69kaA7kwOCn.md b/src/data/roadmaps/cyber-security/content/arp@fzdZF-nzIL69kaA7kwOCn.md index 7e2610bf2..60d3b10ec 100644 --- a/src/data/roadmaps/cyber-security/content/arp@fzdZF-nzIL69kaA7kwOCn.md +++ b/src/data/roadmaps/cyber-security/content/arp@fzdZF-nzIL69kaA7kwOCn.md @@ -2,8 +2,8 @@ ARP is a protocol used by the Internet Protocol (IP) to map an IP address to a physical address, also known as a Media Access Control (MAC) address. ARP is essential for routing data between devices in a Local Area Network (LAN) as it allows for the translation of IP addresses to specific hardware on the network. When a device wants to communicate with another device on the same LAN, it needs to determine the corresponding MAC address for the target IP address. ARP helps in this process by broadcasting an ARP request containing the target IP address. All devices within the broadcast domain receive this ARP request and compare the target IP address with their own IP address. If a match is found, the device with the matching IP address sends an ARP reply which contains its MAC address. The device that initiated the ARP request can now update its ARP cache (a table that stores IP-to-MAC mappings) with the new information, and then proceed to send data to the target's MAC address. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@ARP - Wikipedia](https://en.wikipedia.org/wiki/Address_Resolution_Protocol) -- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) -- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) \ No newline at end of file +- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) +- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/arp@hkO3Ga6KctKODr4gos6qX.md b/src/data/roadmaps/cyber-security/content/arp@hkO3Ga6KctKODr4gos6qX.md index 7e2610bf2..60d3b10ec 100644 --- a/src/data/roadmaps/cyber-security/content/arp@hkO3Ga6KctKODr4gos6qX.md +++ b/src/data/roadmaps/cyber-security/content/arp@hkO3Ga6KctKODr4gos6qX.md @@ -2,8 +2,8 @@ ARP is a protocol used by the Internet Protocol (IP) to map an IP address to a physical address, also known as a Media Access Control (MAC) address. ARP is essential for routing data between devices in a Local Area Network (LAN) as it allows for the translation of IP addresses to specific hardware on the network. When a device wants to communicate with another device on the same LAN, it needs to determine the corresponding MAC address for the target IP address. ARP helps in this process by broadcasting an ARP request containing the target IP address. All devices within the broadcast domain receive this ARP request and compare the target IP address with their own IP address. If a match is found, the device with the matching IP address sends an ARP reply which contains its MAC address. The device that initiated the ARP request can now update its ARP cache (a table that stores IP-to-MAC mappings) with the new information, and then proceed to send data to the target's MAC address. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@ARP - Wikipedia](https://en.wikipedia.org/wiki/Address_Resolution_Protocol) -- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) -- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) \ No newline at end of file +- [@article@What is Address Resolution Protocol?](https://www.fortinet.com/resources/cyberglossary/what-is-arp) +- [@video@ARP Explained](https://www.youtube.com/watch?v=cn8Zxh9bPio) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/attck@auR7fNyd77W2UA-PjXeJS.md b/src/data/roadmaps/cyber-security/content/attck@auR7fNyd77W2UA-PjXeJS.md index 3f6451a06..679822b8a 100644 --- a/src/data/roadmaps/cyber-security/content/attck@auR7fNyd77W2UA-PjXeJS.md +++ b/src/data/roadmaps/cyber-security/content/attck@auR7fNyd77W2UA-PjXeJS.md @@ -2,8 +2,8 @@ MITRE ATT&CK (Adversarial Tactics, Techniques, and Common Knowledge) is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. It provides a comprehensive matrix of attack methods used by threat actors, organized into tactics like initial access, execution, persistence, and exfiltration. This framework is widely used by cybersecurity professionals for threat modeling, improving defensive capabilities, and developing more effective security strategies. ATT&CK helps organizations understand attacker behavior, assess their security posture, and prioritize defenses against the most relevant threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@MITRE ATT&CK®](https://attack.mitre.org/) - [@video@MITRE ATT&CK Framework](https://www.youtube.com/watch?v=Yxv1suJYMI8) -- [@video@Introduction To The MITRE ATT&CK Framework](https://www.youtube.com/watch?v=LCec9K0aAkM) +- [@video@Introduction To The MITRE ATT&CK Framework](https://www.youtube.com/watch?v=LCec9K0aAkM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/authentication-vs-authorization@WG7DdsxESm31VcLFfkVTz.md b/src/data/roadmaps/cyber-security/content/authentication-vs-authorization@WG7DdsxESm31VcLFfkVTz.md index 12c24017f..e0f6f2918 100644 --- a/src/data/roadmaps/cyber-security/content/authentication-vs-authorization@WG7DdsxESm31VcLFfkVTz.md +++ b/src/data/roadmaps/cyber-security/content/authentication-vs-authorization@WG7DdsxESm31VcLFfkVTz.md @@ -4,11 +4,11 @@ **Authorization** comes into play after the authentication process is complete. It involves granting or denying access to a resource, based on the authenticated user's privileges. Authorization determines what actions the authenticated user or entity is allowed to perform within a system or application. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Two-factor authentication (2FA)](https://authy.com/what-is-2fa/) - [@article@Biometrics (fingerprint, facial recognition, etc.)](https://me-en.kaspersky.com/resource-center/definitions/biometrics) - [@article@Security tokens or certificates](https://www.comodo.com/e-commerce/ssl-certificates/certificate.php) - [@article@Role-based access control (RBAC)](https://en.wikipedia.org/wiki/Role-based_access_control) - [@article@Access Control Lists (ACLs)](https://en.wikipedia.org/wiki/Access-control_list) -- [@article@Attribute-based access control (ABAC)](https://en.wikipedia.org/wiki/Attribute-based_access_control) +- [@article@Attribute-based access control (ABAC)](https://en.wikipedia.org/wiki/Attribute-based_access_control) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/autopsy@bIwpjIoxSUZloxDuQNpMu.md b/src/data/roadmaps/cyber-security/content/autopsy@bIwpjIoxSUZloxDuQNpMu.md index 845a9419b..92c51ebd6 100644 --- a/src/data/roadmaps/cyber-security/content/autopsy@bIwpjIoxSUZloxDuQNpMu.md +++ b/src/data/roadmaps/cyber-security/content/autopsy@bIwpjIoxSUZloxDuQNpMu.md @@ -2,7 +2,7 @@ Autopsy is a versatile and powerful open-source digital forensics platform that is primarily used for incident response, cyber security investigations, and data recovery. As an investigator, you can utilize Autopsy to quickly and efficiently analyze a compromised system, extract crucial artifacts, and generate comprehensive reports. Integrated with The Sleuth Kit and other plug-ins, Autopsy allows examiners to automate tasks and dig deep into a system's structure to discover the root cause of an incident. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Autopsy](https://www.autopsy.com/) - [@video@Disk analysis with Autopsy](https://www.youtube.com/watch?v=o6boK9dG-Lc&t=236s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/aws@0LztOTc3NG3OujCVwlcVU.md b/src/data/roadmaps/cyber-security/content/aws@0LztOTc3NG3OujCVwlcVU.md index fb5d5a631..79e1c122a 100644 --- a/src/data/roadmaps/cyber-security/content/aws@0LztOTc3NG3OujCVwlcVU.md +++ b/src/data/roadmaps/cyber-security/content/aws@0LztOTc3NG3OujCVwlcVU.md @@ -2,10 +2,10 @@ Amazon Web Services (AWS) is a leading cloud computing platform provided by Amazon. Launched in 2006, AWS offers an extensive range of on-demand IT services, such as computing power, storage, databases, networking, and security, which enable organizations to develop, deploy, and scale applications and infrastructure quickly and cost-effectively. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated AWS Roadmap](https://roadmap.sh/aws) +- [@course@AWS Complete Tutorial](https://www.youtube.com/watch?v=B8i49C8fC3E) - [@official@AWS](https://aws.amazon.com) - [@article@How to create an AWS account](https://grapplingdev.com/tutorials/how-to-create-aws-account) -- [@video@AWS Overview](https://www.youtube.com/watch?v=a9__D53WsUs) -- [@course@AWS Complete Tutorial](https://www.youtube.com/watch?v=B8i49C8fC3E) +- [@video@AWS Overview](https://www.youtube.com/watch?v=a9__D53WsUs) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/azure@GklBi7Qx1akN_cS9UMrha.md b/src/data/roadmaps/cyber-security/content/azure@GklBi7Qx1akN_cS9UMrha.md index 74e9b7d25..cc55364a8 100644 --- a/src/data/roadmaps/cyber-security/content/azure@GklBi7Qx1akN_cS9UMrha.md +++ b/src/data/roadmaps/cyber-security/content/azure@GklBi7Qx1akN_cS9UMrha.md @@ -2,7 +2,7 @@ Azure is Microsoft's comprehensive cloud computing platform that offers a wide range of services for building, deploying, and managing applications. It provides infrastructure as a service (IaaS), platform as a service (PaaS), and software as a service (SaaS) solutions, supporting various programming languages, tools, and frameworks. Azure's services include virtual machines, storage, databases, AI and machine learning, IoT, and more. It offers global data center coverage, integrated DevOps tools, and robust security features, making it a versatile platform for businesses of all sizes to innovate, scale, and transform their operations in the cloud. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Azure](https://azure.microsoft.com) - [@video@Azure DevOps Tutorial for Beginners](https://www.youtube.com/watch?v=4BibQ69MD8c) diff --git a/src/data/roadmaps/cyber-security/content/bash@tao0Bb_JR0Ubl62HO8plp.md b/src/data/roadmaps/cyber-security/content/bash@tao0Bb_JR0Ubl62HO8plp.md index 6d1889bf7..e9c0522a7 100644 --- a/src/data/roadmaps/cyber-security/content/bash@tao0Bb_JR0Ubl62HO8plp.md +++ b/src/data/roadmaps/cyber-security/content/bash@tao0Bb_JR0Ubl62HO8plp.md @@ -2,9 +2,9 @@ Bash (Bourne Again Shell) is a widely-used Unix shell and scripting language that acts as a command-line interface for executing commands and organizing files on your computer. It allows users to interact with the system's operating system by typing text commands, serving as an alternative to the graphical user interface (GUI). Bash, created as a free and improved version of the original Bourne Shell (`sh`), is the default shell in many Unix-based systems, including Linux, macOS, and the Windows Subsystem for Linux (WSL). -Learn more from the following resources: +Visit the following resources to learn more: -- [@official@Bash](https://www.gnu.org/software/bash/) -- [@video@Bash in 100 Seconds](https://www.youtube.com/watch?v=I4EWvMFj37g) - [@course@Beginners Guide To The Bash Terminal](https://www.youtube.com/watch?v=oxuRxtrO2Ag) - [@course@Start learning bash](https://linuxhandbook.com/bash/) +- [@official@Bash](https://www.gnu.org/software/bash/) +- [@video@Bash in 100 Seconds](https://www.youtube.com/watch?v=I4EWvMFj37g) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-and-concepts-of-threat-hunting@_x3BgX93N-Pt1_JK7wk0p.md b/src/data/roadmaps/cyber-security/content/basics-and-concepts-of-threat-hunting@_x3BgX93N-Pt1_JK7wk0p.md index 90747a916..e2aed5f69 100644 --- a/src/data/roadmaps/cyber-security/content/basics-and-concepts-of-threat-hunting@_x3BgX93N-Pt1_JK7wk0p.md +++ b/src/data/roadmaps/cyber-security/content/basics-and-concepts-of-threat-hunting@_x3BgX93N-Pt1_JK7wk0p.md @@ -2,7 +2,7 @@ Threat hunting is a proactive approach to cybersecurity where security professionals actively search for hidden threats or adversaries that may have bypassed traditional security measures, such as firewalls and intrusion detection systems. Rather than waiting for automated tools to flag suspicious activity, threat hunters use a combination of human intuition, threat intelligence, and advanced analysis techniques to identify indicators of compromise (IoCs) and potential threats within a network or system. The process involves several key concepts, starting with a **hypothesis**, where a hunter develops a theory about potential vulnerabilities or attack vectors that could be exploited. They then conduct a **search** through logs, traffic data, or endpoint activity to look for anomalies or patterns that may indicate malicious behavior. **Data analysis** is central to threat hunting, as hunters analyze vast amounts of network and system data to uncover subtle signs of attacks or compromises. If threats are found, the findings lead to **detection and mitigation**, allowing the security team to contain the threat, remove malicious entities, and prevent similar incidents in the future. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Threat Hunting](https://www.ibm.com/topics/threat-hunting) - [@article@What is Threat Hunting? Threat Hunting Types and Techniques](https://www.fortinet.com/resources/cyberglossary/threat-hunting) diff --git a/src/data/roadmaps/cyber-security/content/basics-of-computer-networking@T0aU8ZQGShmF9uXhWY4sD.md b/src/data/roadmaps/cyber-security/content/basics-of-computer-networking@T0aU8ZQGShmF9uXhWY4sD.md index 3ab28b3bb..aaace8c6a 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-computer-networking@T0aU8ZQGShmF9uXhWY4sD.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-computer-networking@T0aU8ZQGShmF9uXhWY4sD.md @@ -2,7 +2,7 @@ Computer networking is the practice of connecting computers and devices to share data and resources. It involves the use of protocols like TCP/IP for communication, hardware such as routers and switches for directing traffic, and various network topologies (e.g., star, mesh, bus) for organizing connections. Networks can be categorized by size and scope, from small local area networks (LANs) to wide area networks (WANs) that span large geographical areas. Key concepts include IP addressing, subnetting, DNS for name resolution, and network security measures. Understanding networking basics is crucial for managing data flow, troubleshooting connectivity issues, and ensuring efficient communication in modern computing environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Networking basics - What you need to know](https://www.cisco.com/c/en/us/solutions/small-business/resource-center/networking/networking-basics.html) - [@video@Computer Networking in 100 seconds](https://www.youtube.com/watch?v=keeqnciDVOo) diff --git a/src/data/roadmaps/cyber-security/content/basics-of-ids-and-ips@FJsEBOFexbDyAj86XWBCc.md b/src/data/roadmaps/cyber-security/content/basics-of-ids-and-ips@FJsEBOFexbDyAj86XWBCc.md index 77d3dc49d..41c4f4ed6 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-ids-and-ips@FJsEBOFexbDyAj86XWBCc.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-ids-and-ips@FJsEBOFexbDyAj86XWBCc.md @@ -2,16 +2,18 @@ When it comes to cybersecurity, detecting and preventing intrusions is crucial for protecting valuable information systems and networks. In this section, we'll discuss the basics of Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS) to help you better understand their function and importance in your overall cybersecurity strategy. -## What is Intrusion Detection System (IDS)? +What is Intrusion Detection System (IDS)? +----------------------------------------- An Intrusion Detection System (IDS) is a critical security tool designed to monitor and analyze network traffic or host activities for any signs of malicious activity, policy violations, or unauthorized access attempts. Once a threat or anomaly is identified, the IDS raises an alert to the security administrator for further investigation and possible actions. -## What is Intrusion Prevention System (IPS)? +What is Intrusion Prevention System (IPS)? +------------------------------------------ An Intrusion Prevention System (IPS) is an advanced security solution closely related to IDS. While an IDS mainly focuses on detecting and alerting about intrusions, an IPS takes it a step further and actively works to prevent the attacks. It monitors, analyzes, and takes pre-configured automatic actions based on suspicious activities, such as blocking malicious traffic, resetting connections, or dropping malicious packets. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Intrusion Prevention System (IPS)](https://www.youtube.com/watch?v=7QuYupuic3Q) - [@article@What is an Intrusion Prevention System?](https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-prevention-system-ips) - [@article@What is Intrusion Detection Systems (IDS)](https://www.fortinet.com/resources/cyberglossary/intrusion-detection-system) +- [@video@Intrusion Prevention System (IPS)](https://www.youtube.com/watch?v=7QuYupuic3Q) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-of-nas-and-san@umbMBQ0yYmB5PgWfY6zfO.md b/src/data/roadmaps/cyber-security/content/basics-of-nas-and-san@umbMBQ0yYmB5PgWfY6zfO.md index 25693d48c..bf8ca2d95 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-nas-and-san@umbMBQ0yYmB5PgWfY6zfO.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-nas-and-san@umbMBQ0yYmB5PgWfY6zfO.md @@ -4,8 +4,8 @@ Network Attached Storage (NAS) and Storage Area Network (SAN) are both technolog SAN, on the other hand, is a high-performance, specialized network designed to provide block-level storage, which means it acts as a direct-attached storage device to servers. SAN uses protocols such as Fibre Channel or iSCSI and is typically employed in large enterprise environments where fast, high-capacity, and low-latency storage is critical for applications like databases and virtualized systems. While NAS focuses on file sharing across a network, SAN is designed for more complex, high-speed data management, enabling servers to access storage as if it were directly connected to them. Both NAS and SAN are vital components of modern data storage infrastructure but are chosen based on the specific performance, scalability, and management needs of the organization. -Learn more from the following resources: +Visit the following resources to learn more: +- [@article@NAS vs SAN - What are the differences?](https://www.backblaze.com/blog/whats-the-diff-nas-vs-san/) - [@video@What is a NAS](https://www.youtube.com/watch?v=ZwhT-KI16jo) -- [@video@What is a Storage Area Network](https://www.youtube.com/watch?v=7eGw4vhyeTA) -- [@article@NAS vs SAN - What are the differences?](https://www.backblaze.com/blog/whats-the-diff-nas-vs-san/) \ No newline at end of file +- [@video@What is a Storage Area Network](https://www.youtube.com/watch?v=7eGw4vhyeTA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-of-reverse-engineering@uoGA4T_-c-2ip_zfEUcJJ.md b/src/data/roadmaps/cyber-security/content/basics-of-reverse-engineering@uoGA4T_-c-2ip_zfEUcJJ.md index c671b90f6..20022f1af 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-reverse-engineering@uoGA4T_-c-2ip_zfEUcJJ.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-reverse-engineering@uoGA4T_-c-2ip_zfEUcJJ.md @@ -2,7 +2,7 @@ Reverse engineering is the process of deconstructing a system, software, or hardware to understand its internal workings, design, and functionality without having access to its source code or original documentation. In cybersecurity, reverse engineering is often used to analyze malware or software vulnerabilities to uncover how they operate, allowing security professionals to develop defenses, patches, or detection methods. This involves breaking down the binary code, disassembling it into machine code, and then interpreting it to understand the logic, behavior, and intent behind the program. Reverse engineering can also be used in hardware to investigate a device's design or performance, or in software development for compatibility, debugging, or enhancing legacy systems. The process typically includes static analysis, where the code is examined without execution, and dynamic analysis, where the program is executed in a controlled environment to observe its runtime behavior. The insights gained through reverse engineering are valuable for improving security, fixing bugs, or adapting systems for different uses. However, it’s important to be aware of the legal and ethical boundaries, as reverse engineering certain software or hardware can violate intellectual property rights. -Learn more from the following resources: +Visit the following resources to learn more: - [@course@Reverse Engineering for Everyone!](https://0xinfection.github.io/reversing/) - [@video@What is reverse engineering?](https://www.youtube.com/watch?v=gh2RXE9BIN8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-of-subnetting@E8Z7qFFW-I9ivr0HzoXCq.md b/src/data/roadmaps/cyber-security/content/basics-of-subnetting@E8Z7qFFW-I9ivr0HzoXCq.md index 0b18005db..73e13edca 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-subnetting@E8Z7qFFW-I9ivr0HzoXCq.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-subnetting@E8Z7qFFW-I9ivr0HzoXCq.md @@ -2,7 +2,7 @@ Subnetting is a technique used in computer networking to divide a large network into smaller, more manageable sub-networks, or "subnets." It enhances network performance and security by reducing broadcast traffic and enabling better control over IP address allocation. Each subnet has its own range of IP addresses, which allows network administrators to optimize network traffic and reduce congestion by isolating different sections of a network. In subnetting, an IP address is split into two parts: the network portion and the host portion. The network portion identifies the overall network, while the host portion identifies individual devices within that network. Subnet masks are used to define how much of the IP address belongs to the network and how much is reserved for hosts. By adjusting the subnet mask, administrators can create multiple subnets from a single network, with each subnet having a limited number of devices. Subnetting is particularly useful for large organizations, allowing them to efficiently manage IP addresses, improve security by segmenting different parts of the network, and control traffic flow by minimizing unnecessary data transmissions between segments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Networking Basics: What is IPv4 Subnetting?](https://www.cbtnuggets.com/blog/technology/networking/networking-basics-what-is-ipv4-subnetting) - [@video@Subnetting](https://www.youtube.com/playlist?list=PLIhvC56v63IKrRHh3gvZZBAGvsvOhwrRF) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-of-threat-intel-osint@wN5x5pY53B8d0yopa1z8F.md b/src/data/roadmaps/cyber-security/content/basics-of-threat-intel-osint@wN5x5pY53B8d0yopa1z8F.md index fd03e1d9a..62302eea6 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-threat-intel-osint@wN5x5pY53B8d0yopa1z8F.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-threat-intel-osint@wN5x5pY53B8d0yopa1z8F.md @@ -2,8 +2,8 @@ Threat Intelligence (Threat Intel) and Open-Source Intelligence (OSINT) are both critical components in cybersecurity that help organizations stay ahead of potential threats. Threat Intelligence refers to the collection, analysis, and dissemination of information about potential or current attacks targeting an organization. This intelligence typically includes details on emerging threats, attack patterns, malicious IP addresses, and indicators of compromise (IoCs), helping security teams anticipate, prevent, or mitigate cyberattacks. Threat Intel can be sourced from both internal data (such as logs or past incidents) and external feeds, and it helps in understanding the tactics, techniques, and procedures (TTPs) of adversaries. OSINT, a subset of Threat Intel, involves gathering publicly available information from open sources to assess and monitor threats. These sources include websites, social media, forums, news articles, and other publicly accessible platforms. OSINT is often used for reconnaissance to identify potential attack vectors, compromised credentials, or leaks of sensitive data. It’s also a valuable tool in tracking threat actors, as they may leave traces in forums or other public spaces. Both Threat Intel and OSINT enable organizations to be more proactive in their cybersecurity strategies by identifying vulnerabilities, understanding attacker behavior, and implementing timely defenses based on actionable insights. -Learn more from the following resources: +Visit the following resources to learn more: +- [@course@Open-Source Intelligence (OSINT) in 5 Hours](https://www.youtube.com/watch?v=qwA6MmbeGNo&t=457s) - [@official@OSINT Framework](https://osintframework.com/) -- [@article@Threat Intelligence](https://www.microsoft.com/en-us/security/blog/topic/threat-intelligence/) -- [@course@Open-Source Intelligence (OSINT) in 5 Hours](https://www.youtube.com/watch?v=qwA6MmbeGNo&t=457s) \ No newline at end of file +- [@article@Threat Intelligence](https://www.microsoft.com/en-us/security/blog/topic/threat-intelligence/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/basics-of-vulnerability-management@lcxAXtO6LoGd85nOFnLo8.md b/src/data/roadmaps/cyber-security/content/basics-of-vulnerability-management@lcxAXtO6LoGd85nOFnLo8.md index f7629b922..921da4bee 100644 --- a/src/data/roadmaps/cyber-security/content/basics-of-vulnerability-management@lcxAXtO6LoGd85nOFnLo8.md +++ b/src/data/roadmaps/cyber-security/content/basics-of-vulnerability-management@lcxAXtO6LoGd85nOFnLo8.md @@ -1,13 +1,13 @@ # Basics of Vulnerability Management -Vulnerability management is the process of identifying, evaluating, prioritizing, and mitigating security vulnerabilities in an organization's systems, applications, and networks. It is a continuous, proactive approach to safeguarding digital assets by addressing potential weaknesses that could be exploited by attackers. The process begins with **vulnerability scanning**, where tools are used to detect known vulnerabilities by analyzing software, configurations, and devices. +Vulnerability management is the process of identifying, evaluating, prioritizing, and mitigating security vulnerabilities in an organization's systems, applications, and networks. It is a continuous, proactive approach to safeguarding digital assets by addressing potential weaknesses that could be exploited by attackers. The process begins with **vulnerability scanning**, where tools are used to detect known vulnerabilities by analyzing software, configurations, and devices. Once vulnerabilities are identified, they are **assessed and prioritized** based on factors such as severity, potential impact, and exploitability. Organizations typically use frameworks like CVSS (Common Vulnerability Scoring System) to assign risk scores to vulnerabilities, helping them focus on the most critical ones first. Next, **remediation** is carried out through patching, configuration changes, or other fixes. In some cases, mitigation may involve applying temporary workarounds until a full patch is available. Finally, continuous **monitoring and reporting** ensure that new vulnerabilities are swiftly identified and addressed, maintaining the organization's security posture. Vulnerability management is key to reducing the risk of exploitation and minimizing the attack surface in today's complex IT environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Vulnerability Management? - Rapid7](https://www.rapid7.com/fundamentals/vulnerability-management-and-scanning/) - [@article@What is Vulnerability Management? - CrowdStrike](https://www.crowdstrike.com/cybersecurity-101/vulnerability-management/) -- [@video@Vulnerability Management explained by experts](https://www.youtube.com/watch?v=RE6_Lo2wSIg) +- [@video@Vulnerability Management explained by experts](https://www.youtube.com/watch?v=RE6_Lo2wSIg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/blue--red--purple-teams@7tDxTcKJNAUxbHLPCnPFO.md b/src/data/roadmaps/cyber-security/content/blue--red--purple-teams@7tDxTcKJNAUxbHLPCnPFO.md index 00d80dd26..007a827ca 100644 --- a/src/data/roadmaps/cyber-security/content/blue--red--purple-teams@7tDxTcKJNAUxbHLPCnPFO.md +++ b/src/data/roadmaps/cyber-security/content/blue--red--purple-teams@7tDxTcKJNAUxbHLPCnPFO.md @@ -2,7 +2,7 @@ In the context of cybersecurity, Blue Team, Red Team, and Purple Team are terms used to describe different roles and methodologies employed to ensure the security of an organization or system. Let's explore each one in detail. In cybersecurity, Blue Team and Red Team refer to opposing groups that work together to improve an organization's security posture. The Blue Team represents defensive security personnel who protect systems and networks from attacks, while the Red Team simulates real-world adversaries to test the Blue Team's defenses. Purple Team bridges the gap between the two, facilitating collaboration and knowledge sharing to enhance overall security effectiveness. This approach combines the defensive strategies of the Blue Team with the offensive tactics of the Red Team, creating a more comprehensive and dynamic security framework that continuously evolves to address emerging threats and vulnerabilities. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Blue Team?](https://www.checkpoint.com/cyber-hub/cyber-security/what-is-a-blue-team/) - [@article@What is Red Teaming?](https://www.ibm.com/think/topics/red-teaming) diff --git a/src/data/roadmaps/cyber-security/content/bluetooth@DbWf5LdqiByPiJa4xHtl_.md b/src/data/roadmaps/cyber-security/content/bluetooth@DbWf5LdqiByPiJa4xHtl_.md index f2a7f1186..df8349b2b 100644 --- a/src/data/roadmaps/cyber-security/content/bluetooth@DbWf5LdqiByPiJa4xHtl_.md +++ b/src/data/roadmaps/cyber-security/content/bluetooth@DbWf5LdqiByPiJa4xHtl_.md @@ -2,7 +2,7 @@ Bluetooth is a short-range wireless technology standard used for exchanging data between fixed and mobile devices over short distances. While it offers convenience for connecting peripherals and transferring information, it also presents several security concerns in the cybersecurity landscape. Bluetooth vulnerabilities can potentially allow attackers to intercept communications, execute malicious code, or gain unauthorized access to devices. Common attacks include bluejacking, bluesnarfing, and bluebugging. To mitigate these risks, cybersecurity professionals recommend regularly updating device firmware, using the latest Bluetooth protocols, enabling encryption, and turning off Bluetooth when not in use. Despite ongoing security improvements, Bluetooth remains an attack vector that requires vigilant monitoring and protection in both personal and enterprise environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Bluetooth in Cyber Security](https://www.zenarmor.com/docs/network-basics/what-is-bluetooth) -- [@video@Everything about Bluetooth Security](https://www.youtube.com/watch?v=i9mzl51ammA) +- [@video@Everything about Bluetooth Security](https://www.youtube.com/watch?v=i9mzl51ammA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/box@4Man3Bd-ySLFlAdxbLOHw.md b/src/data/roadmaps/cyber-security/content/box@4Man3Bd-ySLFlAdxbLOHw.md index e086abb68..a640acb11 100644 --- a/src/data/roadmaps/cyber-security/content/box@4Man3Bd-ySLFlAdxbLOHw.md +++ b/src/data/roadmaps/cyber-security/content/box@4Man3Bd-ySLFlAdxbLOHw.md @@ -2,7 +2,7 @@ Box is a popular cloud storage service that provides individuals and businesses with a platform to securely store, share, and access files and documents from any device. Box is known for its emphasis on security and collaboration features, making it an ideal choice for businesses who want a secure way to share and collaborate on files with their teams. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Box](https://www.box.com/en-gb/home) - [@video@Box Cloud Storage Review 2024](https://www.youtube.com/watch?v=ktNDLO1T96c) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/brute-force-vs-password-spray@Q0i-plPQkb_NIvOQBVaDd.md b/src/data/roadmaps/cyber-security/content/brute-force-vs-password-spray@Q0i-plPQkb_NIvOQBVaDd.md index 8c49c2e63..55b4f0a35 100644 --- a/src/data/roadmaps/cyber-security/content/brute-force-vs-password-spray@Q0i-plPQkb_NIvOQBVaDd.md +++ b/src/data/roadmaps/cyber-security/content/brute-force-vs-password-spray@Q0i-plPQkb_NIvOQBVaDd.md @@ -1,15 +1,17 @@ -# Brute Force vs Password Spray - -## What is Brute Force? - -Brute Force is a method of password cracking where an attacker systematically tries all possible combinations of characters until the correct password is found. This method is highly resource-intensive, as it involves attempting numerous password variations in a relatively short period of time. - -## What is Password Spray? - -Password Spray is a more targeted and stealthy method of password cracking where an attacker tries a small number of common passwords across many different accounts. Instead of bombarding a single account with numerous password attempts (as in brute force), password spraying involves using one or a few passwords against multiple accounts. - -Visit the following resources to learn more: - -- [@article@Brute-force vs. Password Spray Attack](https://www.inspark.nl/brute-force-vs-password-spray-attack-in-azure-sentinel/) -- [@article@What is Password Spraying?](https://www.techtarget.com/whatis/definition/password-spraying) -- [@article@What is a Brute-force Attack?](https://www.fortinet.com/resources/cyberglossary/brute-force-attack) +# Brute Force vs Password Spray + +What is Brute Force? +-------------------- + +Brute Force is a method of password cracking where an attacker systematically tries all possible combinations of characters until the correct password is found. This method is highly resource-intensive, as it involves attempting numerous password variations in a relatively short period of time. + +What is Password Spray? +----------------------- + +Password Spray is a more targeted and stealthy method of password cracking where an attacker tries a small number of common passwords across many different accounts. Instead of bombarding a single account with numerous password attempts (as in brute force), password spraying involves using one or a few passwords against multiple accounts. + +Visit the following resources to learn more: + +- [@article@Brute-force vs. Password Spray Attack](https://www.inspark.nl/brute-force-vs-password-spray-attack-in-azure-sentinel/) +- [@article@What is Password Spraying?](https://www.techtarget.com/whatis/definition/password-spraying) +- [@article@What is a Brute-force Attack?](https://www.fortinet.com/resources/cyberglossary/brute-force-attack) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/buffer-overflow@n8ZOZxNhlnw7DpzoXe_f_.md b/src/data/roadmaps/cyber-security/content/buffer-overflow@n8ZOZxNhlnw7DpzoXe_f_.md index 9e7c1f57b..dabbba49f 100644 --- a/src/data/roadmaps/cyber-security/content/buffer-overflow@n8ZOZxNhlnw7DpzoXe_f_.md +++ b/src/data/roadmaps/cyber-security/content/buffer-overflow@n8ZOZxNhlnw7DpzoXe_f_.md @@ -1,9 +1,9 @@ -# Buffer Overflow - -A Buffer Overflow is a type of vulnerability that occurs when a program or process attempts to write more data to a buffer—a temporary storage area in memory—than it can hold. This overflow can cause the extra data to overwrite adjacent memory locations, potentially leading to unintended behavior, crashes, or security breaches. - -Visit the following resources to learn more: - -- [@article@What Is Buffer Overflow?](https://www.fortinet.com/resources/cyberglossary/buffer-overflow) -- [@article@Buffer Overflow Attack](https://www.imperva.com/learn/application-security/buffer-overflow/) +# Buffer Overflow + +A Buffer Overflow is a type of vulnerability that occurs when a program or process attempts to write more data to a buffer—a temporary storage area in memory—than it can hold. This overflow can cause the extra data to overwrite adjacent memory locations, potentially leading to unintended behavior, crashes, or security breaches. + +Visit the following resources to learn more: + +- [@article@What Is Buffer Overflow?](https://www.fortinet.com/resources/cyberglossary/buffer-overflow) +- [@article@Buffer Overflow Attack](https://www.imperva.com/learn/application-security/buffer-overflow/) - [@video@Buffer Overflows Made Easy](https://www.youtube.com/watch?v=qSnPayW6F7U) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/bus@0DWh4WmLK_ENDuqQmQcu4.md b/src/data/roadmaps/cyber-security/content/bus@0DWh4WmLK_ENDuqQmQcu4.md index 34b9e9308..fbdf071d2 100644 --- a/src/data/roadmaps/cyber-security/content/bus@0DWh4WmLK_ENDuqQmQcu4.md +++ b/src/data/roadmaps/cyber-security/content/bus@0DWh4WmLK_ENDuqQmQcu4.md @@ -2,7 +2,7 @@ In the context of cybersecurity, a bus refers to a communication system that transfers data between components inside a computer or between computers. It's a critical part of computer architecture that can be vulnerable to various security threats. Attackers may attempt to exploit bus systems to intercept sensitive data, inject malicious code, or perform side-channel attacks. These vulnerabilities can exist at different levels, from the system bus connecting major computer components to expansion buses for peripheral devices. Securing bus communications involves implementing encryption, access controls, and monitoring for unusual activity. As buses play a crucial role in data transfer, protecting them is essential for maintaining the overall security and integrity of computer systems and networks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Bus in Computing](https://en.wikipedia.org/wiki/Bus_(computing)) - [@article@What is a Bus?](https://www.lenovo.com/gb/en/glossary/bus/?srsltid=AfmBOoocoXVvqdupLu13XAm0FZMOHjRtjnnCCFxa59tEa-bQwhiVhac2) diff --git a/src/data/roadmaps/cyber-security/content/c@8jj9hpe9jQIgCc8Txyw3O.md b/src/data/roadmaps/cyber-security/content/c@8jj9hpe9jQIgCc8Txyw3O.md index 080262d93..8bbb77d35 100644 --- a/src/data/roadmaps/cyber-security/content/c@8jj9hpe9jQIgCc8Txyw3O.md +++ b/src/data/roadmaps/cyber-security/content/c@8jj9hpe9jQIgCc8Txyw3O.md @@ -2,8 +2,8 @@ C++ is a widely-used, high-level programming language that evolved from the earlier C programming language. Developed by Bjarne Stroustrup in 1985 at Bell Labs, C++ provides object-oriented features and low-level memory manipulation, making it an essential language for many fields, including game development, high-performance systems, and cybersecurity. -Learn more form the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated C++ Roadmap](https://roadmap.sh/cpp) -- [@video@C++ Full Course - BroCode](https://www.youtube.com/watch?v=-TkoO8Z07hI) -- [@article@C++ Introduction](https://www.w3schools.com/cpp/cpp_intro.asp) \ No newline at end of file +- [@article@C++ Introduction](https://www.w3schools.com/cpp/cpp_intro.asp) +- [@video@C++ Full Course - BroCode](https://www.youtube.com/watch?v=-TkoO8Z07hI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cat@D2ptX6ja_HvFEafMIzWOy.md b/src/data/roadmaps/cyber-security/content/cat@D2ptX6ja_HvFEafMIzWOy.md index a25b82054..3b640008f 100644 --- a/src/data/roadmaps/cyber-security/content/cat@D2ptX6ja_HvFEafMIzWOy.md +++ b/src/data/roadmaps/cyber-security/content/cat@D2ptX6ja_HvFEafMIzWOy.md @@ -2,7 +2,7 @@ `cat` is a widely used command-line utility in UNIX and UNIX-like systems. It stands for "concatenate" which, as the name suggests, can be used to concatenate files, display file contents, or combine files. In the context of incident response and discovery tools, `cat` plays an essential role in quickly accessing and assessing the contents of various files that inform on security incidents and help users understand system data as well as potential threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Cat Command in Linux](https://linuxize.com/post/linux-cat-command/) - [@article@Linux cat command](https://phoenixnap.com/kb/linux-cat-command) diff --git a/src/data/roadmaps/cyber-security/content/ccna@4RD22UZATfL8dc71YkJwQ.md b/src/data/roadmaps/cyber-security/content/ccna@4RD22UZATfL8dc71YkJwQ.md index 6b5c21e64..1cc909b7e 100644 --- a/src/data/roadmaps/cyber-security/content/ccna@4RD22UZATfL8dc71YkJwQ.md +++ b/src/data/roadmaps/cyber-security/content/ccna@4RD22UZATfL8dc71YkJwQ.md @@ -2,8 +2,8 @@ The Cisco Certified Network Associate (CCNA) certification is an entry-level certification for IT professionals who want to specialize in networking, specifically within the realm of Cisco products. This certification validates an individual's ability to install, configure, operate, and troubleshoot medium-sized routed and switched networks. It also covers the essentials of network security and management. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CCNA Certification](https://www.cisco.com/site/us/en/learn/training-certifications/certifications/enterprise/ccna/index.html) - [@video@Network Chuck Free CCNA Course](https://www.youtube.com/playlist?list=PLIhvC56v63IJVXv0GJcl9vO5Z6znCVb1P) -- [@video@Jeremy's IT Lab](https://www.youtube.com/@JeremysITLab) +- [@video@Jeremy's IT Lab](https://www.youtube.com/@JeremysITLab) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ceh@AAo7DXB7hyBzO6p05gx1i.md b/src/data/roadmaps/cyber-security/content/ceh@AAo7DXB7hyBzO6p05gx1i.md index 46068a6a8..5cb578eb7 100644 --- a/src/data/roadmaps/cyber-security/content/ceh@AAo7DXB7hyBzO6p05gx1i.md +++ b/src/data/roadmaps/cyber-security/content/ceh@AAo7DXB7hyBzO6p05gx1i.md @@ -2,7 +2,7 @@ **Certified Ethical Hacker (CEH)** is an advanced certification focused on equipping cybersecurity professionals with the knowledge and skills required to defend against the continuously evolving landscape of cyber threats. This certification is facilitated by the EC-Council, an internationally recognized organization for information security certifications. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CEH](https://www.eccouncil.org/train-certify/certified-ethical-hacker-ceh/) - [@article@Certified Ethical Hacker Online Training](https://iclass.eccouncil.org/our-courses/certified-ethical-hacker-ceh/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/certificates@WXRaVCYwuGQsjJ5wyvbea.md b/src/data/roadmaps/cyber-security/content/certificates@WXRaVCYwuGQsjJ5wyvbea.md index 973ad4df9..e2a8f0aa2 100644 --- a/src/data/roadmaps/cyber-security/content/certificates@WXRaVCYwuGQsjJ5wyvbea.md +++ b/src/data/roadmaps/cyber-security/content/certificates@WXRaVCYwuGQsjJ5wyvbea.md @@ -4,7 +4,7 @@ Certificates, also known as digital certificates or SSL/TLS certificates, play a Digital certificates provide a crucial layer of security and trust for online communications. Understanding their role in cybersecurity, the different types of certificates, and the importance of acquiring certificates from trusted CAs can greatly enhance your organization's online security posture and reputation. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is an SSL Certificate?](https://www.cloudflare.com/en-gb/learning/ssl/what-is-an-ssl-certificate/) - [@article@What is a Certificate Authority](https://www.ssl.com/article/what-is-a-certificate-authority-ca/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cidr@PPIH1oHW4_ZDyD3U3shDg.md b/src/data/roadmaps/cyber-security/content/cidr@PPIH1oHW4_ZDyD3U3shDg.md index 390c47e50..d4ee229da 100644 --- a/src/data/roadmaps/cyber-security/content/cidr@PPIH1oHW4_ZDyD3U3shDg.md +++ b/src/data/roadmaps/cyber-security/content/cidr@PPIH1oHW4_ZDyD3U3shDg.md @@ -6,7 +6,7 @@ CIDR achieves its goals by replacing the traditional Class A, B, and C addressin A CIDR notation looks like this: `192.168.1.0/24`. Here, `192.168.1.0` is the IP address, and `/24` represents the subnet mask. The number after the slash (/) is called the _prefix length_, which indicates how many bits of the subnet mask should be set to 1 (bitmask). The remaining bits of the subnet mask are set to 0. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is CIDR?](https://aws.amazon.com/what-is/cidr/) - [@video@What is Network CIDR Notation?](https://www.youtube.com/watch?v=tpa9QSiiiUo) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cis@sSihnptkoEqUsHjDpckhG.md b/src/data/roadmaps/cyber-security/content/cis@sSihnptkoEqUsHjDpckhG.md index b8ef8be9f..2248da72f 100644 --- a/src/data/roadmaps/cyber-security/content/cis@sSihnptkoEqUsHjDpckhG.md +++ b/src/data/roadmaps/cyber-security/content/cis@sSihnptkoEqUsHjDpckhG.md @@ -2,7 +2,7 @@ The **Center for Internet Security (CIS)** is a non-profit organization that focuses on enhancing the cybersecurity posture of individuals, organizations, and governments around the world. CIS offers various tools, best practices, guidelines, and frameworks that help in defending against common cyber threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CIS](https://www.cisecurity.org/) - [@video@CIS Overview](https://www.youtube.com/watch?v=f-Z7h5dI6uQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cisa@lqFp4VLY_S-5tAbhNQTew.md b/src/data/roadmaps/cyber-security/content/cisa@lqFp4VLY_S-5tAbhNQTew.md index d97503d0a..d7fba6520 100644 --- a/src/data/roadmaps/cyber-security/content/cisa@lqFp4VLY_S-5tAbhNQTew.md +++ b/src/data/roadmaps/cyber-security/content/cisa@lqFp4VLY_S-5tAbhNQTew.md @@ -4,7 +4,7 @@ The **Certified Information Systems Auditor (CISA)** is a globally recognized ce CISA was established by the Information Systems Audit and Control Association (ISACA) and is designed to demonstrate an individual's expertise in managing vulnerabilities, ensuring compliance with industry regulations, and instituting controls within the business environment. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CISA](https://www.isaca.org/credentialing/cisa) - [@article@What is a Certified Information Systems Auditor?](https://www.investopedia.com/terms/c/certified-information-systems-auditor.asp) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cism@s86x24SHPEbbOB9lYNU-w.md b/src/data/roadmaps/cyber-security/content/cism@s86x24SHPEbbOB9lYNU-w.md index e62ba3ccf..c18af192e 100644 --- a/src/data/roadmaps/cyber-security/content/cism@s86x24SHPEbbOB9lYNU-w.md +++ b/src/data/roadmaps/cyber-security/content/cism@s86x24SHPEbbOB9lYNU-w.md @@ -2,7 +2,7 @@ The Certified Information Security Manager (CISM) is an advanced cybersecurity certification offered by ISACA that focuses on information security management. It is designed for professionals who have a strong understanding of information security and are responsible for overseeing, designing, and managing an organization's information security programs. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CISM](https://www.isaca.org/credentialing/cism) -- [@article@Certified Information Security Manager (CISM)](https://www.techtarget.com/searchsecurity/definition/certified-information-security-manager-CISM) +- [@article@Certified Information Security Manager (CISM)](https://www.techtarget.com/searchsecurity/definition/certified-information-security-manager-CISM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cissp@BqvijNoRzSGYLCMP-6hhr.md b/src/data/roadmaps/cyber-security/content/cissp@BqvijNoRzSGYLCMP-6hhr.md index 9e714f6bc..2fef56912 100644 --- a/src/data/roadmaps/cyber-security/content/cissp@BqvijNoRzSGYLCMP-6hhr.md +++ b/src/data/roadmaps/cyber-security/content/cissp@BqvijNoRzSGYLCMP-6hhr.md @@ -2,7 +2,7 @@ The Certified Information Systems Security Professional (CISSP) is a globally recognized certification offered by the International Information System Security Certification Consortium (ISC)². It is designed for experienced security professionals to validate their knowledge and expertise in the field of information security. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CISSP Certification](https://www.isc2.org/certifications/cissp) - [@video@CISSP Certification Course](https://www.youtube.com/watch?v=M1_v5HBVHWo) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cloud-skills-and-knowledge@vVaBQ5VtsE_ZeXbCOF8ux.md b/src/data/roadmaps/cyber-security/content/cloud-skills-and-knowledge@vVaBQ5VtsE_ZeXbCOF8ux.md index adbe3144d..c27049d5c 100644 --- a/src/data/roadmaps/cyber-security/content/cloud-skills-and-knowledge@vVaBQ5VtsE_ZeXbCOF8ux.md +++ b/src/data/roadmaps/cyber-security/content/cloud-skills-and-knowledge@vVaBQ5VtsE_ZeXbCOF8ux.md @@ -4,7 +4,7 @@ Cloud skills and knowledge are essential for working effectively with cloud comp Security in the cloud is a vital skill, encompassing encryption, identity and access management (IAM), compliance, and disaster recovery. Understanding DevOps practices, containerization (using tools like Docker and Kubernetes), and serverless computing also plays a significant role in cloud operations. Additionally, familiarity with cloud-native tools for automation, monitoring, and orchestration, as well as knowledge of cloud cost optimization and performance tuning, are important for maximizing cloud efficiency and ensuring a secure, scalable infrastructure. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@7 Cloud Computing skills to know](https://www.coursera.org/articles/cloud-computing-skills) - [@video@What Cloud Skills are Essential?](https://www.youtube.com/watch?v=udKBDRcj178) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/common-commands@WDrSO7wBNn-2jB8mcyT7j.md b/src/data/roadmaps/cyber-security/content/common-commands@WDrSO7wBNn-2jB8mcyT7j.md index ad83a8adf..ed4e845f8 100644 --- a/src/data/roadmaps/cyber-security/content/common-commands@WDrSO7wBNn-2jB8mcyT7j.md +++ b/src/data/roadmaps/cyber-security/content/common-commands@WDrSO7wBNn-2jB8mcyT7j.md @@ -2,29 +2,30 @@ Common operating system (OS) commands are essential for interacting with a system's shell or command-line interface (CLI). These commands allow users to perform a wide range of tasks, such as navigating the file system, managing files and directories, checking system status, and administering processes. Below are some commonly used commands across Unix/Linux and Windows operating systems: -1. **Navigating the File System:** - - Unix/Linux: `ls` (list files), `cd` (change directory), `pwd` (print working directory) - - Windows: `dir` (list files), `cd` (change directory), `echo %cd%` (print working directory) - -2. **File and Directory Management:** - - Unix/Linux: `cp` (copy files), `mv` (move/rename files), `rm` (remove files), `mkdir` (create directory) - - Windows: `copy` (copy files), `move` (move/rename files), `del` (delete files), `mkdir` (create directory) - -3. **System Information and Processes:** - - Unix/Linux: `top` or `htop` (view running processes), `ps` (list processes), `df` (disk usage), `uname` (system info) - - Windows: `tasklist` (list processes), `taskkill` (kill process), `systeminfo` (system details) - -4. **File Permissions and Ownership:** - - Unix/Linux: `chmod` (change file permissions), `chown` (change file ownership) - - Windows: `icacls` (modify access control lists), `attrib` (change file attributes) - -5. **Network Commands:** - - Unix/Linux: `ping` (test network connection), `ifconfig` or `ip` (network interface configuration), `netstat` (network statistics) - - Windows: `ping` (test network connection), `ipconfig` (network configuration), `netstat` (network statistics) +1. **Navigating the File System:** + + * Unix/Linux: `ls` (list files), `cd` (change directory), `pwd` (print working directory) + * Windows: `dir` (list files), `cd` (change directory), `echo %cd%` (print working directory) +2. **File and Directory Management:** + + * Unix/Linux: `cp` (copy files), `mv` (move/rename files), `rm` (remove files), `mkdir` (create directory) + * Windows: `copy` (copy files), `move` (move/rename files), `del` (delete files), `mkdir` (create directory) +3. **System Information and Processes:** + + * Unix/Linux: `top` or `htop` (view running processes), `ps` (list processes), `df` (disk usage), `uname` (system info) + * Windows: `tasklist` (list processes), `taskkill` (kill process), `systeminfo` (system details) +4. **File Permissions and Ownership:** + + * Unix/Linux: `chmod` (change file permissions), `chown` (change file ownership) + * Windows: `icacls` (modify access control lists), `attrib` (change file attributes) +5. **Network Commands:** + + * Unix/Linux: `ping` (test network connection), `ifconfig` or `ip` (network interface configuration), `netstat` (network statistics) + * Windows: `ping` (test network connection), `ipconfig` (network configuration), `netstat` (network statistics) These commands form the foundation of interacting with and managing an OS via the command line, providing greater control over system operations compared to graphical interfaces. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Essential Unix Commands](https://www.geeksforgeeks.org/essential-linuxunix-commands/) - [@video@60 Linux commands you must know](https://www.youtube.com/watch?v=gd7BXuUQ91w) diff --git a/src/data/roadmaps/cyber-security/content/common-ports-and-their-uses@0tx2QYDYXhm85iYrCWd9U.md b/src/data/roadmaps/cyber-security/content/common-ports-and-their-uses@0tx2QYDYXhm85iYrCWd9U.md index fcc28c017..081158f38 100644 --- a/src/data/roadmaps/cyber-security/content/common-ports-and-their-uses@0tx2QYDYXhm85iYrCWd9U.md +++ b/src/data/roadmaps/cyber-security/content/common-ports-and-their-uses@0tx2QYDYXhm85iYrCWd9U.md @@ -2,7 +2,7 @@ Common ports are standardized communication endpoints used by various network protocols and services. In cybersecurity, understanding these ports is crucial for configuring firewalls, detecting potential threats, and managing network traffic. Some widely used ports include 80 and 443 for HTTP and HTTPS web traffic, 22 for SSH secure remote access, 25 for SMTP email transmission, and 53 for DNS name resolution. FTP typically uses port 21 for control and 20 for data transfer, while ports 137-139 and 445 are associated with SMB file sharing. Database services often use specific ports, such as 3306 for MySQL and 1433 for Microsoft SQL Server. Cybersecurity professionals must be familiar with these common ports and their expected behaviors to effectively monitor network activities, identify anomalies, and secure systems against potential attacks targeting specific services. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Common Network Ports](https://www.youtube.com/watch?v=dh8h-4u7Wak) -- [@article@Common network ports you should know](https://opensource.com/article/18/10/common-network-ports) \ No newline at end of file +- [@article@Common network ports you should know](https://opensource.com/article/18/10/common-network-ports) +- [@video@Common Network Ports](https://www.youtube.com/watch?v=dh8h-4u7Wak) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/common-protocols-and-their-uses@ViF-mpR17MB3_KJ1rV8mS.md b/src/data/roadmaps/cyber-security/content/common-protocols-and-their-uses@ViF-mpR17MB3_KJ1rV8mS.md index dbad1814a..abd5eba43 100644 --- a/src/data/roadmaps/cyber-security/content/common-protocols-and-their-uses@ViF-mpR17MB3_KJ1rV8mS.md +++ b/src/data/roadmaps/cyber-security/content/common-protocols-and-their-uses@ViF-mpR17MB3_KJ1rV8mS.md @@ -2,7 +2,7 @@ Networking protocols are essential for facilitating communication between devices and systems across networks. In cybersecurity, understanding these protocols is crucial for identifying potential vulnerabilities and securing data transmission. Common protocols include TCP/IP, the foundation of internet communication, which ensures reliable data delivery. HTTP and HTTPS are used for web browsing, with HTTPS providing encrypted connections. FTP and SFTP handle file transfers, while SMTP, POP3, and IMAP manage email services. DNS translates domain names to IP addresses, and DHCP automates IP address assignment. SSH enables secure remote access and management of systems. Other important protocols include TLS/SSL for encryption, SNMP for network management, and VPN protocols like IPsec and OpenVPN for secure remote connections. Cybersecurity professionals must be well-versed in these protocols to effectively monitor network traffic, implement security measures, and respond to potential threats targeting specific protocol vulnerabilities. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Networking For Hackers! (Common Network Protocols)](https://www.youtube.com/watch?v=p3vaaD9pn9I) -- [@article@12 Common Network Protocols](https://www.techtarget.com/searchnetworking/feature/12-common-network-protocols-and-their-functions-explained) \ No newline at end of file +- [@article@12 Common Network Protocols](https://www.techtarget.com/searchnetworking/feature/12-common-network-protocols-and-their-functions-explained) +- [@video@Networking For Hackers! (Common Network Protocols)](https://www.youtube.com/watch?v=p3vaaD9pn9I) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/compliance@05Gbgy6aawYlYIx38u8DE.md b/src/data/roadmaps/cyber-security/content/compliance@05Gbgy6aawYlYIx38u8DE.md index 88d48a859..5e59ba3f6 100644 --- a/src/data/roadmaps/cyber-security/content/compliance@05Gbgy6aawYlYIx38u8DE.md +++ b/src/data/roadmaps/cyber-security/content/compliance@05Gbgy6aawYlYIx38u8DE.md @@ -2,7 +2,7 @@ Compliance in cybersecurity refers to the adherence to laws, regulations, standards, and best practices designed to protect sensitive data and ensure the security of information systems. It encompasses a wide range of requirements that organizations must meet to safeguard their digital assets and maintain the trust of customers, partners, and regulatory bodies. Common compliance frameworks include GDPR for data protection in the EU, HIPAA for healthcare information in the US, PCI DSS for payment card industry, and ISO 27001 for information security management. Compliance often involves implementing specific security controls, conducting regular audits, maintaining documentation, and demonstrating ongoing commitment to security practices. While achieving compliance can be complex and resource-intensive, it is crucial for mitigating legal and financial risks, protecting reputation, and fostering a culture of security within organizations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Cyber Security Compliance?](https://www.comptia.org/content/articles/what-is-cybersecurity-compliance) - [@article@Cyber Security Compliance 101](https://sprinto.com/blog/cyber-security-compliance/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/comptia-a@lbAgU5lR1O7L_5mCbNz_D.md b/src/data/roadmaps/cyber-security/content/comptia-a@lbAgU5lR1O7L_5mCbNz_D.md index 6579fab64..091023d29 100644 --- a/src/data/roadmaps/cyber-security/content/comptia-a@lbAgU5lR1O7L_5mCbNz_D.md +++ b/src/data/roadmaps/cyber-security/content/comptia-a@lbAgU5lR1O7L_5mCbNz_D.md @@ -2,7 +2,7 @@ CompTIA A+ is an entry-level certification for IT professionals that focuses on essential knowledge and skills in computer hardware, software, and troubleshooting. This certification is widely recognized in the IT industry and can serve as a stepping stone for individuals looking to start a career in the field of information technology. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CompTIA A+](https://www.comptia.org/certifications/a) - [@video@CompTIA A+ Course](https://www.youtube.com/watch?v=1CZXXNKAY5o) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/comptia-linux@p34Qwlj2sjwEPR2ay1WOK.md b/src/data/roadmaps/cyber-security/content/comptia-linux@p34Qwlj2sjwEPR2ay1WOK.md index 519596b9d..ce892012d 100644 --- a/src/data/roadmaps/cyber-security/content/comptia-linux@p34Qwlj2sjwEPR2ay1WOK.md +++ b/src/data/roadmaps/cyber-security/content/comptia-linux@p34Qwlj2sjwEPR2ay1WOK.md @@ -2,8 +2,8 @@ The CompTIA Linux+ certification is an entry-level certification aimed at individuals who are seeking to learn and demonstrate their skills and knowledge of the Linux operating system. This certification is widely recognized in the IT industry as an essential qualification for entry-level Linux administrators and helps them gain a strong foundation in Linux system administration tasks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CompTIA Linux+](https://www.comptia.org/certifications/linux) -- [@video@Linux+ Exam Prep](https://www.youtube.com/watch?v=niPWk7tgD2Q&list=PL78ppT-_wOmuwT9idLvuoKOn6UYurFKCp) -- [@article@CompTIA Linux+ Certification Training Labs](https://github.com/labex-labs/comptia-linux-plus-training-labs) \ No newline at end of file +- [@article@CompTIA Linux+ Certification Training Labs](https://github.com/labex-labs/comptia-linux-plus-training-labs) +- [@video@Linux+ Exam Prep](https://www.youtube.com/watch?v=niPWk7tgD2Q&list=PL78ppT-_wOmuwT9idLvuoKOn6UYurFKCp) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/comptia-network@4RGbNOfMPDbBcvUFWTTCV.md b/src/data/roadmaps/cyber-security/content/comptia-network@4RGbNOfMPDbBcvUFWTTCV.md index 209cd3b6c..2b115e044 100644 --- a/src/data/roadmaps/cyber-security/content/comptia-network@4RGbNOfMPDbBcvUFWTTCV.md +++ b/src/data/roadmaps/cyber-security/content/comptia-network@4RGbNOfMPDbBcvUFWTTCV.md @@ -2,7 +2,7 @@ The CompTIA Network+ is a highly sought-after certification for IT professionals who aim to build a solid foundation in networking concepts and practices. This certification is vendor-neutral, meaning that it covers a broad range of knowledge that can be applied to various network technologies, products, and solutions. The Network+ certification is designed for beginners in the world of IT networking, and it is recommended that you first obtain the CompTIA A+ certification before moving on to Network+. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CompTIA Network+](https://www.comptia.org/certifications/network) - [@video@CompTIA Network+ Course](https://www.youtube.com/watch?v=xmpYfyNmWbw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/comptia-security@AxeDcKK3cUtEojtHQPBw7.md b/src/data/roadmaps/cyber-security/content/comptia-security@AxeDcKK3cUtEojtHQPBw7.md index bd8ea462b..8d3598434 100644 --- a/src/data/roadmaps/cyber-security/content/comptia-security@AxeDcKK3cUtEojtHQPBw7.md +++ b/src/data/roadmaps/cyber-security/content/comptia-security@AxeDcKK3cUtEojtHQPBw7.md @@ -2,8 +2,8 @@ CompTIA Security+ is a highly recognized and respected certification for individuals seeking to start their careers in the field of cybersecurity. This certification is vendor-neutral, meaning it doesn't focus on any specific technology or platform, and provides a solid foundation in cybersecurity principles, concepts, and best practices. -Learn more from the following resources: +Visit the following resources to learn more: - [@course@CompTIA SY0-701 Security+ Exam Course Playlist](https://www.youtube.com/playlist?list=PLG49S3nxzAnl4QDVqK-hOnoqcSKEIDDuv) -- [@official@CompTIA Security+ Website](https://www.comptia.org/certifications/security) - [@course@CompTIA Security+ Course](https://www.youtube.com/watch?v=yLf2jRY39Rc&list=PLIhvC56v63IIyU0aBUed4qwP0nSCORAdB) +- [@official@CompTIA Security+ Website](https://www.comptia.org/certifications/security) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/computer-hardware-components@Ih0YZt8u9vDwYo8y1t41n.md b/src/data/roadmaps/cyber-security/content/computer-hardware-components@Ih0YZt8u9vDwYo8y1t41n.md index c734d77c3..a4c8c21e6 100644 --- a/src/data/roadmaps/cyber-security/content/computer-hardware-components@Ih0YZt8u9vDwYo8y1t41n.md +++ b/src/data/roadmaps/cyber-security/content/computer-hardware-components@Ih0YZt8u9vDwYo8y1t41n.md @@ -4,7 +4,7 @@ Computer hardware components are the physical parts of a computer system that wo The **storage device**, such as a hard disk drive (HDD) or solid-state drive (SSD), is where data is permanently stored, including the operating system, applications, and files. The **power supply unit (PSU)** provides the necessary electrical power to run the components. **Graphics processing units (GPU)**, dedicated for rendering images and videos, are important for tasks like gaming, video editing, and machine learning. Additionally, **input devices** like keyboards and mice, and **output devices** like monitors and printers, enable users to interact with the system. Together, these components make up the essential hardware of a computer, enabling it to perform various computing functions. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Computer Components for Dummies](https://www.youtube.com/watch?v=cZs6kh0WFRY) - [@article@What is computer hardware?](https://uk.crucial.com/articles/pc-builders/what-is-computer-hardware) +- [@video@Computer Components for Dummies](https://www.youtube.com/watch?v=cZs6kh0WFRY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/connection-types-and-their-function@F1QVCEmGkgvz-_H5lTxY2.md b/src/data/roadmaps/cyber-security/content/connection-types-and-their-function@F1QVCEmGkgvz-_H5lTxY2.md index 74b6b80bf..34506f64d 100644 --- a/src/data/roadmaps/cyber-security/content/connection-types-and-their-function@F1QVCEmGkgvz-_H5lTxY2.md +++ b/src/data/roadmaps/cyber-security/content/connection-types-and-their-function@F1QVCEmGkgvz-_H5lTxY2.md @@ -12,9 +12,9 @@ There are several types of network connections that enable communication between Each connection type plays a specific role, balancing factors like speed, distance, and convenience to meet the varying needs of users and organizations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Ethernet?](https://www.techtarget.com/searchnetworking/definition/Ethernet) - [@article@What is WiFi and how does it work?](https://computer.howstuffworks.com/wireless-network.htm) - [@article@How bluetooth works](https://electronics.howstuffworks.com/bluetooth.htm) --.[video@How bluetooth works](https://www.youtube.com/watch?v=1I1vxu5qIUM) +- [@article@video@How bluetooth works](https://www.youtube.com/watch?v=1I1vxu5qIUM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/containment@l7WnKuR2HTD4Vf9U2TxkK.md b/src/data/roadmaps/cyber-security/content/containment@l7WnKuR2HTD4Vf9U2TxkK.md index f95b7f939..6670fb798 100644 --- a/src/data/roadmaps/cyber-security/content/containment@l7WnKuR2HTD4Vf9U2TxkK.md +++ b/src/data/roadmaps/cyber-security/content/containment@l7WnKuR2HTD4Vf9U2TxkK.md @@ -2,7 +2,7 @@ Containment in cybersecurity refers to the process of limiting the impact of a security incident by isolating affected systems, networks, or data to prevent further spread or damage. When a breach or malware infection is detected, containment strategies are quickly implemented to halt the attack's progress, often by disconnecting compromised systems from the network, blocking malicious traffic, or restricting user access. Containment is a critical step in incident response, allowing security teams to control the situation while they investigate the root cause, assess the extent of the breach, and prepare for remediation. Effective containment minimizes the potential harm to the organization, preserving the integrity of unaffected systems and data. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Microsoft Security Incident Management: Containment, Eradication, and Recovery](https://learn.microsoft.com/en-us/compliance/assurance/assurance-sim-containment-eradication-recovery) - [@article@Containment - AWS](https://docs.aws.amazon.com/whitepapers/latest/aws-security-incident-response-guide/containment.html) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/core-concepts-of-zero-trust@HavEL0u65ZxHt92TfbLzk.md b/src/data/roadmaps/cyber-security/content/core-concepts-of-zero-trust@HavEL0u65ZxHt92TfbLzk.md index d8e26cfff..e6492fecb 100644 --- a/src/data/roadmaps/cyber-security/content/core-concepts-of-zero-trust@HavEL0u65ZxHt92TfbLzk.md +++ b/src/data/roadmaps/cyber-security/content/core-concepts-of-zero-trust@HavEL0u65ZxHt92TfbLzk.md @@ -2,7 +2,7 @@ The core concepts of Zero Trust revolve around the principle of "never trust, always verify," emphasizing the need to continuously validate every user, device, and application attempting to access resources, regardless of their location within or outside the network perimeter. Unlike traditional security models that rely on a strong perimeter defense, Zero Trust assumes that threats could already exist inside the network and that no entity should be trusted by default. Key principles include strict identity verification, least privilege access, micro-segmentation, and continuous monitoring. This approach limits access to resources based on user roles, enforces granular security policies, and continuously monitors for abnormal behavior, ensuring that security is maintained even if one segment of the network is compromised. Zero Trust is designed to protect modern IT environments from evolving threats by focusing on securing data and resources, rather than just the network perimeter. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Zero Trust Network?](https://www.cloudflare.com/en-gb/learning/security/glossary/what-is-zero-trust/) - [@video@Zero Trust Explained in 4 minutes](https://www.youtube.com/watch?v=yn6CPQ9RioA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/crest@rA1skdztev3-8VmAtIlmr.md b/src/data/roadmaps/cyber-security/content/crest@rA1skdztev3-8VmAtIlmr.md index 58bc4b869..c80a0c090 100644 --- a/src/data/roadmaps/cyber-security/content/crest@rA1skdztev3-8VmAtIlmr.md +++ b/src/data/roadmaps/cyber-security/content/crest@rA1skdztev3-8VmAtIlmr.md @@ -2,7 +2,7 @@ CREST is a non-profit, accreditation and certification body that represents the technical information security industry. Established in 2008, its mission is to promote the development and professionalization of the cyber security sector. CREST provides certifications for individuals and accreditation for companies, helping customers find knowledgeable and experienced professionals in the field. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@CREST Certifications](https://www.crest-approved.org/skills-certifications-careers/crest-certifications/) - [@video@A brief overview of CREST](https://www.youtube.com/watch?v=Cci5qrv8fHY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/csf@HjfgaSEZjW9BOXy_Ixzkk.md b/src/data/roadmaps/cyber-security/content/csf@HjfgaSEZjW9BOXy_Ixzkk.md index bf662bf5e..731e3386d 100644 --- a/src/data/roadmaps/cyber-security/content/csf@HjfgaSEZjW9BOXy_Ixzkk.md +++ b/src/data/roadmaps/cyber-security/content/csf@HjfgaSEZjW9BOXy_Ixzkk.md @@ -2,7 +2,7 @@ The Cybersecurity Framework (CSF) is a set of guidelines aimed at helping organizations better protect their critical infrastructure from cyber threats. Developed by the National Institute of Standards and Technology (NIST), this voluntary framework provides a flexible, risk-based approach to managing cybersecurity risks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@NIST Cybersecurity Framework](https://www.nist.gov/cyberframework) -- [@video@NIST Cybersecurity Framework Explained](https://www.youtube.com/watch?v=_KXqDNVmpu8) +- [@video@NIST Cybersecurity Framework Explained](https://www.youtube.com/watch?v=_KXqDNVmpu8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/csrf@pK2iRArULlK-B3iSVo4-n.md b/src/data/roadmaps/cyber-security/content/csrf@pK2iRArULlK-B3iSVo4-n.md index 4ba863576..900329459 100644 --- a/src/data/roadmaps/cyber-security/content/csrf@pK2iRArULlK-B3iSVo4-n.md +++ b/src/data/roadmaps/cyber-security/content/csrf@pK2iRArULlK-B3iSVo4-n.md @@ -2,7 +2,7 @@ Cross-Site Request Forgery (CSRF) is a type of web security vulnerability that allows an attacker to trick a user into performing actions on a web application without their consent. It occurs when a malicious website or link causes a user’s browser to send unauthorized requests to a different site where the user is authenticated, such as submitting a form or changing account settings. Since the requests are coming from the user’s authenticated session, the web application mistakenly trusts them, allowing the attacker to perform actions like transferring funds, changing passwords, or altering user data. CSRF attacks exploit the trust that a web application has in the user's browser, making it critical for developers to implement countermeasures like CSRF tokens, same-site cookie attributes, and user confirmation prompts to prevent unauthorized actions. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Cross-Site Request Forgery Explained](https://www.youtube.com/watch?v=eWEgUcHPle0) -- [@article@Cross-Site Request Forgery](https://owasp.org/www-community/attacks/csrf) \ No newline at end of file +- [@article@Cross-Site Request Forgery](https://owasp.org/www-community/attacks/csrf) +- [@video@Cross-Site Request Forgery Explained](https://www.youtube.com/watch?v=eWEgUcHPle0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/curl@W7iQUCjODGYgE4PjC5TZI.md b/src/data/roadmaps/cyber-security/content/curl@W7iQUCjODGYgE4PjC5TZI.md index 3603b48d3..eefd8c7c0 100644 --- a/src/data/roadmaps/cyber-security/content/curl@W7iQUCjODGYgE4PjC5TZI.md +++ b/src/data/roadmaps/cyber-security/content/curl@W7iQUCjODGYgE4PjC5TZI.md @@ -2,7 +2,7 @@ cURL is a versatile command-line tool primarily used for transferring data using various network protocols. It is widely used in cybersecurity and development for the purpose of testing and interacting with web services, APIs, and scrutinizing web application security. Curl supports various protocols such as HTTP, HTTPS, FTP, SCP, SFTP, and many more. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is the cURL command?](https://blog.hubspot.com/website/curl-command) - [@video@You need to know how to use cURL](https://www.youtube.com/watch?v=q2sqkvXzsw8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/cyber-kill-chain@H38Vb7xvuBJXVzgPBdRdT.md b/src/data/roadmaps/cyber-security/content/cyber-kill-chain@H38Vb7xvuBJXVzgPBdRdT.md index ed4709786..c2a77bb58 100644 --- a/src/data/roadmaps/cyber-security/content/cyber-kill-chain@H38Vb7xvuBJXVzgPBdRdT.md +++ b/src/data/roadmaps/cyber-security/content/cyber-kill-chain@H38Vb7xvuBJXVzgPBdRdT.md @@ -2,7 +2,7 @@ The **Cyber Kill Chain** is a model that was developed by Lockheed Martin, a major aerospace, military support, and security company, to understand and prevent cyber intrusions in various networks and systems. It serves as a framework for breaking down the stages of a cyber attack, making it easier for security professionals to identify, mitigate, and prevent threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Cyber Kill Chain](https://www.lockheedmartin.com/en-us/capabilities/cyber/cyber-kill-chain.html) - [@video@Learn the Cyber Kill Chain](https://www.youtube.com/watch?v=oCUrkc_0tmw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dd@9xbU_hrEOUtMm-Q09Fe6t.md b/src/data/roadmaps/cyber-security/content/dd@9xbU_hrEOUtMm-Q09Fe6t.md index 0cefa2cb5..ef8442237 100644 --- a/src/data/roadmaps/cyber-security/content/dd@9xbU_hrEOUtMm-Q09Fe6t.md +++ b/src/data/roadmaps/cyber-security/content/dd@9xbU_hrEOUtMm-Q09Fe6t.md @@ -4,7 +4,7 @@ This command-line utility is available on Unix-based systems such as Linux, BSD, and macOS. It can perform tasks like data duplication, data conversion, and error correction. Most importantly, it's an invaluable tool for obtaining a bit-by-bit copy of a disk or file, which can then be analyzed using forensic tools. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@How to use the dd command in Linux](https://www.youtube.com/watch?v=hsDxcJhCRLI) -- [@article@When and how to use the dd command](https://www.baeldung.com/linux/dd-command) \ No newline at end of file +- [@article@When and how to use the dd command](https://www.baeldung.com/linux/dd-command) +- [@video@How to use the dd command in Linux](https://www.youtube.com/watch?v=hsDxcJhCRLI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/deauth-attack@LfWJJaT3fv0p6fUeS8b84.md b/src/data/roadmaps/cyber-security/content/deauth-attack@LfWJJaT3fv0p6fUeS8b84.md index e1fa19d71..767a148c7 100644 --- a/src/data/roadmaps/cyber-security/content/deauth-attack@LfWJJaT3fv0p6fUeS8b84.md +++ b/src/data/roadmaps/cyber-security/content/deauth-attack@LfWJJaT3fv0p6fUeS8b84.md @@ -1,8 +1,8 @@ -# Deauth Attack - -A Deauthentication (Deauth) Attack is a type of denial-of-service (DoS) attack specific to wireless networks. It involves sending fake deauthentication frames to a Wi-Fi client or access point, forcing the client to disconnect from the network. The attacker uses this technique to disrupt the communication between the client and the access point, often with the intention of capturing data, launching further attacks, or simply causing disruption. - -Visit the following resources to learn more: - -- [@article@Wi-Fi Deauthentication Attack](https://medium.com/@balaramapunna123/wi-fi-deauthentication-attack-76cdd91d5fc) -- [@article@Deauthentication Attacks](https://www.baeldung.com/cs/deauthentication-attacks) +# Deauth Attack + +A Deauthentication (Deauth) Attack is a type of denial-of-service (DoS) attack specific to wireless networks. It involves sending fake deauthentication frames to a Wi-Fi client or access point, forcing the client to disconnect from the network. The attacker uses this technique to disrupt the communication between the client and the access point, often with the intention of capturing data, launching further attacks, or simply causing disruption. + +Visit the following resources to learn more: + +- [@article@Wi-Fi Deauthentication Attack](https://medium.com/@balaramapunna123/wi-fi-deauthentication-attack-76cdd91d5fc) +- [@article@Deauthentication Attacks](https://www.baeldung.com/cs/deauthentication-attacks) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/default-gateway@5rKaFtjYx0n2iF8uTLs8X.md b/src/data/roadmaps/cyber-security/content/default-gateway@5rKaFtjYx0n2iF8uTLs8X.md index 3513e71e9..c8b1770f0 100644 --- a/src/data/roadmaps/cyber-security/content/default-gateway@5rKaFtjYx0n2iF8uTLs8X.md +++ b/src/data/roadmaps/cyber-security/content/default-gateway@5rKaFtjYx0n2iF8uTLs8X.md @@ -2,7 +2,7 @@ A default gateway is a network node, typically a router or a firewall, that serves as the access point or intermediary between a local network and external networks, such as the internet. When a device on a local network needs to communicate with a device outside its own subnet—such as accessing a website or sending an email—it sends the data to the default gateway, which then routes it to the appropriate external destination. The default gateway acts as a traffic director, ensuring that data packets are correctly forwarded between the internal network and external networks, making it a crucial component for enabling communication beyond the local network's boundaries. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Default Gateway?](https://nordvpn.com/blog/what-is-a-default-gateway/?srsltid=AfmBOoosi5g4acnT9Gv_B86FMGr72hWDhk8J-4jr1HvxPCSu96FikCyw) - [@video@Routers and Default Gateways](https://www.youtube.com/watch?v=JOomC1wFrbU) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dhcp@R5HEeh6jwpQDo27rz1KSH.md b/src/data/roadmaps/cyber-security/content/dhcp@R5HEeh6jwpQDo27rz1KSH.md index 3707cd686..a79983b51 100644 --- a/src/data/roadmaps/cyber-security/content/dhcp@R5HEeh6jwpQDo27rz1KSH.md +++ b/src/data/roadmaps/cyber-security/content/dhcp@R5HEeh6jwpQDo27rz1KSH.md @@ -2,7 +2,7 @@ The Dynamic Host Configuration Protocol (DHCP) is a network management protocol used to automatically assign IP addresses and other network configuration details, such as subnet masks, default gateways, and DNS servers, to devices on a network. When a device, such as a computer or smartphone, connects to a network, it sends a request to the DHCP server, which then dynamically assigns an available IP address from a defined range and provides the necessary configuration information. This process simplifies network management by eliminating the need for manual IP address assignment and reduces the risk of IP conflicts, ensuring that devices can seamlessly join the network and communicate with other devices and services. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is DHCP and how does it work?](https://www.youtube.com/watch?v=ldtUSSZJCGg) -- [@article@Dynamic Host Configuration Protocol (DHCP)](https://learn.microsoft.com/en-us/windows-server/networking/technologies/dhcp/dhcp-top) \ No newline at end of file +- [@article@Dynamic Host Configuration Protocol (DHCP)](https://learn.microsoft.com/en-us/windows-server/networking/technologies/dhcp/dhcp-top) +- [@video@What is DHCP and how does it work?](https://www.youtube.com/watch?v=ldtUSSZJCGg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dhcp@T4312p70FqRBkzVfWKMaR.md b/src/data/roadmaps/cyber-security/content/dhcp@T4312p70FqRBkzVfWKMaR.md index 3707cd686..a79983b51 100644 --- a/src/data/roadmaps/cyber-security/content/dhcp@T4312p70FqRBkzVfWKMaR.md +++ b/src/data/roadmaps/cyber-security/content/dhcp@T4312p70FqRBkzVfWKMaR.md @@ -2,7 +2,7 @@ The Dynamic Host Configuration Protocol (DHCP) is a network management protocol used to automatically assign IP addresses and other network configuration details, such as subnet masks, default gateways, and DNS servers, to devices on a network. When a device, such as a computer or smartphone, connects to a network, it sends a request to the DHCP server, which then dynamically assigns an available IP address from a defined range and provides the necessary configuration information. This process simplifies network management by eliminating the need for manual IP address assignment and reduces the risk of IP conflicts, ensuring that devices can seamlessly join the network and communicate with other devices and services. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is DHCP and how does it work?](https://www.youtube.com/watch?v=ldtUSSZJCGg) -- [@article@Dynamic Host Configuration Protocol (DHCP)](https://learn.microsoft.com/en-us/windows-server/networking/technologies/dhcp/dhcp-top) \ No newline at end of file +- [@article@Dynamic Host Configuration Protocol (DHCP)](https://learn.microsoft.com/en-us/windows-server/networking/technologies/dhcp/dhcp-top) +- [@video@What is DHCP and how does it work?](https://www.youtube.com/watch?v=ldtUSSZJCGg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/diamond-model@AY-hoPGnAZSd1ExaYX8LR.md b/src/data/roadmaps/cyber-security/content/diamond-model@AY-hoPGnAZSd1ExaYX8LR.md index 12a791eb9..808afc6e8 100644 --- a/src/data/roadmaps/cyber-security/content/diamond-model@AY-hoPGnAZSd1ExaYX8LR.md +++ b/src/data/roadmaps/cyber-security/content/diamond-model@AY-hoPGnAZSd1ExaYX8LR.md @@ -2,7 +2,7 @@ The Diamond Model is a cybersecurity framework used for analyzing and understanding cyber threats by breaking down an attack into four core components: Adversary, Infrastructure, Capability, and Victim. The Adversary represents the entity behind the attack, the Infrastructure refers to the systems and resources used by the attacker (such as command and control servers), the Capability denotes the tools or malware employed, and the Victim is the target of the attack. The model emphasizes the relationships between these components, helping analysts to identify patterns, track adversary behavior, and understand the broader context of cyber threats. By visualizing and connecting these elements, the Diamond Model aids in developing more effective detection, mitigation, and response strategies. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@The Diamond Model: Simple Intelligence-Driven Intrusion Analysis](https://kravensecurity.com/diamond-model-analysis/) - [@video@The Diamond Model for Intrusion Detection](https://www.youtube.com/watch?v=3AOKomsmeUY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/different-versions-and-differences@yXOGqlufAZ69uiBzKFfh6.md b/src/data/roadmaps/cyber-security/content/different-versions-and-differences@yXOGqlufAZ69uiBzKFfh6.md index d4d476e2d..b35ab4bd3 100644 --- a/src/data/roadmaps/cyber-security/content/different-versions-and-differences@yXOGqlufAZ69uiBzKFfh6.md +++ b/src/data/roadmaps/cyber-security/content/different-versions-and-differences@yXOGqlufAZ69uiBzKFfh6.md @@ -2,25 +2,28 @@ In the field of cyber security, it is essential to stay up-to-date with different versions of software, tools, and technology, as well as understanding the differences between them. Regularly updating software ensures that you have the latest security features in place to protect yourself from potential threats. -## Importance of Versions +Importance of Versions +---------------------- -- **Security**: Newer versions of software often introduce patches to fix security vulnerabilities. Using outdated software can leave your system exposed to cyber attacks. +* **Security**: Newer versions of software often introduce patches to fix security vulnerabilities. Using outdated software can leave your system exposed to cyber attacks. + +* **Features**: Upgrading to a newer version of software can provide access to new features and functionalities, improving the user experience and performance. + +* **Compatibility**: As technology evolves, staying up-to-date with versions helps ensure that software or tools are compatible across various platforms and devices. + -- **Features**: Upgrading to a newer version of software can provide access to new features and functionalities, improving the user experience and performance. - -- **Compatibility**: As technology evolves, staying up-to-date with versions helps ensure that software or tools are compatible across various platforms and devices. - -## Understanding Differences +Understanding Differences +------------------------- When we talk about differences in the context of cybersecurity, they can refer to: -- **Software Differences**: Different software or tools offer different features and capabilities, so it's crucial to choose one that meets your specific needs. Additionally, open-source tools may differ from proprietary tools in terms of functionalities, licensing, and costs. - -- **Operating System Differences**: Cybersecurity practices may differ across operating systems such as Windows, Linux, or macOS. Each operating system has its own security controls, vulnerabilities, and potential attack vectors. - -- **Protocol Differences**: Understanding the differences between various network protocols (HTTP, HTTPS, SSH, FTP, etc.) can help you choose the most secure method for your purposes. - -- **Threat Differences**: Various types of cyber threats exist (e.g., malware, phishing, denial-of-service attacks), and it is crucial to understand their differences in order to implement the most effective countermeasures. - -Learn more from the following resources: +* **Software Differences**: Different software or tools offer different features and capabilities, so it's crucial to choose one that meets your specific needs. Additionally, open-source tools may differ from proprietary tools in terms of functionalities, licensing, and costs. + +* **Operating System Differences**: Cybersecurity practices may differ across operating systems such as Windows, Linux, or macOS. Each operating system has its own security controls, vulnerabilities, and potential attack vectors. + +* **Protocol Differences**: Understanding the differences between various network protocols (HTTP, HTTPS, SSH, FTP, etc.) can help you choose the most secure method for your purposes. + +* **Threat Differences**: Various types of cyber threats exist (e.g., malware, phishing, denial-of-service attacks), and it is crucial to understand their differences in order to implement the most effective countermeasures. + +Learn more from the following resources: \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dig@D2YYv1iTRGken75sHO0Gt.md b/src/data/roadmaps/cyber-security/content/dig@D2YYv1iTRGken75sHO0Gt.md index 43ff9ece6..54b44625e 100644 --- a/src/data/roadmaps/cyber-security/content/dig@D2YYv1iTRGken75sHO0Gt.md +++ b/src/data/roadmaps/cyber-security/content/dig@D2YYv1iTRGken75sHO0Gt.md @@ -2,6 +2,6 @@ `dig`, short for the Domain Information Groper, is a powerful and flexible command-line tool used to perform DNS queries and obtain valuable information about domains, IPs, and DNS records. This utility, available on UNIX-based systems like Linux and macOS, provides an essential function to help diagnose and resolve various issues related to domain name resolution and network connectivity. It is highly useful for network administrators and cybersecurity professionals when troubleshooting DNS-related problems. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@How to look up DNS records with dig](https://www.youtube.com/watch?v=iESSCDnC74k) +- [@video@How to look up DNS records with dig](https://www.youtube.com/watch?v=iESSCDnC74k) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dig@XyaWZZ45axJMKXoWwsyFj.md b/src/data/roadmaps/cyber-security/content/dig@XyaWZZ45axJMKXoWwsyFj.md index ef43082f7..0956de016 100644 --- a/src/data/roadmaps/cyber-security/content/dig@XyaWZZ45axJMKXoWwsyFj.md +++ b/src/data/roadmaps/cyber-security/content/dig@XyaWZZ45axJMKXoWwsyFj.md @@ -2,7 +2,7 @@ `dig`, short for the Domain Information Groper, is a powerful and flexible command-line tool used to perform DNS queries and obtain valuable information about domains, IPs, and DNS records. This utility, available on UNIX-based systems like Linux and macOS, provides an essential function to help diagnose and resolve various issues related to domain name resolution and network connectivity. It is highly useful for network administrators and cybersecurity professionals when troubleshooting DNS-related problems. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@How to look up DNS records with dig](https://www.youtube.com/watch?v=3AOKomsmeUY) -- [@article@How to use Linux dig command](https://www.google.com/search?client=firefox-b-d&q=linux+dig+command) \ No newline at end of file +- [@article@How to use Linux dig command](https://www.google.com/search?client=firefox-b-d&q=linux+dig+command) +- [@video@How to look up DNS records with dig](https://www.youtube.com/watch?v=3AOKomsmeUY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/directory-traversal@L0ROYh2DNlkybNDO2ezJY.md b/src/data/roadmaps/cyber-security/content/directory-traversal@L0ROYh2DNlkybNDO2ezJY.md index c64986abf..2f99dc6c9 100644 --- a/src/data/roadmaps/cyber-security/content/directory-traversal@L0ROYh2DNlkybNDO2ezJY.md +++ b/src/data/roadmaps/cyber-security/content/directory-traversal@L0ROYh2DNlkybNDO2ezJY.md @@ -1,13 +1,13 @@ -# Directory Traversal - -Directory Traversal, also known as Path Traversal, is a vulnerability that allows attackers to read files on a system without proper authorization. These attacks typically exploit unsecured paths using "../" (dot-dot-slash) sequences and their variations, or absolute file paths. The attack is also referred to as "dot-dot-slash," "directory climbing," or "backtracking." - -While Directory Traversal is sometimes combined with other vulnerabilities like Local File Inclusion (LFI) or Remote File Inclusion (RFI), the key difference is that Directory Traversal doesn't execute code, whereas LFI and RFI usually do. - -Visit the following resources to learn more: - -- [@article@Portswigger's guide on File Path Traversal](https://portswigger.net/web-security/file-path-traversal) -- [@official@OWASP's article on Path Traversal](https://owasp.org/www-community/attacks/Path_Traversal) -- [@course@TryHackMe's room on Path Traversal & File Inclusion](https://tryhackme.com/r/room/filepathtraversal) -- [@article@Acunetix's article on directory traversal](https://www.acunetix.com/websitesecurity/directory-traversal/) -- [@course@HackTheBox Academy's module on File Inclusion & Path Traversal](https://academy.hackthebox.com/course/preview/file-inclusion) +# Directory Traversal + +Directory Traversal, also known as Path Traversal, is a vulnerability that allows attackers to read files on a system without proper authorization. These attacks typically exploit unsecured paths using "../" (dot-dot-slash) sequences and their variations, or absolute file paths. The attack is also referred to as "dot-dot-slash," "directory climbing," or "backtracking." + +While Directory Traversal is sometimes combined with other vulnerabilities like Local File Inclusion (LFI) or Remote File Inclusion (RFI), the key difference is that Directory Traversal doesn't execute code, whereas LFI and RFI usually do. + +Visit the following resources to learn more: + +- [@course@TryHackMe's room on Path Traversal & File Inclusion](https://tryhackme.com/r/room/filepathtraversal) +- [@course@HackTheBox Academy's module on File Inclusion & Path Traversal](https://academy.hackthebox.com/course/preview/file-inclusion) +- [@official@OWASP's article on Path Traversal](https://owasp.org/www-community/attacks/Path_Traversal) +- [@article@Portswigger's guide on File Path Traversal](https://portswigger.net/web-security/file-path-traversal) +- [@article@Acunetix's article on directory traversal](https://www.acunetix.com/websitesecurity/directory-traversal/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dlp@iolsTC-63d_1wzKGul-cT.md b/src/data/roadmaps/cyber-security/content/dlp@iolsTC-63d_1wzKGul-cT.md index 7b19d0434..98db47c99 100644 --- a/src/data/roadmaps/cyber-security/content/dlp@iolsTC-63d_1wzKGul-cT.md +++ b/src/data/roadmaps/cyber-security/content/dlp@iolsTC-63d_1wzKGul-cT.md @@ -5,4 +5,4 @@ Data Loss Prevention (DLP) refers to a set of strategies, tools, and processes u Visit the following resources to learn more: - [@article@What is DLP (data loss prevention)?](https://www.cloudflare.com/es-es/learning/access-management/what-is-dlp/) -- [@article@What is Data Loss Prevention (DLP)?](https://www.techtarget.com/whatis/definition/data-loss-prevention-DLP) +- [@article@What is Data Loss Prevention (DLP)?](https://www.techtarget.com/whatis/definition/data-loss-prevention-DLP) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dmz@gfpvDQz61I3zTB7tGu7vp.md b/src/data/roadmaps/cyber-security/content/dmz@gfpvDQz61I3zTB7tGu7vp.md index aaa4c902e..03fcc9ca3 100644 --- a/src/data/roadmaps/cyber-security/content/dmz@gfpvDQz61I3zTB7tGu7vp.md +++ b/src/data/roadmaps/cyber-security/content/dmz@gfpvDQz61I3zTB7tGu7vp.md @@ -2,7 +2,7 @@ A **DMZ**, also known as a **Demilitarized Zone**, is a specific part of a network that functions as a buffer or separation between an organization's internal, trusted network and the external, untrusted networks like the internet. The primary purpose of a DMZ is to isolate critical systems and data from the potentially hostile external environment and provide an extra layer of security. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a DMZ Network?](https://www.fortinet.com/resources/cyberglossary/what-is-dmz) - [@video@DMZ explained](https://www.youtube.com/watch?v=48QZfBeU4ps) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dns-poisoning@urtsyYWViEzbqYLoNfQAh.md b/src/data/roadmaps/cyber-security/content/dns-poisoning@urtsyYWViEzbqYLoNfQAh.md index 61b897e54..5b308f034 100644 --- a/src/data/roadmaps/cyber-security/content/dns-poisoning@urtsyYWViEzbqYLoNfQAh.md +++ b/src/data/roadmaps/cyber-security/content/dns-poisoning@urtsyYWViEzbqYLoNfQAh.md @@ -1,9 +1,9 @@ -# DNS Poisoning/DNS Spoofing/DNS Cache Poisoning - -DNS spoofing or DNS cache poisoning, occurs when fake information is inserted into a DNS server’s cache.This causes DNS queries to return incorrect IP addresses, directing users to the wrong websites. Hackers exploit this to reroute traffic to malicious sites. The issue persists until the cached information is corrected.When the cache is poisoned, it misdirects traffic until the incorrect information is fixed. This technique exploits vulnerabilities in the DNS system and can spread to other servers, causing widespread issues. - -Visit the following resources to learn more: - -- [@article@What is DNS Cache Poisoning? | DNS spoofing](https://www.cloudflare.com/learning/dns/dns-cache-poisoning/) -- [@article@What Is DNS Poisoning?](https://www.fortinet.com/resources/cyberglossary/dns-poisoning) -- [@article@DNS Poisoning (DNS Spoofing): Definition, Technique & Defense](https://www.okta.com/identity-101/dns-poisoning/) +# DNS Poisoning/DNS Spoofing/DNS Cache Poisoning + +DNS spoofing or DNS cache poisoning, occurs when fake information is inserted into a DNS server’s cache.This causes DNS queries to return incorrect IP addresses, directing users to the wrong websites. Hackers exploit this to reroute traffic to malicious sites. The issue persists until the cached information is corrected.When the cache is poisoned, it misdirects traffic until the incorrect information is fixed. This technique exploits vulnerabilities in the DNS system and can spread to other servers, causing widespread issues. + +Visit the following resources to learn more: + +- [@article@What is DNS Cache Poisoning? | DNS spoofing](https://www.cloudflare.com/learning/dns/dns-cache-poisoning/) +- [@article@What Is DNS Poisoning?](https://www.fortinet.com/resources/cyberglossary/dns-poisoning) +- [@article@DNS Poisoning (DNS Spoofing): Definition, Technique & Defense](https://www.okta.com/identity-101/dns-poisoning/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dns@ORIdKG8H97VkBUYpiDtXf.md b/src/data/roadmaps/cyber-security/content/dns@ORIdKG8H97VkBUYpiDtXf.md index d11ec548e..77ff70493 100644 --- a/src/data/roadmaps/cyber-security/content/dns@ORIdKG8H97VkBUYpiDtXf.md +++ b/src/data/roadmaps/cyber-security/content/dns@ORIdKG8H97VkBUYpiDtXf.md @@ -2,7 +2,7 @@ The Domain Name System (DNS) is a fundamental protocol of the internet that translates human-readable domain names, like `www.example.com`, into IP addresses, such as `192.0.2.1`, which are used by computers to locate and communicate with each other. Essentially, DNS acts as the internet's phonebook, enabling users to access websites and services without needing to memorize numerical IP addresses. When a user types a domain name into a browser, a DNS query is sent to a DNS server, which then resolves the domain into its corresponding IP address, allowing the browser to connect to the appropriate server. DNS is crucial for the functionality of the internet, as it underpins virtually all online activities by ensuring that requests are routed to the correct destinations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is DNS?](https://www.cloudflare.com/en-gb/learning/dns/what-is-dns/) - [@video@DNS Explained in 100 Seconds](https://www.youtube.com/watch?v=UVR9lhUGAyU) diff --git a/src/data/roadmaps/cyber-security/content/dns@r1IKvhpwg2umazLGlQZL1.md b/src/data/roadmaps/cyber-security/content/dns@r1IKvhpwg2umazLGlQZL1.md index 2cdc9d0ff..77ff70493 100644 --- a/src/data/roadmaps/cyber-security/content/dns@r1IKvhpwg2umazLGlQZL1.md +++ b/src/data/roadmaps/cyber-security/content/dns@r1IKvhpwg2umazLGlQZL1.md @@ -2,8 +2,8 @@ The Domain Name System (DNS) is a fundamental protocol of the internet that translates human-readable domain names, like `www.example.com`, into IP addresses, such as `192.0.2.1`, which are used by computers to locate and communicate with each other. Essentially, DNS acts as the internet's phonebook, enabling users to access websites and services without needing to memorize numerical IP addresses. When a user types a domain name into a browser, a DNS query is sent to a DNS server, which then resolves the domain into its corresponding IP address, allowing the browser to connect to the appropriate server. DNS is crucial for the functionality of the internet, as it underpins virtually all online activities by ensuring that requests are routed to the correct destinations. -Learn more from the following resources: +Visit the following resources to learn more: +- [@article@What is DNS?](https://www.cloudflare.com/en-gb/learning/dns/what-is-dns/) - [@video@DNS Explained in 100 Seconds](https://www.youtube.com/watch?v=UVR9lhUGAyU) -- [@video@What is DNS?](https://www.youtube.com/watch?v=nyH0nYhMW9M) -- [@article@What is DNS?](https://www.cloudflare.com/en-gb/learning/dns/what-is-dns/) \ No newline at end of file +- [@video@What is DNS?](https://www.youtube.com/watch?v=nyH0nYhMW9M) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dnssec@LLGXONul7JfZGUahnK0AZ.md b/src/data/roadmaps/cyber-security/content/dnssec@LLGXONul7JfZGUahnK0AZ.md index 7ac913f0a..17665cf28 100644 --- a/src/data/roadmaps/cyber-security/content/dnssec@LLGXONul7JfZGUahnK0AZ.md +++ b/src/data/roadmaps/cyber-security/content/dnssec@LLGXONul7JfZGUahnK0AZ.md @@ -2,7 +2,7 @@ DNS Security Extensions (DNSSEC) is a suite of protocols designed to add a layer of security to the Domain Name System (DNS) by enabling DNS responses to be authenticated. While DNS itself resolves domain names into IP addresses, it does not inherently verify the authenticity of the responses, leaving it vulnerable to attacks like cache poisoning, where an attacker injects malicious data into a DNS resolver’s cache. DNSSEC addresses this by using digital signatures to ensure that the data received is exactly what was intended by the domain owner and has not been tampered with during transit. When a DNS resolver requests information, DNSSEC-enabled servers respond with both the requested data and a corresponding digital signature. The resolver can then verify this signature using a chain of trust, ensuring the integrity and authenticity of the DNS response. By protecting against forged DNS data, DNSSEC plays a critical role in enhancing the security of internet communications. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@How DNSSEC works](https://www.cloudflare.com/en-gb/dns/dnssec/how-dnssec-works/) - [@video@What is DNSSEC?](https://www.youtube.com/watch?v=Fk2oejzgSVQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dos-vs-ddos@IF5H0ZJ72XnqXti3jRWYF.md b/src/data/roadmaps/cyber-security/content/dos-vs-ddos@IF5H0ZJ72XnqXti3jRWYF.md index effb381d5..b86383ab9 100644 --- a/src/data/roadmaps/cyber-security/content/dos-vs-ddos@IF5H0ZJ72XnqXti3jRWYF.md +++ b/src/data/roadmaps/cyber-security/content/dos-vs-ddos@IF5H0ZJ72XnqXti3jRWYF.md @@ -2,8 +2,8 @@ Denial of Service (DoS) and Distributed Denial of Service (DDoS) are both types of cyber attacks aimed at disrupting the normal functioning of a targeted service, typically a website or network. A DoS attack involves a single source overwhelming a system with a flood of requests or malicious data, exhausting its resources and making it unavailable to legitimate users. In contrast, a DDoS attack amplifies this disruption by using multiple compromised devices, often forming a botnet, to launch a coordinated attack from numerous sources simultaneously. This distributed nature makes DDoS attacks more challenging to mitigate, as the traffic comes from many different locations, making it harder to identify and block the malicious traffic. Both types of attacks can cause significant downtime, financial loss, and reputational damage to the targeted organization. -Learn more from the following resources: +Visit the following resources to learn more: +- [@article@DoS vs DDoS](https://www.fortinet.com/resources/cyberglossary/dos-vs-ddos) - [@video@What is Denial-of-Service attack?](https://www.youtube.com/watch?v=Z7xG3b0aL_I) -- [@video@What is a DDoS attack?](https://www.youtube.com/watch?v=z503nLsfe5s) -- [@article@DoS vs DDoS](https://www.fortinet.com/resources/cyberglossary/dos-vs-ddos) \ No newline at end of file +- [@video@What is a DDoS attack?](https://www.youtube.com/watch?v=z503nLsfe5s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/drive-by-attack@cO70zHvHgBAH29khF-hBW.md b/src/data/roadmaps/cyber-security/content/drive-by-attack@cO70zHvHgBAH29khF-hBW.md index 1f633af19..30f243e9e 100644 --- a/src/data/roadmaps/cyber-security/content/drive-by-attack@cO70zHvHgBAH29khF-hBW.md +++ b/src/data/roadmaps/cyber-security/content/drive-by-attack@cO70zHvHgBAH29khF-hBW.md @@ -1,8 +1,8 @@ -# Drive-by Attack - -Drive-by Attack is a type of cyberattack where malicious code is automatically downloaded and executed on a user's system simply by visiting a compromised or malicious website. The user does not need to click on anything or interact with the page; just loading the website is enough to trigger the attack. - -Visit the following resources to learn more: - -- [@article@What is a Drive-By Attack?](https://www.ericom.com/glossary/what-is-a-drive-by-attack/) -- [@video@Drive-By Download attack](https://www.youtube.com/watch?v=xL4DyblbnKg) +# Drive-by Attack + +Drive-by Attack is a type of cyberattack where malicious code is automatically downloaded and executed on a user's system simply by visiting a compromised or malicious website. The user does not need to click on anything or interact with the page; just loading the website is enough to trigger the attack. + +Visit the following resources to learn more: + +- [@article@What is a Drive-By Attack?](https://www.ericom.com/glossary/what-is-a-drive-by-attack/) +- [@video@Drive-By Download attack](https://www.youtube.com/watch?v=xL4DyblbnKg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/dropbox@9OastXVfiG1YRMm68ecnn.md b/src/data/roadmaps/cyber-security/content/dropbox@9OastXVfiG1YRMm68ecnn.md index 001684479..dd5de282a 100644 --- a/src/data/roadmaps/cyber-security/content/dropbox@9OastXVfiG1YRMm68ecnn.md +++ b/src/data/roadmaps/cyber-security/content/dropbox@9OastXVfiG1YRMm68ecnn.md @@ -2,7 +2,7 @@ Dropbox is a widely used cloud storage service that allows you to store, access, and share files, documents, and media with ease across various devices. Launched in 2007, Dropbox has become one of the most popular cloud storage solutions, catering to both individual users and businesses. The service is available on multiple platforms, including Windows, macOS, Linux, iOS, and Android. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Dropbox](https://dropbox.com) - [@official@How to Use Dropbox - a guide to your account](https://learn.dropbox.com/self-guided-learning/dropbox-fundamentals-course/how-to-use-dropbox) diff --git a/src/data/roadmaps/cyber-security/content/dumpster-diving@Iu0Qtk13RjrhHpSlm0uyh.md b/src/data/roadmaps/cyber-security/content/dumpster-diving@Iu0Qtk13RjrhHpSlm0uyh.md index 3081ee36a..ff2950e5c 100644 --- a/src/data/roadmaps/cyber-security/content/dumpster-diving@Iu0Qtk13RjrhHpSlm0uyh.md +++ b/src/data/roadmaps/cyber-security/content/dumpster-diving@Iu0Qtk13RjrhHpSlm0uyh.md @@ -1,9 +1,9 @@ -# Dumpster Diving - -Dumpster Diving in the context of cybersecurity refers to the practice of searching through discarded materials in trash or recycling bins to find confidential information. This technique may seem unsophisticated, but it can be extremely effective in obtaining valuable data such as passwords, account information, network diagrams, or any other sensitive information that has not been properly destroyed. - -Visit the following resources to learn more: - -- [@article@Dumpster Diving](https://www.techtarget.com/searchsecurity/definition/dumpster-diving) -- [@article@What is Dumpster Diving](https://powerdmarc.com/dumpster-diving-in-cybersecurity/) +# Dumpster Diving + +Dumpster Diving in the context of cybersecurity refers to the practice of searching through discarded materials in trash or recycling bins to find confidential information. This technique may seem unsophisticated, but it can be extremely effective in obtaining valuable data such as passwords, account information, network diagrams, or any other sensitive information that has not been properly destroyed. + +Visit the following resources to learn more: + +- [@article@Dumpster Diving](https://www.techtarget.com/searchsecurity/definition/dumpster-diving) +- [@article@What is Dumpster Diving](https://powerdmarc.com/dumpster-diving-in-cybersecurity/) - [@video@Dumpster Diving for Sensitive Information](https://www.youtube.com/watch?v=Pom86gq4mk4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/eap-vs-peap@1jwtExZzR9ABKvD_S9zFG.md b/src/data/roadmaps/cyber-security/content/eap-vs-peap@1jwtExZzR9ABKvD_S9zFG.md index 2e76146b4..cb8c414a2 100644 --- a/src/data/roadmaps/cyber-security/content/eap-vs-peap@1jwtExZzR9ABKvD_S9zFG.md +++ b/src/data/roadmaps/cyber-security/content/eap-vs-peap@1jwtExZzR9ABKvD_S9zFG.md @@ -4,7 +4,7 @@ EAP and PEAP are both authentication frameworks used in wireless networks and Po PEAP, on the other hand, is a version of EAP designed to enhance security by encapsulating the EAP communication within a secure TLS (Transport Layer Security) tunnel. This tunnel protects the authentication process from eavesdropping and man-in-the-middle attacks. PEAP requires a server-side certificate to establish the TLS tunnel, but it does not require client-side certificates, making it easier to deploy while still ensuring secure transmission of credentials. PEAP is widely used in wireless networks to provide a secure authentication mechanism that protects user credentials during the authentication process. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Extensible Authentication Protocol (EAP) for network access](https://learn.microsoft.com/en-us/windows-server/networking/technologies/extensible-authentication-protocol/network-access?tabs=eap-tls%2Cserveruserprompt-eap-tls%2Ceap-sim) - [@article@What is Protected Extensible Authentication Protocol (PEAP)](https://www.techtarget.com/searchsecurity/definition/PEAP-Protected-Extensible-Authentication-Protocol) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/edr@QvHWrmMzO8IvNQ234E_wf.md b/src/data/roadmaps/cyber-security/content/edr@QvHWrmMzO8IvNQ234E_wf.md index 683d5d2f6..a3b6468b5 100644 --- a/src/data/roadmaps/cyber-security/content/edr@QvHWrmMzO8IvNQ234E_wf.md +++ b/src/data/roadmaps/cyber-security/content/edr@QvHWrmMzO8IvNQ234E_wf.md @@ -2,7 +2,7 @@ Endpoint Detection and Response (EDR) is a cybersecurity technology that provides continuous monitoring and response to threats at the endpoint level. It is designed to detect, investigate, and mitigate suspicious activities on endpoints such as laptops, desktops, and mobile devices. EDR solutions log and analyze behaviors on these devices to identify potential threats, such as malware or ransomware, that have bypassed traditional security measures like antivirus software. This technology equips security teams with the tools to quickly respond to and contain threats, minimizing the risk of a security breach spreading across the network. EDR systems are an essential component of modern cybersecurity strategies, offering advanced protection by utilizing real-time analytics, AI-driven automation, and comprehensive data recording. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is Endpoint Detection and Response (EDR)? - IBM](https://www.youtube.com/watch?v=55GaIolVVqI) -- [@article@What is Endpoint Detection and Response?](https://www.crowdstrike.com/cybersecurity-101/endpoint-security/endpoint-detection-and-response-edr/) \ No newline at end of file +- [@article@What is Endpoint Detection and Response?](https://www.crowdstrike.com/cybersecurity-101/endpoint-security/endpoint-detection-and-response-edr/) +- [@video@What is Endpoint Detection and Response (EDR)? - IBM](https://www.youtube.com/watch?v=55GaIolVVqI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/endpoint-security@LEgJtu1GZKOtoAXyOGWLE.md b/src/data/roadmaps/cyber-security/content/endpoint-security@LEgJtu1GZKOtoAXyOGWLE.md index d79ef60eb..9131f6249 100644 --- a/src/data/roadmaps/cyber-security/content/endpoint-security@LEgJtu1GZKOtoAXyOGWLE.md +++ b/src/data/roadmaps/cyber-security/content/endpoint-security@LEgJtu1GZKOtoAXyOGWLE.md @@ -2,7 +2,7 @@ Endpoint security focuses on protecting individual devices that connect to a network, such as computers, smartphones, tablets, and IoT devices. It's a critical component of modern cybersecurity strategy, as endpoints often serve as entry points for cyberattacks. This approach involves deploying and managing security software on each device, including antivirus programs, firewalls, and intrusion detection systems. Advanced endpoint protection solutions may incorporate machine learning and behavioral analysis to detect and respond to novel threats. Endpoint security also encompasses patch management, device encryption, and access controls to mitigate risks associated with lost or stolen devices. As remote work and bring-your-own-device (BYOD) policies become more prevalent, endpoint security has evolved to include cloud-based management and zero-trust architectures, ensuring that security extends beyond the traditional network perimeter to protect data and systems regardless of device location or ownership. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Endpoint Security?](https://www.crowdstrike.com/cybersecurity-101/endpoint-security/) - [@video@Endpoints are the IT Frontdoor - Guard them!](https://www.youtube.com/watch?v=Njqid_JpqTs) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/eradication@N17xAIo7sgbB0nrIDMWju.md b/src/data/roadmaps/cyber-security/content/eradication@N17xAIo7sgbB0nrIDMWju.md index f378de4af..87093a9bc 100644 --- a/src/data/roadmaps/cyber-security/content/eradication@N17xAIo7sgbB0nrIDMWju.md +++ b/src/data/roadmaps/cyber-security/content/eradication@N17xAIo7sgbB0nrIDMWju.md @@ -2,7 +2,7 @@ Eradication in cybersecurity refers to the critical phase of incident response that follows containment, focusing on completely removing the threat from the affected systems. This process involves thoroughly identifying and eliminating all components of the attack, including malware, backdoors, and any alterations made to the system. Security teams meticulously analyze logs, conduct forensic examinations, and use specialized tools to ensure no traces of the threat remain. Eradication may require reimaging compromised systems, patching vulnerabilities, updating software, and resetting compromised credentials. It's a complex and often time-consuming process that demands precision to prevent reinfection or lingering security gaps. Successful eradication is crucial for restoring system integrity and preventing future incidents based on the same attack vector. After eradication, organizations typically move to the recovery phase, rebuilding and strengthening their systems with lessons learned from the incident. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Eradication - AWS](https://docs.aws.amazon.com/whitepapers/latest/aws-security-incident-response-guide/eradication.html) - [@article@What is eradication in Cybersecurity?](https://heimdalsecurity.com/blog/what-is-eradication-in-cybersecurity/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/esxi@BisNooct1vJDKaBKsGR7_.md b/src/data/roadmaps/cyber-security/content/esxi@BisNooct1vJDKaBKsGR7_.md index 0fbae7227..82f1a760c 100644 --- a/src/data/roadmaps/cyber-security/content/esxi@BisNooct1vJDKaBKsGR7_.md +++ b/src/data/roadmaps/cyber-security/content/esxi@BisNooct1vJDKaBKsGR7_.md @@ -2,7 +2,7 @@ VMware ESXi is a Type 1 hypervisor and the core building block for VMware's virtualization technology. It represents a bare-metal hypervisor, which means it is installed directly onto your physical server's hardware, without the need for a supporting operating system. This results in elevated performance, reduced overhead, and efficient resource allocation. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@What is ESXi?](https://www.vmware.com/products/cloud-infrastructure/esxi-and-esx) - [@article@What is VMWare ESXi?](https://www.liquidweb.com/blog/what-is-vmware-esxi/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/event-logs@KbFwL--xF-eYjGy8PZdrM.md b/src/data/roadmaps/cyber-security/content/event-logs@KbFwL--xF-eYjGy8PZdrM.md index f5228f106..5371bf4e4 100644 --- a/src/data/roadmaps/cyber-security/content/event-logs@KbFwL--xF-eYjGy8PZdrM.md +++ b/src/data/roadmaps/cyber-security/content/event-logs@KbFwL--xF-eYjGy8PZdrM.md @@ -2,7 +2,7 @@ Event logs are digital records that document activities and occurrences within computer systems and networks. They serve as a crucial resource for cybersecurity professionals, providing a chronological trail of system operations, user actions, and security-related events. These logs capture a wide range of information, including login attempts, file access, system changes, and application errors. In the context of security, event logs play a vital role in threat detection, incident response, and forensic analysis. They help identify unusual patterns, track potential security breaches, and reconstruct the sequence of events during an attack. Effective log management involves collecting logs from various sources, securely storing them, and implementing tools for log analysis and correlation. However, the sheer volume of log data can be challenging to manage, requiring advanced analytics and automation to extract meaningful insights and detect security incidents in real-time. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is an Event Log?](https://www.crowdstrike.com/cybersecurity-101/observability/event-log/) - [@article@What are event logs and why do they matter?](https://www.blumira.com/blog/what-are-event-logs-and-why-do-they-matter) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/evil-twin@O1fY2n40yjZtJUEeoItKr.md b/src/data/roadmaps/cyber-security/content/evil-twin@O1fY2n40yjZtJUEeoItKr.md index 6f4b6da0c..4702cecbe 100644 --- a/src/data/roadmaps/cyber-security/content/evil-twin@O1fY2n40yjZtJUEeoItKr.md +++ b/src/data/roadmaps/cyber-security/content/evil-twin@O1fY2n40yjZtJUEeoItKr.md @@ -1,8 +1,8 @@ -# What is Evil Twin attack - -An Evil Twin is a type of wireless network attack where an attacker sets up a rogue Wi-Fi access point that mimics a legitimate Wi-Fi network. The rogue access point has the same SSID (network name) as the legitimate network, making it difficult for users to distinguish between the two. The attacker's goal is to trick users into connecting to the rogue access point, allowing them to intercept sensitive information, inject malware, or launch other types of attacks. - -Learn more from the following resources: - -- [@article@What is an Evil Twin attack?](https://www.techtarget.com/searchsecurity/definition/evil-twin) +# What is Evil Twin attack + +An Evil Twin is a type of wireless network attack where an attacker sets up a rogue Wi-Fi access point that mimics a legitimate Wi-Fi network. The rogue access point has the same SSID (network name) as the legitimate network, making it difficult for users to distinguish between the two. The attacker's goal is to trick users into connecting to the rogue access point, allowing them to intercept sensitive information, inject malware, or launch other types of attacks. + +Visit the following resources to learn more: + +- [@article@What is an Evil Twin attack?](https://www.techtarget.com/searchsecurity/definition/evil-twin) - [@video@How Hackers Can Grab Your Passwords Over Wi-Fi with Evil Twin Attacks](https://www.youtube.com/watch?v=HyxQqDq3qs4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/false-negative--false-positive@XwRCZf-yHJsXVjaRfb3R4.md b/src/data/roadmaps/cyber-security/content/false-negative--false-positive@XwRCZf-yHJsXVjaRfb3R4.md index 5d91b885a..1b0e04f23 100644 --- a/src/data/roadmaps/cyber-security/content/false-negative--false-positive@XwRCZf-yHJsXVjaRfb3R4.md +++ b/src/data/roadmaps/cyber-security/content/false-negative--false-positive@XwRCZf-yHJsXVjaRfb3R4.md @@ -6,7 +6,7 @@ A false negative occurs when the security tool fails to detect an actual threat To have an effective cybersecurity system, security professionals aim to maximize true positives and true negatives, while minimizing false positives and false negatives. Balancing these aspects ensures that the security tools maintain their effectiveness without causing undue disruptions to a user's experience. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Difference Between False Positive and False Negative](https://www.differencebetween.net/science/difference-between-false-positive-and-false-negative/) - [@video@What is a false positive virus?](https://www.youtube.com/watch?v=WrcAGBvIT14) diff --git a/src/data/roadmaps/cyber-security/content/firewall--nextgen-firewall@tWDo5R3KU5KOjDdtv801x.md b/src/data/roadmaps/cyber-security/content/firewall--nextgen-firewall@tWDo5R3KU5KOjDdtv801x.md index 3e1a989ae..36b679c45 100644 --- a/src/data/roadmaps/cyber-security/content/firewall--nextgen-firewall@tWDo5R3KU5KOjDdtv801x.md +++ b/src/data/roadmaps/cyber-security/content/firewall--nextgen-firewall@tWDo5R3KU5KOjDdtv801x.md @@ -4,7 +4,7 @@ Firewalls are network security devices that monitor and control incoming and out Next-generation firewalls (NGFWs) build upon this foundation, offering more advanced features to address modern cyber threats. NGFWs incorporate deep packet inspection, application-level filtering, and integrated intrusion prevention systems. They can identify and control applications regardless of port or protocol, enabling more granular security policies. NGFWs often include additional security functions such as SSL/TLS inspection, antivirus scanning, and threat intelligence integration. This evolution allows for more comprehensive network protection, better visibility into network traffic, and improved defense against sophisticated attacks in today's complex and dynamic threat landscape. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Firewall?](https://www.kaspersky.com/resource-center/definitions/firewall) -- [@article@What is a next-generation firewall (NGFW)?](https://www.cloudflare.com/en-gb/learning/security/what-is-next-generation-firewall-ngfw/) +- [@article@What is a next-generation firewall (NGFW)?](https://www.cloudflare.com/en-gb/learning/security/what-is-next-generation-firewall-ngfw/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/firewall-logs@np0PwKy-EvIa_f_LC6Eem.md b/src/data/roadmaps/cyber-security/content/firewall-logs@np0PwKy-EvIa_f_LC6Eem.md index dfdf8a0cb..8d2034d8f 100644 --- a/src/data/roadmaps/cyber-security/content/firewall-logs@np0PwKy-EvIa_f_LC6Eem.md +++ b/src/data/roadmaps/cyber-security/content/firewall-logs@np0PwKy-EvIa_f_LC6Eem.md @@ -2,7 +2,7 @@ Firewall logs are detailed records of network traffic and security events captured by firewall devices. These logs provide crucial information about connection attempts, allowed and blocked traffic, and potential security incidents. They typically include data such as source and destination IP addresses, ports, protocols, timestamps, and the action taken by the firewall. Security professionals analyze these logs to monitor network activity, detect unusual patterns, investigate security breaches, and ensure policy compliance. Firewall logs are essential for troubleshooting network issues, optimizing security rules, and conducting forensic analysis after an incident. However, the volume of log data generated can be overwhelming, necessitating the use of log management tools and security information and event management (SIEM) systems to effectively process, correlate, and derive actionable insights from the logs. Regular review and analysis of firewall logs are critical practices in maintaining a robust security posture and responding promptly to potential threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Firewall Logging and Why is it Important?](https://cybriant.com/what-is-firewall-logging-and-why-is-it-important/) - [@video@Reviewing Firewall Logs](https://www.youtube.com/watch?v=XiJ30f8V_T4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ftk-imager@_jJhL1RtaqHJmlcWrd-Ak.md b/src/data/roadmaps/cyber-security/content/ftk-imager@_jJhL1RtaqHJmlcWrd-Ak.md index c12f7218b..9d6284cf8 100644 --- a/src/data/roadmaps/cyber-security/content/ftk-imager@_jJhL1RtaqHJmlcWrd-Ak.md +++ b/src/data/roadmaps/cyber-security/content/ftk-imager@_jJhL1RtaqHJmlcWrd-Ak.md @@ -2,7 +2,7 @@ FTK Imager is a popular and widely used free imaging tool developed by AccessData. It allows forensic analysts and IT professionals to create forensic images of digital devices and storage media. It is ideal for incident response and discovery as it helps in preserving and investigating digital evidence that is crucial for handling cyber security incidents. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Create Forensic Images with Exterro FTK Imager](https://www.exterro.com/digital-forensics-software/ftk-imager) -- [@video@Imaging a Directory Using FTK Imager](https://www.youtube.com/watch?v=trWDlPif84o) +- [@video@Imaging a Directory Using FTK Imager](https://www.youtube.com/watch?v=trWDlPif84o) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ftp-vs-sftp@9Z6HPHPj4escSVDWftFEx.md b/src/data/roadmaps/cyber-security/content/ftp-vs-sftp@9Z6HPHPj4escSVDWftFEx.md index 3681ab578..ae3b59b11 100644 --- a/src/data/roadmaps/cyber-security/content/ftp-vs-sftp@9Z6HPHPj4escSVDWftFEx.md +++ b/src/data/roadmaps/cyber-security/content/ftp-vs-sftp@9Z6HPHPj4escSVDWftFEx.md @@ -2,7 +2,7 @@ File Transfer Protocol (FTP) and Secure File Transfer Protocol (SFTP) are both used for transferring files over networks, but they differ significantly in terms of security. FTP is an older protocol that transmits data in plain text, making it vulnerable to interception and unauthorized access. It typically uses separate connections for commands and data transfer, operating on ports 20 and 21. SFTP, on the other hand, is a secure version that runs over the SSH protocol, encrypting both authentication credentials and file transfers. It uses a single connection on port 22, providing better firewall compatibility. SFTP offers stronger authentication methods and integrity checking, making it the preferred choice for secure file transfers in modern networks. While FTP is simpler and may be faster in some scenarios, its lack of built-in encryption makes it unsuitable for transmitting sensitive information, leading many organizations to adopt SFTP or other secure alternatives to protect their data during transit. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@FTP defined and explained](https://www.fortinet.com/resources/cyberglossary/file-transfer-protocol-ftp-meaning) -- [@video@How to use SFTP commands](https://www.youtube.com/watch?v=22lBJIfO9qQ) +- [@video@How to use SFTP commands](https://www.youtube.com/watch?v=22lBJIfO9qQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ftp@ftYYMxRpVer-jgSswHLNa.md b/src/data/roadmaps/cyber-security/content/ftp@ftYYMxRpVer-jgSswHLNa.md index b8d5eb939..f67cc8ae7 100644 --- a/src/data/roadmaps/cyber-security/content/ftp@ftYYMxRpVer-jgSswHLNa.md +++ b/src/data/roadmaps/cyber-security/content/ftp@ftYYMxRpVer-jgSswHLNa.md @@ -4,8 +4,8 @@ FTP is a standard network protocol used to transfer files from one host to anoth FTP operates on a client-server model, where one computer acts as the client (the sender or requester) and the other acts as the server (the receiver or provider). The client initiates a connection to the server, usually by providing a username and password for authentication, and then requests a file transfer. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@File Transfer Protocol](https://en.wikipedia.org/wiki/File_Transfer_Protocol) -- [@video@What is FTP?](https://www.youtube.com/watch?v=HI0Oh4NJqcI) -- [@article@FTP meaning and uses](https://www.investopedia.com/terms/f/ftp-file-transfer-protocol.asp) \ No newline at end of file +- [@article@FTP meaning and uses](https://www.investopedia.com/terms/f/ftp-file-transfer-protocol.asp) +- [@video@What is FTP?](https://www.youtube.com/watch?v=HI0Oh4NJqcI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/fundamental-it-skills@oimYzZYFXKjgvc7D4c-2u.md b/src/data/roadmaps/cyber-security/content/fundamental-it-skills@oimYzZYFXKjgvc7D4c-2u.md index d811bc7a7..97d57802c 100644 --- a/src/data/roadmaps/cyber-security/content/fundamental-it-skills@oimYzZYFXKjgvc7D4c-2u.md +++ b/src/data/roadmaps/cyber-security/content/fundamental-it-skills@oimYzZYFXKjgvc7D4c-2u.md @@ -2,9 +2,9 @@ Fundamental IT skills form the backbone of cybersecurity proficiency and encompass a broad range of technical knowledge. These skills include understanding computer hardware and software, networking concepts, and operating systems (particularly Windows and Linux). Proficiency in at least one programming language, such as Python or JavaScript, is increasingly important for automation and scripting tasks. Database management, including SQL, is crucial for handling and securing data. Knowledge of cloud computing platforms like AWS or Azure is becoming essential as organizations migrate to cloud environments. Familiarity with basic cybersecurity concepts such as encryption, access control, and common attack vectors provides a foundation for more advanced security work. Additionally, troubleshooting skills, the ability to interpret logs, and a basic understanding of web technologies are vital. These fundamental IT skills enable cybersecurity professionals to effectively protect systems, identify vulnerabilities, and respond to incidents in increasingly complex technological landscapes. -Learn more from the following resources: +Visit the following resources to learn more: -- [@course@Cisco Networking Academy: Introduction to Cybersecurity](https://www.netacad.com/courses/introduction-to-cybersecurity?courseLang=en-US) +- [@course@Cisco Networking Academy: Introduction to Cybersecurity](https://www.netacad.com/courses/introduction-to-cybersecurity?courseLang=en-US) - [@article@8 In-Demand IT Skills to Boost Your Resume in 2025](https://www.coursera.org/articles/key-it-skills-for-your-career) - [@article@Top IT Skills in Demand](https://www.comptia.org/en/blog/top-it-skills-in-demand) -- [@article@IT Skills: Definition and Examples](https://www.indeed.com/career-advice/finding-a-job/it-skills) +- [@article@IT Skills: Definition and Examples](https://www.indeed.com/career-advice/finding-a-job/it-skills) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/gcp@tOLA5QPKi6LHl1ljsOMwX.md b/src/data/roadmaps/cyber-security/content/gcp@tOLA5QPKi6LHl1ljsOMwX.md index 38f418ad4..86eb6382f 100644 --- a/src/data/roadmaps/cyber-security/content/gcp@tOLA5QPKi6LHl1ljsOMwX.md +++ b/src/data/roadmaps/cyber-security/content/gcp@tOLA5QPKi6LHl1ljsOMwX.md @@ -2,7 +2,7 @@ Google Cloud Platform (GCP) is a collection of cloud computing services offered by Google, which provides infrastructure and platform services to businesses or individuals. It enables users to either build their own applications or services on the provided resources, or utilize ready-to-use services provided by Google. GCP covers a wide range of services, including (but not limited to) compute, storage, databases, networking, and many more. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Google Cloud Platform](https://cloud.google.com) - [@official@Cloud Computing, Hosting Services, and APIs](https://cloud.google.com/gcp) diff --git a/src/data/roadmaps/cyber-security/content/giac@ZiUT-lyIBfHTzG-dwSy96.md b/src/data/roadmaps/cyber-security/content/giac@ZiUT-lyIBfHTzG-dwSy96.md index 91eddeec1..e2131f37d 100644 --- a/src/data/roadmaps/cyber-security/content/giac@ZiUT-lyIBfHTzG-dwSy96.md +++ b/src/data/roadmaps/cyber-security/content/giac@ZiUT-lyIBfHTzG-dwSy96.md @@ -2,7 +2,7 @@ GIAC is a globally recognized organization that provides certifications for information security professionals. Established in 1999, its primary aim is to validate the knowledge and skills of professionals in various cybersecurity domains. GIAC certifications focus on practical and hands-on abilities to ensure that certified individuals possess the necessary expertise to tackle real-world cybersecurity challenges. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@GIAC](https://www.giac.org/) -- [@official@Get Certified - GIAC](https://www.giac.org/get-certified/?msc=main-nav) +- [@official@Get Certified - GIAC](https://www.giac.org/get-certified/?msc=main-nav) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/go@jehVvdz8BnruKjqHMKu5v.md b/src/data/roadmaps/cyber-security/content/go@jehVvdz8BnruKjqHMKu5v.md index 1f9c88563..61aa5e281 100644 --- a/src/data/roadmaps/cyber-security/content/go@jehVvdz8BnruKjqHMKu5v.md +++ b/src/data/roadmaps/cyber-security/content/go@jehVvdz8BnruKjqHMKu5v.md @@ -2,8 +2,8 @@ Go, also known as Golang, is an open-source programming language created by Google. Launched in 2009, it was designed to overcome issues present in other languages and offer a more secure, robust, and efficient development experience. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated Go Roadmap](https://roadmap.sh/golang) - [@video@Go in 100 seconds](https://www.youtube.com/watch?v=446E-r0rXHI) -- [@video@Go Tutorial for beginners](https://www.youtube.com/watch?v=yyUHQIec83I) +- [@video@Go Tutorial for beginners](https://www.youtube.com/watch?v=yyUHQIec83I) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/google-drive@fTZ4PqH-AMhYA_65w4wFO.md b/src/data/roadmaps/cyber-security/content/google-drive@fTZ4PqH-AMhYA_65w4wFO.md index 08fea7184..36230a45a 100644 --- a/src/data/roadmaps/cyber-security/content/google-drive@fTZ4PqH-AMhYA_65w4wFO.md +++ b/src/data/roadmaps/cyber-security/content/google-drive@fTZ4PqH-AMhYA_65w4wFO.md @@ -2,6 +2,6 @@ Google Drive is a cloud-based storage solution provided by Google, which offers users the ability to store, share, and collaborate on files and documents across different platforms and devices. It is integrated with Google's productivity suite, including Google Docs, Sheets, Slides, and Forms, allowing seamless collaboration with team members in real-time. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Google Drive](https://drive.google.com) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/google-suite@IOK_FluAv34j3Tj_NvwdO.md b/src/data/roadmaps/cyber-security/content/google-suite@IOK_FluAv34j3Tj_NvwdO.md index ee116848f..6ea17c61b 100644 --- a/src/data/roadmaps/cyber-security/content/google-suite@IOK_FluAv34j3Tj_NvwdO.md +++ b/src/data/roadmaps/cyber-security/content/google-suite@IOK_FluAv34j3Tj_NvwdO.md @@ -2,6 +2,6 @@ Google Workspace, formerly known as G Suite, is a collection of cloud-based productivity and collaboration tools developed by Google. It includes popular applications such as Gmail for email, Google Drive for file storage and sharing, Google Docs for document creation and editing, Google Sheets for spreadsheets, and Google Meet for video conferencing. From a cybersecurity perspective, Google Workspace presents both advantages and challenges. It offers robust built-in security features like two-factor authentication, encryption of data in transit and at rest, and advanced threat protection. However, its cloud-based nature means organizations must carefully manage access controls, data sharing policies, and compliance with various regulations. Security professionals must be vigilant about potential phishing attacks targeting Google accounts, data leakage through improper sharing settings, and the risks associated with third-party app integrations. Understanding how to properly configure and monitor Google Workspace is crucial for maintaining the security of an organization's collaborative environment and protecting sensitive information stored within these widely-used tools. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Google Workspace](https://workspace.google.com/intl/en_uk/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/gpen@t4h9rEKWz5Us0qJKXhxlX.md b/src/data/roadmaps/cyber-security/content/gpen@t4h9rEKWz5Us0qJKXhxlX.md index 9369ba315..a2b0052e1 100644 --- a/src/data/roadmaps/cyber-security/content/gpen@t4h9rEKWz5Us0qJKXhxlX.md +++ b/src/data/roadmaps/cyber-security/content/gpen@t4h9rEKWz5Us0qJKXhxlX.md @@ -2,7 +2,7 @@ The GIAC Penetration Tester (GPEN) certification is an advanced-level credential designed for professionals who want to demonstrate their expertise in the field of penetration testing and ethical hacking. Created by the Global Information Assurance Certification (GIAC) organization, GPEN validates an individual's ability to conduct legal, systematic, and effective penetration tests to assess the security of computer networks, systems, and applications. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@GPEN Certification](https://www.giac.org/certifications/penetration-tester-gpen/) - [@article@What is the GPEN Certification?](https://hackernoon.com/what-is-the-giac-penetration-tester-gpen-certification) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/grep@Dfz-6aug0juUpMmOJLCJ9.md b/src/data/roadmaps/cyber-security/content/grep@Dfz-6aug0juUpMmOJLCJ9.md index 6f9adbba3..71312c9f7 100644 --- a/src/data/roadmaps/cyber-security/content/grep@Dfz-6aug0juUpMmOJLCJ9.md +++ b/src/data/roadmaps/cyber-security/content/grep@Dfz-6aug0juUpMmOJLCJ9.md @@ -2,7 +2,7 @@ Grep is a powerful command-line tool used for searching and filtering text, primarily in Unix-based systems. Short for "global regular expression print", grep is widely used for its ability to search through files and directories, and find lines that match a given pattern. It is particularly useful for incident response and discovery tasks, as it helps you identify specific occurrences of potentially malicious activities within large amounts of log data. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@grep command in Linux](https://www.digitalocean.com/community/tutorials/grep-command-in-linux-unix) - [@video@The grep command](https://www.youtube.com/watch?v=Tc_jntovCM0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/group-policy@FxuMJmDoDkIsPFp2iocFg.md b/src/data/roadmaps/cyber-security/content/group-policy@FxuMJmDoDkIsPFp2iocFg.md index c82b54808..a4202afcb 100644 --- a/src/data/roadmaps/cyber-security/content/group-policy@FxuMJmDoDkIsPFp2iocFg.md +++ b/src/data/roadmaps/cyber-security/content/group-policy@FxuMJmDoDkIsPFp2iocFg.md @@ -6,7 +6,7 @@ Group Policy works by maintaining a hierarchy of _Group Policy Objects_ (GPOs), When a user logs in or a computer starts up, the relevant GPOs from the AD structure get evaluated to determine the final policy settings. GPOs are processed in a specific order — local, site, domain, and OUs, with the latter having the highest priority. This order ensures that you can have a baseline set of policies at the domain level, with more specific policies applied at the OU level, as needed. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Group Policy overview](https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/hh831791(v=ws.11)) -- [@video@Learn Windows Group Policy the easy way!](https://www.youtube.com/watch?v=rEhTzP-ScBo) +- [@video@Learn Windows Group Policy the easy way!](https://www.youtube.com/watch?v=rEhTzP-ScBo) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/gsec@nlmATCTgHoIoMcEOW8bUW.md b/src/data/roadmaps/cyber-security/content/gsec@nlmATCTgHoIoMcEOW8bUW.md index 010fee04b..07d41ad15 100644 --- a/src/data/roadmaps/cyber-security/content/gsec@nlmATCTgHoIoMcEOW8bUW.md +++ b/src/data/roadmaps/cyber-security/content/gsec@nlmATCTgHoIoMcEOW8bUW.md @@ -2,6 +2,6 @@ The GIAC Security Essentials Certification (GSEC) is an advanced cybersecurity certification that demonstrates an individual's knowledge and skills in addressing security threats and vulnerabilities in various systems. Developed by the Global Information Assurance Certification (GIAC), this certification is suitable for security professionals, IT managers, and network administrators who want to enhance their expertise in the core cybersecurity concepts and practices. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@GSEC Certification](https://www.giac.org/certifications/security-essentials-gsec/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/gtfobins@Jd9t8e9r29dHRsN40dDOk.md b/src/data/roadmaps/cyber-security/content/gtfobins@Jd9t8e9r29dHRsN40dDOk.md index d439785e7..8c55a5b7f 100644 --- a/src/data/roadmaps/cyber-security/content/gtfobins@Jd9t8e9r29dHRsN40dDOk.md +++ b/src/data/roadmaps/cyber-security/content/gtfobins@Jd9t8e9r29dHRsN40dDOk.md @@ -2,7 +2,7 @@ GTFOBins (GTFOBINS) is a curated list of Unix binaries that can be exploited by attackers to bypass local security restrictions on a misconfigured system. It provides a detailed index of commands and scripts, demonstrating how certain binaries, when used improperly, can enable privilege escalation, file manipulation, and other unauthorized activities, thus serving as a resource for both security professionals to understand potential vulnerabilities and for attackers to identify and exploit weaknesses. -Learn more from the following resources: +Visit the following resources to learn more: - [@opensource@GTFOBins/GTFOBins.github.io](https://gtfobins.github.io/) - [@video@Mastering Privilege Escalation: A Comprehensive Guide on GTFOBins](https://www.youtube.com/watch?v=gx6CTtWohLQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/guestos@LocGETHz6ANYinNd5ZLsS.md b/src/data/roadmaps/cyber-security/content/guestos@LocGETHz6ANYinNd5ZLsS.md index a2c9d7452..2414cfb48 100644 --- a/src/data/roadmaps/cyber-security/content/guestos@LocGETHz6ANYinNd5ZLsS.md +++ b/src/data/roadmaps/cyber-security/content/guestos@LocGETHz6ANYinNd5ZLsS.md @@ -2,7 +2,7 @@ A Guest Operating System (Guest OS) refers to an operating system that runs within a virtual machine (VM) environment, managed by a hypervisor or virtual machine monitor. In virtualization technology, the Guest OS operates as if it were running on dedicated physical hardware, but it's actually sharing resources with the host system and potentially other guest systems. This concept is crucial in cybersecurity for several reasons. It allows for isolation of systems, enabling secure testing environments for malware analysis or vulnerability assessments. Guest OSes can be quickly deployed, cloned, or reset, facilitating rapid incident response and recovery. However, they also introduce new security considerations, such as potential vulnerabilities in the hypervisor layer, escape attacks where malware breaks out of the VM, and resource contention issues. Properly configuring, patching, and monitoring Guest OSes is essential for maintaining a secure virtualized infrastructure, balancing the benefits of flexibility and isolation with the need for robust security measures. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Guest Operating System?](https://www.techtarget.com/searchitoperations/definition/guest-OS-guest-operating-system) -- [@article@Guest Operating System](https://nordvpn.com/cybersecurity/glossary/guest-operating-system/?srsltid=AfmBOop0L-VFCtuYvEBQgHy7dCIa3sfzNVa-Zn6l0SniAYDpftfOgH7N) +- [@article@Guest Operating System](https://nordvpn.com/cybersecurity/glossary/guest-operating-system/?srsltid=AfmBOop0L-VFCtuYvEBQgHy7dCIa3sfzNVa-Zn6l0SniAYDpftfOgH7N) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/gwapt@rwniCTWfYpKP5gi02Pa9f.md b/src/data/roadmaps/cyber-security/content/gwapt@rwniCTWfYpKP5gi02Pa9f.md index 7060a8a4b..9d0a85c91 100644 --- a/src/data/roadmaps/cyber-security/content/gwapt@rwniCTWfYpKP5gi02Pa9f.md +++ b/src/data/roadmaps/cyber-security/content/gwapt@rwniCTWfYpKP5gi02Pa9f.md @@ -2,6 +2,6 @@ The GIAC Web Application Penetration Tester (GWAPT) certification validates an individual's ability to perform in-depth web application security assessments and exploit vulnerabilities. GWAPT focuses on using ethical hacking methodologies to conduct web application penetration testing with the goal of identifying, evaluating, and mitigating security risks. -Learn more from the following resources: +Visit the following resources to learn more: -- [@official@GWAPT Certification](https://www.giac.org/certifications/web-application-penetration-tester-gwapt/) +- [@official@GWAPT Certification](https://www.giac.org/certifications/web-application-penetration-tester-gwapt/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hackthebox@wkuE_cChPZT2MHyGjUuU4.md b/src/data/roadmaps/cyber-security/content/hackthebox@wkuE_cChPZT2MHyGjUuU4.md index c25d56871..9b09e71b4 100644 --- a/src/data/roadmaps/cyber-security/content/hackthebox@wkuE_cChPZT2MHyGjUuU4.md +++ b/src/data/roadmaps/cyber-security/content/hackthebox@wkuE_cChPZT2MHyGjUuU4.md @@ -2,7 +2,7 @@ Hack The Box (HTB) is a popular online platform designed for security enthusiasts, penetration testers, and ethical hackers to develop and enhance their skills by engaging in real-world cybersecurity challenges. The platform provides a wide array of virtual machines (VMs), known as "boxes," each with a unique set of security vulnerabilities to exploit. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Hack The Box](https://www.hackthebox.com/) - [@video@I played HTB for 30 days, heres what I learnt](https://www.youtube.com/watch?v=bPv5pb7AcYs) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hashing@0UZmAECMnfioi-VeXcvg8.md b/src/data/roadmaps/cyber-security/content/hashing@0UZmAECMnfioi-VeXcvg8.md index 2d338f146..7a88f07d9 100644 --- a/src/data/roadmaps/cyber-security/content/hashing@0UZmAECMnfioi-VeXcvg8.md +++ b/src/data/roadmaps/cyber-security/content/hashing@0UZmAECMnfioi-VeXcvg8.md @@ -2,9 +2,9 @@ Hashing is a cryptographic process that converts input data of any size into a fixed-size string of characters, typically a hexadecimal number. This output, called a hash value or digest, is unique to the input data and serves as a digital fingerprint. Unlike encryption, hashing is a one-way process, meaning it's computationally infeasible to reverse the hash to obtain the original data. In cybersecurity, hashing is widely used for password storage, data integrity verification, and digital signatures. Common hashing algorithms include MD5 (now considered insecure), SHA-256, and bcrypt. Hashing helps detect unauthorized changes to data, as even a small alteration in the input produces a significantly different hash value. However, the strength of a hash function is crucial, as weak algorithms can be vulnerable to collision attacks, where different inputs produce the same hash, potentially compromising security measures relying on the uniqueness of hash values. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Hashing Explained](https://www.youtube.com/watch?v=EOe1XUykdP4) - [@article@What is hashing and how does it work?](https://www.techtarget.com/searchdatamanagement/definition/hashing) - [@article@Hashing Algorithm Overview: Types, Methodologies & Usage](https://www.okta.com/identity-101/hashing-algorithms/) -- [@article@Understanding Cryptography Types:](https://geekflare.com/cybersecurity/cryptography-types/) \ No newline at end of file +- [@article@Understanding Cryptography Types:](https://geekflare.com/cybersecurity/cryptography-types/) +- [@video@Hashing Explained](https://www.youtube.com/watch?v=EOe1XUykdP4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/head@VNmrb5Dm4UKUgL8JBfhnE.md b/src/data/roadmaps/cyber-security/content/head@VNmrb5Dm4UKUgL8JBfhnE.md index af23ace68..5d13ec393 100644 --- a/src/data/roadmaps/cyber-security/content/head@VNmrb5Dm4UKUgL8JBfhnE.md +++ b/src/data/roadmaps/cyber-security/content/head@VNmrb5Dm4UKUgL8JBfhnE.md @@ -2,7 +2,7 @@ `head` is a versatile command-line utility that enables users to display the first few lines of a text file, by default it shows the first 10 lines. In case of incident response and cyber security, it is a useful tool to quickly analyze logs or configuration files while investigating potential security breaches or malware infections in a system. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Head and Tail commands](https://www.youtube.com/watch?v=5EqL6Fc7NNw) -- [@article@The Head and Tail commands in Linux](https://www.baeldung.com/linux/head-tail-commands) \ No newline at end of file +- [@article@The Head and Tail commands in Linux](https://www.baeldung.com/linux/head-tail-commands) +- [@video@Head and Tail commands](https://www.youtube.com/watch?v=5EqL6Fc7NNw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hips@l5EnhOCnkN-RKvgrS9ylH.md b/src/data/roadmaps/cyber-security/content/hips@l5EnhOCnkN-RKvgrS9ylH.md index 0850c34b6..f77a67134 100644 --- a/src/data/roadmaps/cyber-security/content/hips@l5EnhOCnkN-RKvgrS9ylH.md +++ b/src/data/roadmaps/cyber-security/content/hips@l5EnhOCnkN-RKvgrS9ylH.md @@ -7,4 +7,4 @@ HIPS operates at the host level, providing a last line of defense by securing th Visit the following resources to learn more: - [@article@What is an Intrusion Prevention System?](https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-prevention-system-ips) -- [@article@What is Host intrusion prevention system (HIPS)?](https://cyberpedia.reasonlabs.com/EN/host%20intrusion%20prevention%20system%20(hips).html) +- [@article@What is Host intrusion prevention system (HIPS)?](https://cyberpedia.reasonlabs.com/EN/host%20intrusion%20prevention%20system%20(hips).html) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/honeypots@bj5YX8zhlam0yoNckL8e4.md b/src/data/roadmaps/cyber-security/content/honeypots@bj5YX8zhlam0yoNckL8e4.md index b0feb903c..32c73a367 100644 --- a/src/data/roadmaps/cyber-security/content/honeypots@bj5YX8zhlam0yoNckL8e4.md +++ b/src/data/roadmaps/cyber-security/content/honeypots@bj5YX8zhlam0yoNckL8e4.md @@ -2,7 +2,7 @@ Honeypots are decoy systems or networks designed to attract and detect unauthorized access attempts by cybercriminals. These intentionally vulnerable resources mimic legitimate targets, allowing security professionals to study attack techniques, gather threat intelligence, and divert attackers from actual critical systems. Honeypots can range from low-interaction systems that simulate basic services to high-interaction ones that replicate entire network environments. They serve multiple purposes in cybersecurity: early warning systems for detecting new attack vectors, research tools for understanding attacker behavior, and diversions to waste hackers' time and resources. However, deploying honeypots requires careful consideration, as they can potentially introduce risks if not properly isolated from production environments. Advanced honeypots may incorporate machine learning to adapt to evolving threats and provide more convincing decoys. While honeypots are powerful tools for proactive defense, they should be part of a comprehensive security strategy rather than a standalone solution. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is a Honeypot?](https://www.youtube.com/watch?v=FtR9sFJlkSA) -- [@article@How Honeypots help security](https://www.kaspersky.com/resource-center/threats/what-is-a-honeypot) \ No newline at end of file +- [@article@How Honeypots help security](https://www.kaspersky.com/resource-center/threats/what-is-a-honeypot) +- [@video@What is a Honeypot?](https://www.youtube.com/watch?v=FtR9sFJlkSA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/host-based-firewall@jWl1VWkZn3n1G2eHq6EnX.md b/src/data/roadmaps/cyber-security/content/host-based-firewall@jWl1VWkZn3n1G2eHq6EnX.md index cfdbc38f5..e01e4f25d 100644 --- a/src/data/roadmaps/cyber-security/content/host-based-firewall@jWl1VWkZn3n1G2eHq6EnX.md +++ b/src/data/roadmaps/cyber-security/content/host-based-firewall@jWl1VWkZn3n1G2eHq6EnX.md @@ -2,7 +2,7 @@ A host-based firewall is a software application that runs directly on individual devices, such as computers, servers, or mobile devices, to control network traffic to and from that specific host. It acts as a security barrier, monitoring and filtering incoming and outgoing network connections based on predefined rules. Host-based firewalls provide an additional layer of protection beyond network firewalls, allowing for more granular control over each device's network activities. They can block unauthorized access attempts, prevent malware from communicating with command and control servers, and restrict applications from making unexpected network connections. This approach is particularly valuable in environments with mobile or remote workers, where devices may not always be protected by corporate network firewalls. However, managing host-based firewalls across numerous devices can be challenging, requiring careful policy configuration and regular updates to maintain effective security without impeding legitimate user activities. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a host-based firewall?](https://www.paloaltonetworks.com/cyberpedia/what-is-a-host-based-firewall) - [@video@Host-based Firewalls](https://www.youtube.com/watch?v=aRHhm980oaE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hostos@p7w3C94xjLwSMm5qA8XlL.md b/src/data/roadmaps/cyber-security/content/hostos@p7w3C94xjLwSMm5qA8XlL.md index 721c3d73b..77869c695 100644 --- a/src/data/roadmaps/cyber-security/content/hostos@p7w3C94xjLwSMm5qA8XlL.md +++ b/src/data/roadmaps/cyber-security/content/hostos@p7w3C94xjLwSMm5qA8XlL.md @@ -2,7 +2,7 @@ A Host Operating System (Host OS) refers to the primary operating system installed directly on a computer's hardware, managing the physical resources and providing a platform for running applications and, in virtualized environments, supporting virtual machines. In cybersecurity, the Host OS plays a critical role as it forms the foundation of the system's security posture. It's responsible for implementing core security features such as access controls, system hardening, and patch management. The Host OS often runs the hypervisor software in virtualized environments, making its security crucial for protecting all guest operating systems and applications running on top of it. Vulnerabilities in the Host OS can potentially compromise all hosted virtual machines and services. Therefore, securing the Host OS through regular updates, proper configuration, and robust monitoring is essential for maintaining the overall security of both physical and virtualized IT infrastructures. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Host Operating System Definition](https://nordvpn.com/cybersecurity/glossary/host-operating-system/) - [@article@Host vs Guest OS](https://www.datto.com/blog/whats-the-difference-host-vs-guest-os/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hping@Cclbt4bNfkHwFwZOvJuLK.md b/src/data/roadmaps/cyber-security/content/hping@Cclbt4bNfkHwFwZOvJuLK.md index ce86ce535..fcc9000dd 100644 --- a/src/data/roadmaps/cyber-security/content/hping@Cclbt4bNfkHwFwZOvJuLK.md +++ b/src/data/roadmaps/cyber-security/content/hping@Cclbt4bNfkHwFwZOvJuLK.md @@ -2,7 +2,7 @@ hping is a versatile and powerful command-line based packet crafting tool that allows network administrators, security professionals, and system auditors to manipulate and analyze network packets at a granular level. hping can be used to perform stress testing, firewall testing, scanning, and packet generation, among other functionalities. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@hping](https://salsa.debian.org/debian/hping3) - [@article@What is hping?](https://www.okta.com/uk/identity-101/hping/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hr@05tH6WhToC615JTFN-TPc.md b/src/data/roadmaps/cyber-security/content/hr@05tH6WhToC615JTFN-TPc.md index 76f329800..cbae4ee14 100644 --- a/src/data/roadmaps/cyber-security/content/hr@05tH6WhToC615JTFN-TPc.md +++ b/src/data/roadmaps/cyber-security/content/hr@05tH6WhToC615JTFN-TPc.md @@ -2,7 +2,7 @@ Human Resources (HR) plays a crucial role in an organization's cybersecurity efforts, bridging the gap between people and technology. HR is responsible for developing and implementing policies that promote a security-conscious culture, including acceptable use policies, security awareness training, and insider threat prevention programs. They manage the employee lifecycle, from secure onboarding processes that include background checks and security clearances, to offboarding procedures that ensure proper revocation of access rights. HR collaborates with IT and security teams to define job roles and responsibilities related to data access, helping to enforce the principle of least privilege. They also handle sensitive employee data, making HR systems potential targets for cyber attacks. As such, HR professionals need to be well-versed in data protection regulations and best practices for safeguarding personal information. By fostering a security-minded workforce and aligning human capital management with cybersecurity objectives, HR significantly contributes to an organization's overall security posture. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is HR?](https://www.investopedia.com/terms/h/humanresources.asp) - [@article@What does HR actually do?](https://www.lucidchart.com/blog/what-does-hr-do) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/http--https@3Awm221OJHxXNLiL9yxfd.md b/src/data/roadmaps/cyber-security/content/http--https@3Awm221OJHxXNLiL9yxfd.md index 5412a5823..f0839472c 100644 --- a/src/data/roadmaps/cyber-security/content/http--https@3Awm221OJHxXNLiL9yxfd.md +++ b/src/data/roadmaps/cyber-security/content/http--https@3Awm221OJHxXNLiL9yxfd.md @@ -2,7 +2,7 @@ HTTP (Hypertext Transfer Protocol) and HTTPS (HTTP Secure) are fundamental protocols for web communication. HTTP is the foundation for data exchange on the World Wide Web, allowing browsers to request resources from web servers. However, HTTP transmits data in plain text, making it vulnerable to eavesdropping and man-in-the-middle attacks. HTTPS addresses these security concerns by adding a layer of encryption using SSL/TLS (Secure Sockets Layer/Transport Layer Security). This encryption protects the confidentiality and integrity of data in transit, securing sensitive information such as login credentials and financial transactions. HTTPS also provides authentication, ensuring that users are communicating with the intended website. In recent years, there has been a significant push towards HTTPS adoption across the web, with major browsers marking HTTP sites as "not secure." This shift has greatly enhanced overall web security, though it's important to note that HTTPS secures the connection, not necessarily the content of the website itself. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@An Overview of HTTP](https://developer.mozilla.org/en-US/docs/Web/HTTP/Overview) - [@article@What is HTTPS?](https://www.cloudflare.com/en-gb/learning/ssl/what-is-https/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hybrid@ywRlTuTfh5-NHnv4ZyW1t.md b/src/data/roadmaps/cyber-security/content/hybrid@ywRlTuTfh5-NHnv4ZyW1t.md index 535d11983..95a827a00 100644 --- a/src/data/roadmaps/cyber-security/content/hybrid@ywRlTuTfh5-NHnv4ZyW1t.md +++ b/src/data/roadmaps/cyber-security/content/hybrid@ywRlTuTfh5-NHnv4ZyW1t.md @@ -2,7 +2,7 @@ Hybrid cloud architecture combines elements of both public and private cloud environments, allowing organizations to leverage the benefits of each while maintaining flexibility and control. This model enables businesses to keep sensitive data and critical applications in a private cloud or on-premises infrastructure while utilizing public cloud resources for less sensitive operations or to handle peak demand. From a cybersecurity perspective, hybrid clouds present unique challenges and opportunities. They require careful management of data flow between environments, robust identity and access management across multiple platforms, and consistent security policies. The complexity of hybrid setups can increase the attack surface, necessitating advanced security tools and practices such as cloud access security brokers (CASBs) and multi-factor authentication. However, hybrid clouds also offer advantages like the ability to implement data residency requirements and maintain greater control over critical assets. Effective security in hybrid environments demands a holistic approach, encompassing cloud-native security tools, traditional security measures, and strong governance to ensure seamless protection across all infrastructure components. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is Hybrid cloud?](https://www.youtube.com/watch?v=3kGFBBy3Lyg) -- [@article@What is a Hybrid Cloud?](https://cloud.google.com/learn/what-is-hybrid-cloud) \ No newline at end of file +- [@article@What is a Hybrid Cloud?](https://cloud.google.com/learn/what-is-hybrid-cloud) +- [@video@What is Hybrid cloud?](https://www.youtube.com/watch?v=3kGFBBy3Lyg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/hypervisor@CIoLaRv5I3sCr9tBnZHEi.md b/src/data/roadmaps/cyber-security/content/hypervisor@CIoLaRv5I3sCr9tBnZHEi.md index 364e153ba..3045fb7ca 100644 --- a/src/data/roadmaps/cyber-security/content/hypervisor@CIoLaRv5I3sCr9tBnZHEi.md +++ b/src/data/roadmaps/cyber-security/content/hypervisor@CIoLaRv5I3sCr9tBnZHEi.md @@ -2,7 +2,7 @@ A hypervisor, also known as a virtual machine monitor (VMM), is software or firmware that enables the creation and management of virtual machines (VMs) by abstracting the underlying hardware. It allows multiple VMs to run on a single physical machine, each operating independently with its own operating system and applications. Hypervisors facilitate better resource utilization by allowing a physical server to host several virtual environments, optimizing hardware efficiency. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a hypervisor?](https://www.redhat.com/en/topics/virtualization/what-is-a-hypervisor) - [@video@What is a Hypervisor?](https://www.youtube.com/watch?v=LMAEbB2a50M) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/iaas@1nPifNUm-udLChIqLC_uK.md b/src/data/roadmaps/cyber-security/content/iaas@1nPifNUm-udLChIqLC_uK.md index 6e8a585bc..c31032239 100644 --- a/src/data/roadmaps/cyber-security/content/iaas@1nPifNUm-udLChIqLC_uK.md +++ b/src/data/roadmaps/cyber-security/content/iaas@1nPifNUm-udLChIqLC_uK.md @@ -2,7 +2,7 @@ Infrastructure as a Service (IaaS) is a type of cloud computing service that offers virtualized computing resources over the internet. Essentially, it enables you to rent IT infrastructure—such as virtual machines (VMs), storage, and networking—on a pay-as-you-go basis instead of buying and maintaining your own physical hardware. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@IaaS Explained](https://www.youtube.com/watch?v=XRdmfo4M_YA) -- [@article@What is IaaS?](https://azure.microsoft.com/en-gb/resources/cloud-computing-dictionary/what-is-iaas) \ No newline at end of file +- [@article@What is IaaS?](https://azure.microsoft.com/en-gb/resources/cloud-computing-dictionary/what-is-iaas) +- [@video@IaaS Explained](https://www.youtube.com/watch?v=XRdmfo4M_YA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/icloud@E7yfALgu9E2auOYDOTmex.md b/src/data/roadmaps/cyber-security/content/icloud@E7yfALgu9E2auOYDOTmex.md index 5c694926f..fa3cc6a95 100644 --- a/src/data/roadmaps/cyber-security/content/icloud@E7yfALgu9E2auOYDOTmex.md +++ b/src/data/roadmaps/cyber-security/content/icloud@E7yfALgu9E2auOYDOTmex.md @@ -2,6 +2,6 @@ iCloud is a cloud storage and cloud computing service provided by Apple Inc. It allows users to store data, such as documents, photos, and music, on remote servers and synchronize them across their Apple devices, including iPhones, iPads, and MacBooks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@iCloud](https://www.icloud.com/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/icloud@Wqy6ki13hP5c0VhGYEhHj.md b/src/data/roadmaps/cyber-security/content/icloud@Wqy6ki13hP5c0VhGYEhHj.md index 5c694926f..fa3cc6a95 100644 --- a/src/data/roadmaps/cyber-security/content/icloud@Wqy6ki13hP5c0VhGYEhHj.md +++ b/src/data/roadmaps/cyber-security/content/icloud@Wqy6ki13hP5c0VhGYEhHj.md @@ -2,6 +2,6 @@ iCloud is a cloud storage and cloud computing service provided by Apple Inc. It allows users to store data, such as documents, photos, and music, on remote servers and synchronize them across their Apple devices, including iPhones, iPads, and MacBooks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@iCloud](https://www.icloud.com/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/identification@XsRoldaBXUSiGbvY1TjQd.md b/src/data/roadmaps/cyber-security/content/identification@XsRoldaBXUSiGbvY1TjQd.md index 756e02161..1e9dfabd9 100644 --- a/src/data/roadmaps/cyber-security/content/identification@XsRoldaBXUSiGbvY1TjQd.md +++ b/src/data/roadmaps/cyber-security/content/identification@XsRoldaBXUSiGbvY1TjQd.md @@ -2,7 +2,7 @@ Identification refers to the process of detecting and recognizing that a security breach or anomalous activity has occurred within a network or system. This is the initial step in the incident response process, where security tools, monitoring systems, or alert mechanisms, such as Intrusion Detection Systems (IDS), log analysis, or user reports, indicate potential malicious activity. Effective identification is critical as it determines the subsequent steps in addressing the incident, such as containment, eradication, and recovery. Prompt and accurate identification helps minimize the impact of the incident, reducing downtime, data loss, and the overall damage to the organization. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@How to identify Cybersecurity vulnerabilities](https://fieldeffect.com/blog/how-to-identify-cybersecurity-vulnerabilities) -- [@article@What is an Intrusion Detection System](https://www.ibm.com/topics/intrusion-detection-system) +- [@article@What is an Intrusion Detection System](https://www.ibm.com/topics/intrusion-detection-system) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/impersonation@ZEgxmvjWPp5NofLFz_FTJ.md b/src/data/roadmaps/cyber-security/content/impersonation@ZEgxmvjWPp5NofLFz_FTJ.md index 20232cade..c674f5daa 100644 --- a/src/data/roadmaps/cyber-security/content/impersonation@ZEgxmvjWPp5NofLFz_FTJ.md +++ b/src/data/roadmaps/cyber-security/content/impersonation@ZEgxmvjWPp5NofLFz_FTJ.md @@ -1,7 +1,7 @@ -# Impersonation - -Impersonation in cybersecurity refers to an attack technique where a threat actor pretends to be a legitimate person or entity to deceive individuals, systems, or organizations. This tactic is commonly used in social engineering attacks to gain unauthorized access to sensitive information, resources, or systems. - -Visit the following resources to learn more: - -- [@article@What is an Impersonation Attack?](https://www.upguard.com/blog/impersonation-attack) +# Impersonation + +Impersonation in cybersecurity refers to an attack technique where a threat actor pretends to be a legitimate person or entity to deceive individuals, systems, or organizations. This tactic is commonly used in social engineering attacks to gain unauthorized access to sensitive information, resources, or systems. + +Visit the following resources to learn more: + +- [@article@What is an Impersonation Attack?](https://www.upguard.com/blog/impersonation-attack) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/infrared@KsZ63c3KQLLn373c5CZnp.md b/src/data/roadmaps/cyber-security/content/infrared@KsZ63c3KQLLn373c5CZnp.md index 0e23eaf2d..73210db9a 100644 --- a/src/data/roadmaps/cyber-security/content/infrared@KsZ63c3KQLLn373c5CZnp.md +++ b/src/data/roadmaps/cyber-security/content/infrared@KsZ63c3KQLLn373c5CZnp.md @@ -1,8 +1,8 @@ # Infrared -Infrared (IR) is a type of wireless communication technology that utilizes light waves in the electromagnetic spectrum to transmit data between devices. Infrared connections are widely used in short-range communication, commonly found in devices like remote controls, wireless keyboards and mice, and computer-to-printer communication. +Infrared (IR) is a type of wireless communication technology that utilizes light waves in the electromagnetic spectrum to transmit data between devices. Infrared connections are widely used in short-range communication, commonly found in devices like remote controls, wireless keyboards and mice, and computer-to-printer communication. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Infrared Definition](https://nordvpn.com/cybersecurity/glossary/infrared/?srsltid=AfmBOop7r5E41gRA5itc1NmwrS9qpjfiFnW6UKBwVLuu_MifaKdLHoTe) -- [@article@Infrared](https://www.larksuite.com/en_us/topics/cybersecurity-glossary/infrared) +- [@article@Infrared](https://www.larksuite.com/en_us/topics/cybersecurity-glossary/infrared) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/installation-and-configuration@02aaEP9E5tlefeGBxf_Rj.md b/src/data/roadmaps/cyber-security/content/installation-and-configuration@02aaEP9E5tlefeGBxf_Rj.md index 7cf3a837b..495077101 100644 --- a/src/data/roadmaps/cyber-security/content/installation-and-configuration@02aaEP9E5tlefeGBxf_Rj.md +++ b/src/data/roadmaps/cyber-security/content/installation-and-configuration@02aaEP9E5tlefeGBxf_Rj.md @@ -2,35 +2,38 @@ To effectively protect your systems and data, it is vital to understand how to securely install software and configure settings, as well as assess the implications and potential vulnerabilities during installation and configuration processes. -## Importance of Proper Installation and Configuration +Importance of Proper Installation and Configuration +--------------------------------------------------- Improper installation or configuration of software can lead to an array of security risks, including unauthorized access, data breaches, and other harmful attacks. To ensure that your system is safeguarded against these potential threats, it is essential to follow best practices for software installation and configuration: -- **Research the Software**: Before installing any software or application, research its security features and reputation. Check for any known vulnerabilities, recent patches, and the software's overall trustworthiness. +* **Research the Software**: Before installing any software or application, research its security features and reputation. Check for any known vulnerabilities, recent patches, and the software's overall trustworthiness. + +* **Use Official Sources**: Always download software from trusted sources, such as the software vendor's official website. Avoid using third-party download links, as they may contain malicious code or altered software. + +* **Verify File Integrity**: Verify the integrity of the downloaded software by checking its cryptographic hash, often provided by the software vendor. This ensures that the software has not been tampered with or corrupted during the download process. + +* **Install Updates**: During the installation process, ensure that all available updates and patches are installed, as they may contain vital security fixes. + +* **Secure Configurations**: Following the installation, properly configure the software by following the vendor's documentation or industry best practices. This can include adjusting settings related to authentication, encryption, and access control, among other important security parameters. + -- **Use Official Sources**: Always download software from trusted sources, such as the software vendor's official website. Avoid using third-party download links, as they may contain malicious code or altered software. - -- **Verify File Integrity**: Verify the integrity of the downloaded software by checking its cryptographic hash, often provided by the software vendor. This ensures that the software has not been tampered with or corrupted during the download process. - -- **Install Updates**: During the installation process, ensure that all available updates and patches are installed, as they may contain vital security fixes. - -- **Secure Configurations**: Following the installation, properly configure the software by following the vendor's documentation or industry best practices. This can include adjusting settings related to authentication, encryption, and access control, among other important security parameters. - -## Configuration Considerations +Configuration Considerations +---------------------------- While software configurations will vary depending on the specific application or system being utilized, there are several key aspects to keep in mind: -- **Least Privilege**: Configure user accounts and permissions with the principle of least privilege. Limit user access to the minimal level necessary to accomplish their tasks, reducing the potential attack surface. - -- **Password Policies**: Implement strong password policies, including complexity requirements, minimum password length, and password expiration periods. - -- **Encryption**: Enable data encryption to protect sensitive information from unauthorized access. This can include both storage encryption and encryption of data in transit. - -- **Firewalls and Network Security**: Configure firewalls and other network security measures to limit the attack surface and restrict unauthorized access to your systems. - -- **Logging and Auditing**: Configure logging and auditing to capture relevant security events and allow for analysis in the event of a breach or security incident. - -- **Disable Unnecessary Services**: Disable any unused or unnecessary services on your systems. Unnecessary services can contribute to an increased attack surface and potential vulnerabilities. - -Learn more from the following resources +* **Least Privilege**: Configure user accounts and permissions with the principle of least privilege. Limit user access to the minimal level necessary to accomplish their tasks, reducing the potential attack surface. + +* **Password Policies**: Implement strong password policies, including complexity requirements, minimum password length, and password expiration periods. + +* **Encryption**: Enable data encryption to protect sensitive information from unauthorized access. This can include both storage encryption and encryption of data in transit. + +* **Firewalls and Network Security**: Configure firewalls and other network security measures to limit the attack surface and restrict unauthorized access to your systems. + +* **Logging and Auditing**: Configure logging and auditing to capture relevant security events and allow for analysis in the event of a breach or security incident. + +* **Disable Unnecessary Services**: Disable any unused or unnecessary services on your systems. Unnecessary services can contribute to an increased attack surface and potential vulnerabilities. + +Learn more from the following resources \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/installing-software-and-applications@Ot3LGpM-CT_nKsNqIKIye.md b/src/data/roadmaps/cyber-security/content/installing-software-and-applications@Ot3LGpM-CT_nKsNqIKIye.md index fb699e8b2..a1022f0eb 100644 --- a/src/data/roadmaps/cyber-security/content/installing-software-and-applications@Ot3LGpM-CT_nKsNqIKIye.md +++ b/src/data/roadmaps/cyber-security/content/installing-software-and-applications@Ot3LGpM-CT_nKsNqIKIye.md @@ -2,27 +2,33 @@ In the realm of cyber security, installing apps safely and securely is vital to protect your devices and personal information. In this guide, we'll cover some essential steps to follow when installing apps on your devices. -## Choose trusted sources +Choose trusted sources +---------------------- To ensure the safety of your device, always choose apps from trusted sources, such as official app stores (e.g., Google Play Store for Android or Apple's App Store for iOS devices). These app stores have strict guidelines and often review apps for malicious content before making them available for download. -## Research the app and its developer +Research the app and its developer +---------------------------------- Before installing an app, it is essential to research the app and its developer thoroughly. Check for app reviews from other users and look for any red flags related to security or privacy concerns. Investigate the developer's web presence and reputation to ensure they can be trusted. -## Check app permissions +Check app permissions +--------------------- Before installing an app, always review the permissions requested. Be aware of any unusual permissions that do not correspond with the app's functionality. If an app is asking for access to your contacts, GPS, or microphone, and there isn't a reasonable explanation for why it needs this information, it could be a potential security risk. -## Keep your device and apps updated +Keep your device and apps updated +--------------------------------- To maintain your device's security, always install updates as soon as they become available. This applies not only to the apps but also to the operating system of your device. Updates often include security patches that fix known vulnerabilities, so it is essential to keep everything up to date. -## Install a security app +Install a security app +---------------------- Consider installing a security app from a reputable company to protect your device against malware, viruses, and other threats. These apps can monitor for suspicious activity, scan for malicious software, and help keep your device secure. -## Uninstall unused apps +Uninstall unused apps +--------------------- Regularly review the apps on your device and uninstall any that are no longer being used. This will not only free up storage space but also reduce potential security risks that might arise if these apps are not maintained or updated by their developers. diff --git a/src/data/roadmaps/cyber-security/content/ip@FdoqB2---uDAyz6xZjk_u.md b/src/data/roadmaps/cyber-security/content/ip@FdoqB2---uDAyz6xZjk_u.md index cc659f698..39904d095 100644 --- a/src/data/roadmaps/cyber-security/content/ip@FdoqB2---uDAyz6xZjk_u.md +++ b/src/data/roadmaps/cyber-security/content/ip@FdoqB2---uDAyz6xZjk_u.md @@ -2,8 +2,8 @@ IP, or Internet Protocol, is a fundamental concept in cybersecurity that refers to the way data is transferred across networks, specifically the internet. It is a core component of the internet's architecture and serves as the primary building block for communication between devices connected to the network. An IP address is a unique identifier assigned to each device connected to a network, like a computer or smartphone. It comprises a series of numbers separated by dots (e.g., 192.168.1.1). IP addresses can be either IPv4 (32-bit) or the newer IPv6 (128-bit) format, which provides more available addresses. They allow devices to send and receive data packets to and from other devices on the internet. -Learn more from the following resources: +Visit the following resources to learn more: -- [@website@Check Your IP Address](https://ipleak.net) +- [@article@Check Your IP Address](https://ipleak.net) - [@article@What is an IP Address and What does it mean?](https://www.kaspersky.com/resource-center/definitions/what-is-an-ip-address) - [@video@Whats an IP address?](https://www.youtube.com/watch?v=6is6Gulh7qE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ipam@hN8p5YBcSaPm-byQUIz8L.md b/src/data/roadmaps/cyber-security/content/ipam@hN8p5YBcSaPm-byQUIz8L.md index 4d0aedbd8..a15ed634a 100644 --- a/src/data/roadmaps/cyber-security/content/ipam@hN8p5YBcSaPm-byQUIz8L.md +++ b/src/data/roadmaps/cyber-security/content/ipam@hN8p5YBcSaPm-byQUIz8L.md @@ -2,7 +2,7 @@ IP Address Management (IPAM) is a critical aspect of cyber security, as it helps organizations efficiently manage and track their IP addresses, DNS, and DHCP services. In any network, devices like servers, routers, and switches are assigned unique IP addresses, which enables them to communicate with each other. Efficient and secure management of these IP addresses is vital for maintaining network security and prevent unauthorized access. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is IPAM?](https://www.infoblox.com/glossary/ipam-ip-address-management/) - [@article@IP Address Management](https://learn.microsoft.com/en-us/windows-server/networking/technologies/ipam/ipam-top) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ipconfig@IXNGFF4sOFbQ_aND-ELK0.md b/src/data/roadmaps/cyber-security/content/ipconfig@IXNGFF4sOFbQ_aND-ELK0.md index ddb4a10f0..d74352acf 100644 --- a/src/data/roadmaps/cyber-security/content/ipconfig@IXNGFF4sOFbQ_aND-ELK0.md +++ b/src/data/roadmaps/cyber-security/content/ipconfig@IXNGFF4sOFbQ_aND-ELK0.md @@ -2,7 +2,7 @@ `ipconfig` is a widely-used command-line utility for Windows operating systems that provides valuable information regarding a computer's network configuration. It can be extremely helpful for incident response and discovery tasks when investigating network-related issues, extracting crucial network details, or when trying to ascertain a machine's IP address. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@ipconfig command](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/ipconfig) -- [@article@Understanding ipconfig](https://www.whatismyip.com/ipconfig/) +- [@article@Understanding ipconfig](https://www.whatismyip.com/ipconfig/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ipconfig@u-6xuZUyOrogh1bU4cwER.md b/src/data/roadmaps/cyber-security/content/ipconfig@u-6xuZUyOrogh1bU4cwER.md index ddb4a10f0..d74352acf 100644 --- a/src/data/roadmaps/cyber-security/content/ipconfig@u-6xuZUyOrogh1bU4cwER.md +++ b/src/data/roadmaps/cyber-security/content/ipconfig@u-6xuZUyOrogh1bU4cwER.md @@ -2,7 +2,7 @@ `ipconfig` is a widely-used command-line utility for Windows operating systems that provides valuable information regarding a computer's network configuration. It can be extremely helpful for incident response and discovery tasks when investigating network-related issues, extracting crucial network details, or when trying to ascertain a machine's IP address. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@ipconfig command](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/ipconfig) -- [@article@Understanding ipconfig](https://www.whatismyip.com/ipconfig/) +- [@article@Understanding ipconfig](https://www.whatismyip.com/ipconfig/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ipsec@gNFVtBxSYP5Uw3o3tlJ0M.md b/src/data/roadmaps/cyber-security/content/ipsec@gNFVtBxSYP5Uw3o3tlJ0M.md index fd87524c4..a68ac2f85 100644 --- a/src/data/roadmaps/cyber-security/content/ipsec@gNFVtBxSYP5Uw3o3tlJ0M.md +++ b/src/data/roadmaps/cyber-security/content/ipsec@gNFVtBxSYP5Uw3o3tlJ0M.md @@ -1,6 +1,6 @@ # IPSec -IPSec, which stands for Internet Protocol Security, is a suite of protocols used to secure Internet communications by encrypting and authenticating IP packets. It is commonly utilized in Virtual Private Networks (VPNs) to ensure that data transmitted over public networks is not accessible to unauthorized individuals. IPSec operates by encrypting data at the source and decrypting it at the destination, maintaining the confidentiality and integrity of the data while in transit. Additionally, it provides authentication, ensuring that the data is being sent and received by the intended parties. This protocol suite is versatile as it can be used with both IPv4 and IPv6 networks, making it a fundamental component for secure online communication. +Visit the following resources to learn more: -- [@video@IP Sec VPN Fundamentals](https://www.youtube.com/watch?v=15amNny_kKI) -- [@article@What is IPSec?](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-ipsec/) \ No newline at end of file +- [@article@What is IPSec?](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-ipsec/) +- [@video@IP Sec VPN Fundamentals](https://www.youtube.com/watch?v=15amNny_kKI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/iptables@jr8JlyqmN3p7Ol3_kD9AH.md b/src/data/roadmaps/cyber-security/content/iptables@jr8JlyqmN3p7Ol3_kD9AH.md index 1fd9212e5..80ab239ee 100644 --- a/src/data/roadmaps/cyber-security/content/iptables@jr8JlyqmN3p7Ol3_kD9AH.md +++ b/src/data/roadmaps/cyber-security/content/iptables@jr8JlyqmN3p7Ol3_kD9AH.md @@ -2,7 +2,7 @@ IPTables is a command-line utility for configuring and managing packet filtering rules within the Linux operating system. It allows the system administrator to define and manage the firewall rules that control the incoming and outgoing network traffic. IPTables is an essential tool for securing Linux systems and ensuring proper network traffic flow. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@iptables man page](https://linux.die.net/man/8/iptables) - [@video@iptables complete guide](https://www.youtube.com/watch?v=6Ra17Qpj68c) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/iso@oRssaVG-K-JwlL6TAHhXw.md b/src/data/roadmaps/cyber-security/content/iso@oRssaVG-K-JwlL6TAHhXw.md index 15f9b307f..98f2c547d 100644 --- a/src/data/roadmaps/cyber-security/content/iso@oRssaVG-K-JwlL6TAHhXw.md +++ b/src/data/roadmaps/cyber-security/content/iso@oRssaVG-K-JwlL6TAHhXw.md @@ -2,7 +2,7 @@ The International Organization for Standardization (ISO) is an international standard-setting body composed of representatives from various national standards organizations. It promotes worldwide proprietary, industrial, and commercial standards. In the domain of cyber security, there are several important ISO standards that help organizations to protect their sensitive data and to be resilient against cyber threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@International Organization for Standardization](https://www.iso.org/home.html) - [@article@What is the ISO?](https://www.techtarget.com/searchdatacenter/definition/ISO#:~:text=ISO%20(International%20Organization%20for%20Standardization)%20is%20a%20worldwide,federation%20of%20national%20standards%20bodies.) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/javascript@2SThr6mHpX6rpW-gmsqxG.md b/src/data/roadmaps/cyber-security/content/javascript@2SThr6mHpX6rpW-gmsqxG.md index 6049d2537..756ed8f06 100644 --- a/src/data/roadmaps/cyber-security/content/javascript@2SThr6mHpX6rpW-gmsqxG.md +++ b/src/data/roadmaps/cyber-security/content/javascript@2SThr6mHpX6rpW-gmsqxG.md @@ -2,7 +2,7 @@ JavaScript (often abbreviated as JS) is a widely-used, high-level programming language. It is predominantly used for creating and enhancing the interactive elements of web pages, making it an integral part of the web development space. JavaScript was initially known as LiveScript and was created by Brendan Eich in 1995, but it later got renamed to JavaScript. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated JavaScript Roadmap](https://roadmap.sh/javascript) - [@article@What is JavaScript?](https://developer.mozilla.org/en-US/docs/Learn/JavaScript/First_steps/What_is_JavaScript) diff --git a/src/data/roadmaps/cyber-security/content/joe-sandbox@h__KxKa0Q74_egY7GOe-L.md b/src/data/roadmaps/cyber-security/content/joe-sandbox@h__KxKa0Q74_egY7GOe-L.md index 937a3d631..1b27b1bb5 100644 --- a/src/data/roadmaps/cyber-security/content/joe-sandbox@h__KxKa0Q74_egY7GOe-L.md +++ b/src/data/roadmaps/cyber-security/content/joe-sandbox@h__KxKa0Q74_egY7GOe-L.md @@ -2,7 +2,7 @@ Joe Sandbox is an advanced malware analysis platform that allows security professionals to analyze suspicious files, URLs, and documents in a controlled and isolated environment known as a sandbox. This platform provides in-depth behavioral analysis by executing the potentially malicious code in a virtualized environment to observe its actions, such as file modifications, network communications, and registry changes, without risking the integrity of the actual network or systems. Joe Sandbox supports a wide range of file types and can detect and analyze complex, evasive malware that may attempt to avoid detection in less sophisticated environments. The insights generated from Joe Sandbox are crucial for understanding the nature of the threat, aiding in the development of countermeasures, and enhancing overall cybersecurity defenses. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Joe Sandbox](https://www.joesandbox.com/#windows) - [@video@Cybersecurity Sandbox for Security Analysts](https://www.youtube.com/watch?v=FJGmRzY1igY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/jump-server@UF3BV1sEEOrqh5ilnfM1B.md b/src/data/roadmaps/cyber-security/content/jump-server@UF3BV1sEEOrqh5ilnfM1B.md index 23e131a93..7b0194eb0 100644 --- a/src/data/roadmaps/cyber-security/content/jump-server@UF3BV1sEEOrqh5ilnfM1B.md +++ b/src/data/roadmaps/cyber-security/content/jump-server@UF3BV1sEEOrqh5ilnfM1B.md @@ -2,7 +2,7 @@ A **jump server**, also known as a **bastion host** or **jump host**, is a critical security component in many network architectures. It is a dedicated, locked-down, and secure server that sits within a protected network, and provides a controlled access point for users and administrators to access specific components within the system. This intermediate server acts as a bridge between untrusted networks and the internal privileged systems, thereby reducing the attack surface and securing the environment. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Jump Server?](https://www.ssh.com/academy/iam/jump-server) - [@video@What is a Bastion Host and Why is it so important?](https://www.youtube.com/watch?v=pI6glWVEkcY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/kali-linux@w6wXkoLrv0_d-Ah0txUHd.md b/src/data/roadmaps/cyber-security/content/kali-linux@w6wXkoLrv0_d-Ah0txUHd.md index 9a0e35941..5b9976091 100644 --- a/src/data/roadmaps/cyber-security/content/kali-linux@w6wXkoLrv0_d-Ah0txUHd.md +++ b/src/data/roadmaps/cyber-security/content/kali-linux@w6wXkoLrv0_d-Ah0txUHd.md @@ -1,9 +1,9 @@ # Kali Linux -Kali Linux is a specialized Linux distribution that is designed for penetration testing, security auditing, and related information security tasks. Originating from the Debian distribution, Kali Linux is equipped with a vast array of tools that are used for ethical hacking purposes. It is an open-source project that provides users with the means to test the security of systems and networks by simulating attacks in a controlled environment. +Kali Linux is a specialized Linux distribution that is designed for penetration testing, security auditing, and related information security tasks. Originating from the Debian distribution, Kali Linux is equipped with a vast array of tools that are used for ethical hacking purposes. It is an open-source project that provides users with the means to test the security of systems and networks by simulating attacks in a controlled environment. -With over 600 pre-installed penetration-testing programs, Kali Linux offers tools for various security-related tasks, such as network analysis, vulnerability scanning, and forensic analysis. Its development is overseen by Offensive Security, a company known for their contributions to the field of information security. Kali Linux is highly customizable, allowing users to tailor the system to their specific needs, and supports a wide range of hardware platforms. It is a powerful resource for professionals in the cybersecurity field, as well as for those who are passionate about learning and practicing ethical hacking techniques. +Visit the following resources to learn more: - [@official@Kali Linux](https://www.kali.org/) - [@official@Kali Tools](https://www.kali.org/tools) -- [@official@Kali Docs](https://www.kali.org/docs/) +- [@official@Kali Docs](https://www.kali.org/docs/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/kerberos@lG6afUOx3jSQFxbH92otL.md b/src/data/roadmaps/cyber-security/content/kerberos@lG6afUOx3jSQFxbH92otL.md index a2ca2b838..284264b3e 100644 --- a/src/data/roadmaps/cyber-security/content/kerberos@lG6afUOx3jSQFxbH92otL.md +++ b/src/data/roadmaps/cyber-security/content/kerberos@lG6afUOx3jSQFxbH92otL.md @@ -2,7 +2,7 @@ Kerberos is a network authentication protocol designed to provide strong authentication for client/server applications. It was developed by MIT in the 1980s and is named after the three-headed dog from Greek mythology that guarded the gates of Hades, symbolizing the protocol's aim to provide secure authentication in a potentially hostile network environment. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Kerberos Authentication Explained](https://www.youtube.com/watch?v=5N242XcKAsM) -- [@article@What is Kerberos?](https://www.fortinet.com/resources/cyberglossary/kerberos-authentication) \ No newline at end of file +- [@article@What is Kerberos?](https://www.fortinet.com/resources/cyberglossary/kerberos-authentication) +- [@video@Kerberos Authentication Explained](https://www.youtube.com/watch?v=5N242XcKAsM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/key-exchange@rmR6HJqEhHDgX55Xy5BAW.md b/src/data/roadmaps/cyber-security/content/key-exchange@rmR6HJqEhHDgX55Xy5BAW.md index d6ad91dde..bd2c81723 100644 --- a/src/data/roadmaps/cyber-security/content/key-exchange@rmR6HJqEhHDgX55Xy5BAW.md +++ b/src/data/roadmaps/cyber-security/content/key-exchange@rmR6HJqEhHDgX55Xy5BAW.md @@ -2,7 +2,7 @@ Key exchange is a cryptographic process through which two parties securely share encryption keys over a potentially insecure communication channel. This process is fundamental in establishing a secure communication session, such as in SSL/TLS protocols used for internet security. The most widely known key exchange method is the Diffie-Hellman key exchange, where both parties generate a shared secret key, which can then be used for encrypting subsequent communications. Another common method is the RSA key exchange, which uses public-key cryptography to securely exchange keys. The goal of key exchange is to ensure that only the communicating parties can access the shared key, which is then used to encrypt and decrypt messages, thereby protecting the confidentiality and integrity of the transmitted data. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Key Exchange](https://nordvpn.com/cybersecurity/glossary/key-exchange/?srsltid=AfmBOoocoykou-7M3OHUQq7APIsGDVjOR8P6wIcIvNA2fgOt1620RZwG) - [@video@Secret Key Exchange](https://www.youtube.com/watch?v=NmM9HA2MQGI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/kill-chain@7Bmp4x6gbvWMuVDdGRUGj.md b/src/data/roadmaps/cyber-security/content/kill-chain@7Bmp4x6gbvWMuVDdGRUGj.md index ff03af00a..bd6faa0a3 100644 --- a/src/data/roadmaps/cyber-security/content/kill-chain@7Bmp4x6gbvWMuVDdGRUGj.md +++ b/src/data/roadmaps/cyber-security/content/kill-chain@7Bmp4x6gbvWMuVDdGRUGj.md @@ -4,15 +4,15 @@ The **Cyber Kill Chain** is a model that was developed by Lockheed Martin, a maj The concept is based on a military model, where the term "kill chain" represents a series of steps needed to successfully target and engage an adversary. In the context of cybersecurity, the model breaks down the stages of a cyber attack into seven distinct phases: -- **Reconnaissance**: This initial phase involves gathering intelligence on the target, which may include researching public databases, performing network scans, or social engineering techniques. -- **Weaponization**: In this stage, the attacker creates a weapon – such as a malware, virus, or exploit – and packages it with a delivery mechanism that can infiltrate the target's system. -- **Delivery**: The attacker selects and deploys the delivery method to transmit the weapon to the target. Common methods include email attachments, malicious URLs, or infected software updates. -- **Exploitation**: This is the phase where the weapon is activated, taking advantage of vulnerabilities in the target's systems or applications to execute the attacker's code. -- **Installation**: Once the exploit is successful, the attacker installs the malware on the victim's system, setting the stage for further attacks or data exfiltration. -- **Command and Control (C2)**: The attacker establishes a communication channel with the infected system, allowing them to remotely control the malware and conduct further actions. -- **Actions on Objectives**: In this final phase, the attacker achieves their goal, which may involve stealing sensitive data, compromising systems, or disrupting services. +* **Reconnaissance**: This initial phase involves gathering intelligence on the target, which may include researching public databases, performing network scans, or social engineering techniques. +* **Weaponization**: In this stage, the attacker creates a weapon – such as a malware, virus, or exploit – and packages it with a delivery mechanism that can infiltrate the target's system. +* **Delivery**: The attacker selects and deploys the delivery method to transmit the weapon to the target. Common methods include email attachments, malicious URLs, or infected software updates. +* **Exploitation**: This is the phase where the weapon is activated, taking advantage of vulnerabilities in the target's systems or applications to execute the attacker's code. +* **Installation**: Once the exploit is successful, the attacker installs the malware on the victim's system, setting the stage for further attacks or data exfiltration. +* **Command and Control (C2)**: The attacker establishes a communication channel with the infected system, allowing them to remotely control the malware and conduct further actions. +* **Actions on Objectives**: In this final phase, the attacker achieves their goal, which may involve stealing sensitive data, compromising systems, or disrupting services. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Cyber Kill Chain](https://www.lockheedmartin.com/en-us/capabilities/cyber/cyber-kill-chain.html) - [@video@Learn the Cyber Kill Chain](https://www.youtube.com/watch?v=oCUrkc_0tmw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/known-vs-unknown@HPlPGKs7NLqmBidHJkOZg.md b/src/data/roadmaps/cyber-security/content/known-vs-unknown@HPlPGKs7NLqmBidHJkOZg.md index cb7fdfcf2..e9c8bef7e 100644 --- a/src/data/roadmaps/cyber-security/content/known-vs-unknown@HPlPGKs7NLqmBidHJkOZg.md +++ b/src/data/roadmaps/cyber-security/content/known-vs-unknown@HPlPGKs7NLqmBidHJkOZg.md @@ -2,11 +2,11 @@ "known" and "unknown" refer to the classification of threats based on the visibility and familiarity of the attack or vulnerability. -- **Known Threats** are those that have been previously identified and documented, such as malware signatures, vulnerabilities, or attack patterns. Security solutions like antivirus software and intrusion detection systems typically rely on databases of known threats to recognize and block them. These threats are easier to defend against because security teams have the tools and knowledge to detect and mitigate them. +* **Known Threats** are those that have been previously identified and documented, such as malware signatures, vulnerabilities, or attack patterns. Security solutions like antivirus software and intrusion detection systems typically rely on databases of known threats to recognize and block them. These threats are easier to defend against because security teams have the tools and knowledge to detect and mitigate them. + +* **Unknown Threats**, on the other hand, refer to new, emerging, or sophisticated threats that have not been previously encountered or documented. These can include zero-day vulnerabilities, which are software flaws not yet known to the vendor or the public, or advanced malware designed to evade traditional defenses. Unknown threats require more advanced detection techniques, such as behavioral analysis, machine learning, or heuristic-based detection, to identify anomalies and suspicious activities that don't match known patterns. -- **Unknown Threats**, on the other hand, refer to new, emerging, or sophisticated threats that have not been previously encountered or documented. These can include zero-day vulnerabilities, which are software flaws not yet known to the vendor or the public, or advanced malware designed to evade traditional defenses. Unknown threats require more advanced detection techniques, such as behavioral analysis, machine learning, or heuristic-based detection, to identify anomalies and suspicious activities that don't match known patterns. - -Learn more from the following resources: +Visit the following resources to learn more: - [@article@From Known to Unknown](https://securitysandman.com/2025/01/06/from-known-to-unknown-shifting-cybersecurity-to-proactive-ai-detection/) - [@article@Catching all Threats - Known, Unknown, and Unknown Unknown](https://www.scworld.com/perspective/catching-all-threats-known-unknown-and-unknown-unknown-before-they-can-harm-you) diff --git a/src/data/roadmaps/cyber-security/content/lan@xWxusBtMEWnd-6n7oqjHz.md b/src/data/roadmaps/cyber-security/content/lan@xWxusBtMEWnd-6n7oqjHz.md index 8ee90e027..e6c9c4cb1 100644 --- a/src/data/roadmaps/cyber-security/content/lan@xWxusBtMEWnd-6n7oqjHz.md +++ b/src/data/roadmaps/cyber-security/content/lan@xWxusBtMEWnd-6n7oqjHz.md @@ -2,7 +2,7 @@ A Local Area Network (LAN) is a computer network that interconnects computers and devices within a limited area, such as a home, office, school, or small group of buildings. LANs typically use Ethernet or Wi-Fi technologies to enable high-speed data communication among connected devices. They allow for resource sharing, including files, printers, and internet connections. LANs are characterized by higher data transfer rates, lower latency, and more direct control over network configuration and security compared to wide area networks (WANs). Common LAN applications include file sharing, collaborative work, local hosting of websites or services, and networked gaming. The advent of software-defined networking and cloud technologies has expanded LAN capabilities, enabling more flexible and scalable local network infrastructures. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a LAN?](https://www.cisco.com/c/en_uk/products/switches/what-is-a-lan-local-area-network.html) - [@video@LAN vs. WAN: What's the Difference?](https://www.youtube.com/watch?v=5OoX_cRLaNM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ldap@lV3swvD6QGLmD9iVfbKIF.md b/src/data/roadmaps/cyber-security/content/ldap@lV3swvD6QGLmD9iVfbKIF.md index c8875364c..ab57fb408 100644 --- a/src/data/roadmaps/cyber-security/content/ldap@lV3swvD6QGLmD9iVfbKIF.md +++ b/src/data/roadmaps/cyber-security/content/ldap@lV3swvD6QGLmD9iVfbKIF.md @@ -2,7 +2,7 @@ LDAP (Lightweight Directory Access Protocol) is a standardized application protocol for accessing and maintaining distributed directory information services over an IP network. It's primarily used for querying and modifying directory services, such as user authentication and information lookup. LDAP organizes data in a hierarchical tree structure and is commonly used in enterprise environments for centralized user management, authentication, and authorization. It supports features like single sign-on and can integrate with various applications and services. LDAP is widely used in conjunction with Active Directory and other directory services to provide a centralized repository for user accounts, groups, and other organizational data, facilitating efficient user and resource management in networked environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What Is LDAP & How Does It Work?](https://www.okta.com/uk/identity-101/what-is-ldap/) -- [@video@What is LDAP](https://www.youtube.com/watch?v=vy3e6ekuqqg) +- [@video@What is LDAP](https://www.youtube.com/watch?v=vy3e6ekuqqg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ldaps@z_fDvTgKw51Uepo6eMQd9.md b/src/data/roadmaps/cyber-security/content/ldaps@z_fDvTgKw51Uepo6eMQd9.md index 92a89957e..f8dfea239 100644 --- a/src/data/roadmaps/cyber-security/content/ldaps@z_fDvTgKw51Uepo6eMQd9.md +++ b/src/data/roadmaps/cyber-security/content/ldaps@z_fDvTgKw51Uepo6eMQd9.md @@ -4,7 +4,7 @@ LDAPS (Lightweight Directory Access Protocol Secure) is a secure version of the By using LDAPS, organizations can maintain the benefits of LDAP while ensuring that sensitive directory operations are protected from potential eavesdropping or man-in-the-middle attacks on the network. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@LDAP vs LDAPS - Whats the difference?](https://www.youtube.com/watch?v=J2qtayKzMmA) -- [@article@How to enable LDAPS](https://www.dell.com/support/kbdoc/en-uk/000212661/how-to-enable-secure-lightweight-directory-access-protocol-ldaps-on-an-active-directory-domain-controller) \ No newline at end of file +- [@article@How to enable LDAPS](https://www.dell.com/support/kbdoc/en-uk/000212661/how-to-enable-secure-lightweight-directory-access-protocol-ldaps-on-an-active-directory-domain-controller) +- [@video@LDAP vs LDAPS - Whats the difference?](https://www.youtube.com/watch?v=J2qtayKzMmA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/learn-how-malware-works-and-types@v7CD_sHqLWbm9ibXXESIK.md b/src/data/roadmaps/cyber-security/content/learn-how-malware-works-and-types@v7CD_sHqLWbm9ibXXESIK.md index e5e3117e8..aa8100b17 100644 --- a/src/data/roadmaps/cyber-security/content/learn-how-malware-works-and-types@v7CD_sHqLWbm9ibXXESIK.md +++ b/src/data/roadmaps/cyber-security/content/learn-how-malware-works-and-types@v7CD_sHqLWbm9ibXXESIK.md @@ -2,37 +2,44 @@ Malware, short for malicious software, refers to any software intentionally created to cause harm to a computer system, server, network, or user. It is a broad term that encompasses various types of harmful software created by cybercriminals for various purposes. In this guide, we will delve deeper into the major types of malware and their characteristics. -## Virus +Virus +----- A computer virus is a type of malware that, much like a biological virus, attaches itself to a host (e.g., a file or software) and replicates when the host is executed. Viruses can corrupt, delete or modify data, and slow down system performance. -## Worm +Worm +---- Worms are self-replicating malware that spread through networks without human intervention. They exploit system vulnerabilities, consuming bandwidth and sometimes carrying a payload to infect target machines. -## Trojan Horse +Trojan Horse +------------ A trojan horse is a piece of software disguised as a legitimate program but contains harmful code. Users unknowingly download and install it, giving the attacker unauthorized access to the computer or network. Trojans can be used to steal data, create a backdoor, or launch additional malware attacks. -## Ransomware +Ransomware +---------- Ransomware is a type of malware that encrypts its victims' files and demands a ransom, typically in the form of cryptocurrency, for the decryption key. If the victim refuses or fails to pay within a specified time, the encrypted data may be lost forever. -## Spyware +Spyware +------- Spyware is a type of malware designed to collect and relay information about a user or organization without their consent. It can capture keystrokes, record browsing history, and access personal data such as usernames and passwords. -## Adware +Adware +------ Adware is advertising-supported software that automatically displays or downloads advertising materials, often in the form of pop-up ads, on a user's computer. While not always malicious, adware can be intrusive and open the door for other malware infections. -## Rootkit +Rootkit +------- A rootkit is a type of malware designed to hide or obscure the presence of other malicious programs on a computer system. This enables it to maintain persistent unauthorized access to the system and can make it difficult for users or security software to detect and remove infected files. -## Keylogger +Keylogger +--------- Keyloggers are a type of malware that monitor and record users' keystrokes, allowing attackers to capture sensitive information, such as login credentials or financial information entered on a keyboard. -Learn more from the following resources: - +Learn more from the following resources: \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/legal@C5bCIdPi0gGkY_r4qqoXZ.md b/src/data/roadmaps/cyber-security/content/legal@C5bCIdPi0gGkY_r4qqoXZ.md index 37d81e395..8c0512b75 100644 --- a/src/data/roadmaps/cyber-security/content/legal@C5bCIdPi0gGkY_r4qqoXZ.md +++ b/src/data/roadmaps/cyber-security/content/legal@C5bCIdPi0gGkY_r4qqoXZ.md @@ -2,7 +2,7 @@ A legal department within an organization is responsible for handling all legal matters that affect the business, ensuring compliance with laws and regulations, and providing advice on various legal issues. Its primary functions include managing contracts, intellectual property, employment law, and regulatory compliance, as well as addressing disputes, litigation, and risk management. The legal department also plays a crucial role in corporate governance, ensuring that the company operates within the boundaries of the law while minimizing legal risks. In some cases, they work with external legal counsel for specialized legal matters, such as mergers and acquisitions or complex litigation. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Key Functions of a Legal Team](https://uk.practicallaw.thomsonreuters.com/w-009-3932?transitionType=Default&contextData=(sc.Default)&firstPage=true) - [@article@The Legal Team’s Responsibility in Corporate Cybersecurity](https://www.trustwave.com/en-us/resources/blogs/trustwave-blog/expert-insight-the-legal-teams-responsibility-in-corporate-cybersecurity/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/lessons-learned@ErRol7AT02HTn3umsPD_0.md b/src/data/roadmaps/cyber-security/content/lessons-learned@ErRol7AT02HTn3umsPD_0.md index fffef20bd..75af0cfcc 100644 --- a/src/data/roadmaps/cyber-security/content/lessons-learned@ErRol7AT02HTn3umsPD_0.md +++ b/src/data/roadmaps/cyber-security/content/lessons-learned@ErRol7AT02HTn3umsPD_0.md @@ -2,24 +2,29 @@ The final and vital step of the incident response process is reviewing and documenting the "lessons learned" after a cybersecurity incident. In this phase, the incident response team conducts a thorough analysis of the incident, identifies key points to be learned, and evaluates the effectiveness of the response plan. These lessons allow organizations to improve their security posture, making them more resilient to future threats. Below, we discuss the main aspects of the lessons learned phase: -## Post-Incident Review +Post-Incident Review +-------------------- Once the incident has been resolved, the incident response team gathers to discuss and evaluate each stage of the response. This involves examining the actions taken, any issues encountered, and the efficiency of communication channels. This stage helps in identifying areas for improvement in the future. -## Root Cause Analysis +Root Cause Analysis +------------------- Understanding the root cause of the security incident is essential to prevent similar attacks in the future. The incident response team should analyze and determine the exact cause of the incident, how the attacker gained access, and what vulnerabilities were exploited. This will guide organizations in implementing proper security measures and strategies to minimize risks of a reoccurrence. -## Update Policies and Procedures +Update Policies and Procedures +------------------------------ Based on the findings of the post-incident review and root cause analysis, the organization should update its security policies, procedures, and incident response plan accordingly. This may involve making changes to access controls, network segmentation, vulnerability management, and employee training programs. -## Conduct Employee Training +Conduct Employee Training +------------------------- Sharing the lessons learned with employees raises awareness and ensures that they have proper knowledge and understanding of the organization's security policies and procedures. Regular training sessions and awareness campaigns should be carried out to enhance employee cybersecurity skills and reinforce best practices. -## Document the Incident +Document the Incident +--------------------- It's crucial to maintain accurate and detailed records of security incidents, including the measures taken by the organization to address them. This documentation serves as evidence of the existence of an effective incident response plan, which may be required for legal, regulatory, and compliance purposes. Furthermore, documenting incidents helps organizations to learn from their experience, assess trends and patterns, and refine their security processes. -In conclusion, the lessons learned phase aims to identify opportunities to strengthen an organization's cybersecurity framework, prevent similar incidents from happening again, and continuously improve the incident response plan. Regular reviews of cybersecurity incidents contribute to building a robust and resilient security posture, mitigating risks and reducing the impact of cyber threats on the organization's assets and operations. +In conclusion, the lessons learned phase aims to identify opportunities to strengthen an organization's cybersecurity framework, prevent similar incidents from happening again, and continuously improve the incident response plan. Regular reviews of cybersecurity incidents contribute to building a robust and resilient security posture, mitigating risks and reducing the impact of cyber threats on the organization's assets and operations. \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/linux@4frVcjYI1VlVU9hQgpwcT.md b/src/data/roadmaps/cyber-security/content/linux@4frVcjYI1VlVU9hQgpwcT.md index e341bb22a..7eefff6cc 100644 --- a/src/data/roadmaps/cyber-security/content/linux@4frVcjYI1VlVU9hQgpwcT.md +++ b/src/data/roadmaps/cyber-security/content/linux@4frVcjYI1VlVU9hQgpwcT.md @@ -2,11 +2,11 @@ Linux is an open-source, Unix-like operating system kernel first released by Linus Torvalds in 1991. It forms the core of various operating systems known as Linux distributions. Linux is known for its stability, security, and flexibility, making it popular for servers, embedded systems, and increasingly for desktop use. It supports a wide range of hardware and offers powerful command-line interfaces alongside graphical user interfaces. Linux adheres to Unix principles, emphasizing modularity and the philosophy of "do one thing and do it well." Its open-source nature allows for community-driven development and customization. Linux is widely used in cloud computing, supercomputers, and Android devices, and is a fundamental component of the LAMP (Linux, Apache, MySQL, PHP) web server stack. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Linux Roadmap](https://roadmap.sh/linux) -- [@article@Linux Commands Cheat Sheet](https://cdn.hostinger.com/tutorials/pdf/Linux-Commands-Cheat-Sheet.pdf) - [@course@Linux from scratch - Cisco](https://www.netacad.com/courses/os-it/ndg-linux-unhatched) +- [@article@Linux Commands Cheat Sheet](https://cdn.hostinger.com/tutorials/pdf/Linux-Commands-Cheat-Sheet.pdf) - [@video@Linux in 100 Seconds](https://www.youtube.com/watch?v=rrB13utjYV4) - [@video@Introduction to Linux](https://youtu.be/sWbUDq4S6Y8) -- [@feed@Explore top posts about Linux](https://app.daily.dev/tags/linux?ref=roadmapsh) +- [@feed@Explore top posts about Linux](https://app.daily.dev/tags/linux?ref=roadmapsh) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/local-auth@vYvFuz7lAJXZ1vK_4999a.md b/src/data/roadmaps/cyber-security/content/local-auth@vYvFuz7lAJXZ1vK_4999a.md index 0d4ff433e..d8b430906 100644 --- a/src/data/roadmaps/cyber-security/content/local-auth@vYvFuz7lAJXZ1vK_4999a.md +++ b/src/data/roadmaps/cyber-security/content/local-auth@vYvFuz7lAJXZ1vK_4999a.md @@ -2,6 +2,6 @@ Local authentication refers to the process of verifying a user's identity on a specific device or system without relying on external servers or networks. It typically involves storing and checking credentials directly on the device itself. Common methods include username/password combinations, biometrics (fingerprint, face recognition), or PIN codes. Local authentication is often used for device access, offline applications, or as a fallback when network-based authentication is unavailable. While it offers quick access and works without internet connectivity, it can be less secure than centralized authentication systems and more challenging to manage across multiple devices. Local authentication is commonly used in personal devices, standalone systems, and scenarios where network-based authentication is impractical or unnecessary. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Local authentication, registration, and other settings](https://learn.microsoft.com/en-us/power-pages/security/authentication/set-authentication-identity) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/localhost@0TWwox-4pSwuXojI8ixFO.md b/src/data/roadmaps/cyber-security/content/localhost@0TWwox-4pSwuXojI8ixFO.md index dda668bfb..074ab6212 100644 --- a/src/data/roadmaps/cyber-security/content/localhost@0TWwox-4pSwuXojI8ixFO.md +++ b/src/data/roadmaps/cyber-security/content/localhost@0TWwox-4pSwuXojI8ixFO.md @@ -2,7 +2,7 @@ **Localhost** refers to the standard hostname used to access the local computer on which a network service or application is running. It resolves to the loopback IP address `127.0.0.1` for IPv4 or `::1` for IPv6. When you connect to `localhost`, you're effectively communicating with your own machine, allowing you to test and debug network services or applications locally without accessing external networks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is localhost?](https://www.freecodecamp.org/news/what-is-localhost/) - [@video@What is localhost? | Explained](https://www.youtube.com/watch?v=m98GX51T5dI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/lolbas@10qbxX8DCrfyH7tgYexxQ.md b/src/data/roadmaps/cyber-security/content/lolbas@10qbxX8DCrfyH7tgYexxQ.md index a63b60309..db4297333 100644 --- a/src/data/roadmaps/cyber-security/content/lolbas@10qbxX8DCrfyH7tgYexxQ.md +++ b/src/data/roadmaps/cyber-security/content/lolbas@10qbxX8DCrfyH7tgYexxQ.md @@ -2,7 +2,7 @@ **LOLBAS** (Living Off the Land Binaries and Scripts) refers to a collection of legitimate system binaries and scripts that can be abused by attackers to perform malicious actions while evading detection. These tools, which are often part of the operating system or installed software, can be leveraged for various purposes, such as executing commands, accessing data, or modifying system configurations, thereby allowing attackers to carry out their activities without deploying custom malware. The use of LOLBAS techniques makes it harder for traditional security solutions to detect and prevent malicious activities since the binaries and scripts used are typically trusted and deemed legitimate. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@LOLBAS Project](https://lolbas-project.github.io/#) - [@article@Understanding the risks of LOLBAS in security](https://pentera.io/blog/the-lol-isnt-so-funny-when-it-bites-you-in-the-bas/) diff --git a/src/data/roadmaps/cyber-security/content/loopback@W_oloLu2Euz5zRSy7v_T8.md b/src/data/roadmaps/cyber-security/content/loopback@W_oloLu2Euz5zRSy7v_T8.md index 50aaf08dc..dce5c4af0 100644 --- a/src/data/roadmaps/cyber-security/content/loopback@W_oloLu2Euz5zRSy7v_T8.md +++ b/src/data/roadmaps/cyber-security/content/loopback@W_oloLu2Euz5zRSy7v_T8.md @@ -2,6 +2,6 @@ **Loopback** refers to a special network interface used to send traffic back to the same device for testing and diagnostic purposes. The loopback address for IPv4 is `127.0.0.1`, while for IPv6 it is `::1`. When a device sends a request to the loopback address, the network data does not leave the local machine; instead, it is processed internally, allowing developers to test applications or network services without requiring external network access. Loopback is commonly used to simulate network traffic, check local services, or debug issues locally. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Understanding the Loopback Address and Loopback Interfaces](https://study-ccna.com/loopback-interface-loopback-address/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/mac-based@OAukNfV5T0KTnIF9jKYRF.md b/src/data/roadmaps/cyber-security/content/mac-based@OAukNfV5T0KTnIF9jKYRF.md index dbf03dbe2..558faa934 100644 --- a/src/data/roadmaps/cyber-security/content/mac-based@OAukNfV5T0KTnIF9jKYRF.md +++ b/src/data/roadmaps/cyber-security/content/mac-based@OAukNfV5T0KTnIF9jKYRF.md @@ -2,7 +2,7 @@ **Mandatory Access Control (MAC)** is a security model in which access to resources is governed by predefined policies set by the system or organization, rather than by individual users. In MAC, access decisions are based on security labels or classifications assigned to both users and resources, such as sensitivity levels or clearance levels. Users cannot change these access controls; they are enforced by the system to maintain strict security standards and prevent unauthorized access. MAC is often used in high-security environments, such as government or military systems, to ensure that data and resources are accessed only by individuals with appropriate authorization. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Mandatory Access Control (MAC) Models](https://www.youtube.com/watch?v=mNN-fEboRAA) - [@article@What is Mandatory Access Control?](https://nordlayer.com/learn/access-control/mandatory-access-control/) +- [@video@Mandatory Access Control (MAC) Models](https://www.youtube.com/watch?v=mNN-fEboRAA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/macos@dztwr-DSckggQbcNIi4_2.md b/src/data/roadmaps/cyber-security/content/macos@dztwr-DSckggQbcNIi4_2.md index 298d66abc..69e4c81f3 100644 --- a/src/data/roadmaps/cyber-security/content/macos@dztwr-DSckggQbcNIi4_2.md +++ b/src/data/roadmaps/cyber-security/content/macos@dztwr-DSckggQbcNIi4_2.md @@ -2,7 +2,7 @@ **macOS** is an operating system developed by Apple Inc. for its line of Mac computers. Known for its user-friendly interface and integration with other Apple products, macOS features a Unix-based architecture, offering stability, security, and performance. It includes a suite of built-in applications, such as Safari, Mail, and Finder, and supports a wide range of third-party software. macOS provides seamless integration with services like iCloud, Continuity, and Handoff, enhancing productivity and connectivity across Apple devices. Regular updates and a focus on design and usability make macOS a popular choice for both personal and professional use. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@macOS](https://www.apple.com/macos/macos-sequoia/) -- [@video@Mac Tutorial for Beginners 2024](https://www.youtube.com/watch?v=3jeeFc2Vo1U) +- [@video@Mac Tutorial for Beginners 2024](https://www.youtube.com/watch?v=3jeeFc2Vo1U) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/man@LrwTMH_1fTd8iB9wJg-0t.md b/src/data/roadmaps/cyber-security/content/man@LrwTMH_1fTd8iB9wJg-0t.md index 64efaf5ac..b87adae88 100644 --- a/src/data/roadmaps/cyber-security/content/man@LrwTMH_1fTd8iB9wJg-0t.md +++ b/src/data/roadmaps/cyber-security/content/man@LrwTMH_1fTd8iB9wJg-0t.md @@ -2,7 +2,7 @@ A **Metropolitan Area Network (MAN)** is a type of network that spans a city or large campus, connecting multiple local area networks (LANs) within that geographic area. MANs are designed to provide high-speed data transfer and communication services to organizations, institutions, or businesses across a city. They support a variety of applications, including internet access, intranet connectivity, and data sharing among multiple locations. Typically, MANs are faster and cover a broader area than LANs but are smaller in scope compared to wide area networks (WANs). -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Metropolitan Area Network?](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-a-metropolitan-area-network/) -- [@video@Network Types: MAN](https://youtu.be/4_zSIXb7tLQ?si=1jTQ5C9PT4WUOztP&t=183) +- [@video@Network Types: MAN](https://youtu.be/4_zSIXb7tLQ?si=1jTQ5C9PT4WUOztP&t=183) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/management@s9tHpzYRj2HCImwQhnjFM.md b/src/data/roadmaps/cyber-security/content/management@s9tHpzYRj2HCImwQhnjFM.md index 0e672fbab..ced99de28 100644 --- a/src/data/roadmaps/cyber-security/content/management@s9tHpzYRj2HCImwQhnjFM.md +++ b/src/data/roadmaps/cyber-security/content/management@s9tHpzYRj2HCImwQhnjFM.md @@ -2,7 +2,7 @@ The Management Department in a company is responsible for overseeing the organization's overall operations, strategy, and performance. It typically consists of senior executives and managers who make critical decisions, set goals, and provide leadership across various functional areas. This department focuses on planning, organizing, directing, and controlling resources to achieve organizational objectives. Key responsibilities include developing business strategies, managing budgets, overseeing human resources, ensuring regulatory compliance, and driving organizational growth. The Management Department also plays a crucial role in fostering company culture, facilitating communication between different departments, and adapting the organization to changing market conditions and internal needs. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Who Holds the Ultimate Responsibility for Cyber Security?](https://resolutionit.com/news/who-holds-the-ultimate-responsibility-for-cyber-security/) - [@article@Cybersecurity – a responsibility of top management](https://www.valmet.com/insights/articles/experts-voice/cybersecurity--a-responsibility-of-top-management/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/memdump@wspNQPmqWRjKoFm6x_bVw.md b/src/data/roadmaps/cyber-security/content/memdump@wspNQPmqWRjKoFm6x_bVw.md index d22237c23..fcd9a241b 100644 --- a/src/data/roadmaps/cyber-security/content/memdump@wspNQPmqWRjKoFm6x_bVw.md +++ b/src/data/roadmaps/cyber-security/content/memdump@wspNQPmqWRjKoFm6x_bVw.md @@ -2,7 +2,7 @@ **memdump** is a tool or process used to capture the contents of a computer's physical memory (RAM) for analysis. This "memory dump" can be useful in digital forensics, debugging, or incident response to identify active processes, open files, network connections, or potentially malicious code running in memory. By analyzing a memory dump, security professionals can investigate malware, recover encryption keys, or gather evidence in case of a breach. Tools like `memdump` (Linux utility) or `DumpIt` (Windows) are commonly used to perform this process. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@memdump](https://www.kali.org/tools/memdump/) - [@opensource@memdump - GitHub](https://github.com/tchebb/memdump) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/memory-leak@nOND14t7ISgSH3zNpV3F8.md b/src/data/roadmaps/cyber-security/content/memory-leak@nOND14t7ISgSH3zNpV3F8.md index 087125a93..06a4cdf53 100644 --- a/src/data/roadmaps/cyber-security/content/memory-leak@nOND14t7ISgSH3zNpV3F8.md +++ b/src/data/roadmaps/cyber-security/content/memory-leak@nOND14t7ISgSH3zNpV3F8.md @@ -2,7 +2,7 @@ A Memory Leak occurs when a computer program consumes memory but fails to release it back to the operating system after it is no longer needed. Over time, this can lead to reduced system performance, increased memory usage, and, in severe cases, the program or system may crash due to the exhaustion of available memory. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What are memory leaks?](https://learn.snyk.io/lesson/memory-leaks/) - [@video@What are memory leaks?](https://www.youtube.com/watch?v=00Kdpgl6fsY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/mesh@PYeF15e7iVB9seFrrO7W6.md b/src/data/roadmaps/cyber-security/content/mesh@PYeF15e7iVB9seFrrO7W6.md index cfc758429..6670d9498 100644 --- a/src/data/roadmaps/cyber-security/content/mesh@PYeF15e7iVB9seFrrO7W6.md +++ b/src/data/roadmaps/cyber-security/content/mesh@PYeF15e7iVB9seFrrO7W6.md @@ -2,7 +2,7 @@ Mesh topology is a network architecture where devices or nodes are interconnected with multiple direct, point-to-point links to every other node in the network. This structure allows data to travel from source to destination through multiple paths, enhancing reliability and fault tolerance. In a full mesh topology, every node is connected to every other node, while in a partial mesh, only some nodes have multiple connections. Mesh networks are highly resilient to failures, as traffic can be rerouted if a link goes down. They're commonly used in wireless networks, IoT applications, and critical infrastructure where redundancy and self-healing capabilities are crucial. However, mesh topologies can be complex and expensive to implement, especially in large networks due to the high number of connections required. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Mesh Topology?](https://www.lenovo.com/gb/en/glossary/mesh-topology) -- [@article@Mesh Topology explained](https://www.computerhope.com/jargon/m/mesh.htm) +- [@article@Mesh Topology explained](https://www.computerhope.com/jargon/m/mesh.htm) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/mfa--2fa@pnfVrOjDeG1uYAeqHxhJP.md b/src/data/roadmaps/cyber-security/content/mfa--2fa@pnfVrOjDeG1uYAeqHxhJP.md index f782ceb5d..b58f5b13e 100644 --- a/src/data/roadmaps/cyber-security/content/mfa--2fa@pnfVrOjDeG1uYAeqHxhJP.md +++ b/src/data/roadmaps/cyber-security/content/mfa--2fa@pnfVrOjDeG1uYAeqHxhJP.md @@ -2,7 +2,7 @@ **Multi-Factor Authentication (MFA)** and **Two-Factor Authentication (2FA)** are security methods that require users to provide two or more forms of verification to access a system. **2FA** specifically uses two factors, typically combining something the user knows (like a password) with something they have (like a phone or token) or something they are (like a fingerprint). **MFA**, on the other hand, can involve additional layers of authentication beyond two factors, further enhancing security. Both methods aim to strengthen access controls by making it harder for unauthorized individuals to gain access, even if passwords are compromised. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is MFA?](https://www.onelogin.com/learn/what-is-mfa) -- [@article@What is 2FA?](https://www.microsoft.com/en-gb/security/business/security-101/what-is-two-factor-authentication-2fa) +- [@article@What is 2FA?](https://www.microsoft.com/en-gb/security/business/security-101/what-is-two-factor-authentication-2fa) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ms-office-suite@-5haJATqlmj0SFSFAqN6A.md b/src/data/roadmaps/cyber-security/content/ms-office-suite@-5haJATqlmj0SFSFAqN6A.md index 8d7855823..a921d0afe 100644 --- a/src/data/roadmaps/cyber-security/content/ms-office-suite@-5haJATqlmj0SFSFAqN6A.md +++ b/src/data/roadmaps/cyber-security/content/ms-office-suite@-5haJATqlmj0SFSFAqN6A.md @@ -2,7 +2,7 @@ The **Microsoft Office Suite** is a collection of productivity software developed by Microsoft, commonly used in both personal and professional settings. It includes core applications such as **Word** (word processing), **Excel** (spreadsheets), **PowerPoint** (presentations), and **Outlook** (email and calendar). Other applications in the suite may include **Access** (database management), **OneNote** (note-taking), and **Teams** (collaboration and communication). The suite offers integrated tools for creating, managing, and sharing documents, data, and communications, supporting a wide range of business and personal productivity tasks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Microsoft Office Suite Directory](https://www.microsoft.com/en-gb/microsoft-365/products-apps-services) -- [@video@Every Office 365 App Explained](https://www.youtube.com/watch?v=2W0T2qGZ9Dc) +- [@video@Every Office 365 App Explained](https://www.youtube.com/watch?v=2W0T2qGZ9Dc) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nac-based@6oAzYfwsHQYNVbi7c2Tly.md b/src/data/roadmaps/cyber-security/content/nac-based@6oAzYfwsHQYNVbi7c2Tly.md index fde4671cc..87fc08e9d 100644 --- a/src/data/roadmaps/cyber-security/content/nac-based@6oAzYfwsHQYNVbi7c2Tly.md +++ b/src/data/roadmaps/cyber-security/content/nac-based@6oAzYfwsHQYNVbi7c2Tly.md @@ -2,7 +2,7 @@ Network Access Control (NAC) based hardening is a crucial component in enhancing the security of your network infrastructure. NAC provides organizations with the ability to control and manage access to the network resources, ensuring that only authorized users and devices can connect to the network. It plays a vital role in reducing the attack surface and preventing unauthorized access to sensitive data and resources. By implementing NAC-based hardening in your cybersecurity strategy, you protect your organization from threats and maintain secure access to critical resources. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Network Access Control](https://www.youtube.com/watch?v=hXeFJ05J4pQ) - [@article@What is Network Access Control](https://www.fortinet.com/resources/cyberglossary/what-is-network-access-control) +- [@video@Network Access Control](https://www.youtube.com/watch?v=hXeFJ05J4pQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nat@Kkd3f_0OYNCdpDgrJ-_Ju.md b/src/data/roadmaps/cyber-security/content/nat@Kkd3f_0OYNCdpDgrJ-_Ju.md index 2d24e497a..ad3591151 100644 --- a/src/data/roadmaps/cyber-security/content/nat@Kkd3f_0OYNCdpDgrJ-_Ju.md +++ b/src/data/roadmaps/cyber-security/content/nat@Kkd3f_0OYNCdpDgrJ-_Ju.md @@ -2,7 +2,7 @@ **Network Address Translation (NAT)** is a method used to modify IP address information in packet headers while they are in transit across a network. NAT allows multiple devices on a private network to share a single public IP address for accessing external resources, helping conserve the limited number of available public IP addresses. It also enhances security by hiding internal IP addresses from the public internet. Common types of NAT include **Static NAT** (one-to-one mapping), **Dynamic NAT** (many-to-many mapping), and **Port Address Translation (PAT)** or **NAT overload** (many-to-one mapping, commonly used in home routers). -Learn more from the following resources: +Visit the following resources to learn more: - [@article@How NAT Works](https://www.comptia.org/content/guides/what-is-network-address-translation) -- [@video@NAT explained](https://www.youtube.com/watch?v=FTUV0t6JaDA) +- [@video@NAT explained](https://www.youtube.com/watch?v=FTUV0t6JaDA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/navigating-using-gui-and-cli@MGitS_eJBoY99zOR-W3F4.md b/src/data/roadmaps/cyber-security/content/navigating-using-gui-and-cli@MGitS_eJBoY99zOR-W3F4.md index 1de659668..248502926 100644 --- a/src/data/roadmaps/cyber-security/content/navigating-using-gui-and-cli@MGitS_eJBoY99zOR-W3F4.md +++ b/src/data/roadmaps/cyber-security/content/navigating-using-gui-and-cli@MGitS_eJBoY99zOR-W3F4.md @@ -1,34 +1,35 @@ # Navigating using GUI and CLI -## Graphical User Interface (GUI) +Graphical User Interface (GUI) +------------------------------ A Graphical User Interface (GUI) is a type of user interface that allows users to interact with a software program, computer, or network device using images, icons, and visual indicators. The GUI is designed to make the user experience more intuitive, as it enables users to perform tasks using a mouse and a keyboard without having to delve into complex commands. Most modern operating systems (Windows, macOS, and Linux) offer GUIs as the primary means of interaction. **Advantages of GUI:** -- User-friendly and visually appealing -- Easier for beginners to learn and navigate -- Reduces the need to memorize complex commands +* User-friendly and visually appealing +* Easier for beginners to learn and navigate +* Reduces the need to memorize complex commands **Disadvantages of GUI:** -- Consumes more system resources (memory, CPU) than CLI -- Some advanced features might not be available or accessibly as quickly compared to CLI +* Consumes more system resources (memory, CPU) than CLI +* Some advanced features might not be available or accessibly as quickly compared to CLI -## Command Line Interface (CLI) +Command Line Interface (CLI) +---------------------------- A Command Line Interface (CLI) is a text-based interface that allows users to interact with computer programs or network devices directly through commands that are entered via a keyboard. CLIs are used in a variety of contexts, including operating systems (e.g., Windows Command Prompt or PowerShell, macOS Terminal, and Linux shell), network devices (such as routers and switches), and some software applications. **Advantages of CLI:** -- Faster and more efficient in performing tasks once commands are known -- Requires fewer system resources (memory, CPU) than GUI -- Provides more control and advanced features for experienced users +* Faster and more efficient in performing tasks once commands are known +* Requires fewer system resources (memory, CPU) than GUI +* Provides more control and advanced features for experienced users **Disadvantages of CLI:** -- Steeper learning curve for beginners -- Requires memorization or reference material for commands and syntax - -By understanding how to navigate and use both GUI and CLI, you will be better equipped to manage and secure your computer systems and network devices, as well as perform various cyber security tasks that may require a combination of these interfaces. It is essential to be familiar with both methods, as some tasks may require the precision and control offered by CLI, while others may be more efficiently performed using a GUI. +* Steeper learning curve for beginners +* Requires memorization or reference material for commands and syntax +By understanding how to navigate and use both GUI and CLI, you will be better equipped to manage and secure your computer systems and network devices, as well as perform various cyber security tasks that may require a combination of these interfaces. It is essential to be familiar with both methods, as some tasks may require the precision and control offered by CLI, while others may be more efficiently performed using a GUI. \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/netflow@xXz-SwvXA2cLfdCd-hLtW.md b/src/data/roadmaps/cyber-security/content/netflow@xXz-SwvXA2cLfdCd-hLtW.md index b63b75257..c1f9ef94b 100644 --- a/src/data/roadmaps/cyber-security/content/netflow@xXz-SwvXA2cLfdCd-hLtW.md +++ b/src/data/roadmaps/cyber-security/content/netflow@xXz-SwvXA2cLfdCd-hLtW.md @@ -2,7 +2,7 @@ **NetFlow** is a network protocol developed by Cisco for collecting and analyzing network traffic data. It provides detailed information about network flows, including the source and destination IP addresses, ports, and the amount of data transferred. NetFlow data helps network administrators monitor traffic patterns, assess network performance, and identify potential security threats. By analyzing flow data, organizations can gain insights into bandwidth usage, detect anomalies, and optimize network resources. NetFlow is widely supported across various network devices and often integrated with network management and security tools for enhanced visibility and control. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Cisco NetFlow](https://www.cisco.com/c/en/us/products/ios-nx-os-software/ios-netflow/index.html) -- [@video@What is NetFlow?](https://www.youtube.com/watch?v=aqTpUmUibB8) +- [@video@What is NetFlow?](https://www.youtube.com/watch?v=aqTpUmUibB8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/netstat@2M3PRbGzo14agbEPe32ww.md b/src/data/roadmaps/cyber-security/content/netstat@2M3PRbGzo14agbEPe32ww.md index 2c4475b8c..366b002e2 100644 --- a/src/data/roadmaps/cyber-security/content/netstat@2M3PRbGzo14agbEPe32ww.md +++ b/src/data/roadmaps/cyber-security/content/netstat@2M3PRbGzo14agbEPe32ww.md @@ -2,7 +2,7 @@ **netstat** (network statistics) is a command-line tool used to display network connections, routing tables, and network interface statistics. It provides information about active TCP and UDP connections, listening ports, and the status of network interfaces. By using **netstat**, users can monitor network activity, diagnose connectivity issues, and identify open ports and services running on a system. The tool is available on various operating systems, including Windows, macOS, and Linux, and is often employed for network troubleshooting and security assessments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@netstat command](https://docs.oracle.com/cd/E19504-01/802-5753/6i9g71m3i/index.html) -- [@video@netstat Command Explained](https://www.youtube.com/watch?v=8UZFpCQeXnM) +- [@video@netstat Command Explained](https://www.youtube.com/watch?v=8UZFpCQeXnM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/networking-knowledge@gSLr-Lc119eX9Ig-kDzJ2.md b/src/data/roadmaps/cyber-security/content/networking-knowledge@gSLr-Lc119eX9Ig-kDzJ2.md index a8f0e407a..b7bcee3f1 100644 --- a/src/data/roadmaps/cyber-security/content/networking-knowledge@gSLr-Lc119eX9Ig-kDzJ2.md +++ b/src/data/roadmaps/cyber-security/content/networking-knowledge@gSLr-Lc119eX9Ig-kDzJ2.md @@ -2,15 +2,15 @@ **Networking knowledge** encompasses understanding the principles, technologies, and protocols involved in connecting and managing networks. Key areas include: -- **Network Protocols**: Familiarity with protocols like TCP/IP, DNS, DHCP, and HTTP, which govern data transmission and communication between devices. -- **Network Topologies**: Knowledge of network architectures such as star, ring, mesh, and hybrid topologies, which influence how devices are interconnected. -- **IP Addressing and Subnetting**: Understanding IP address allocation, subnetting, and CIDR notation for organizing and managing network addresses. -- **Network Devices**: Knowledge of routers, switches, firewalls, and access points, and their roles in directing traffic, providing security, and enabling connectivity. -- **Network Security**: Awareness of security measures like VPNs, firewalls, IDS/IPS, and encryption to protect data and prevent unauthorized access. -- **Troubleshooting**: Skills in diagnosing and resolving network issues using tools like ping, traceroute, and network analyzers. +* **Network Protocols**: Familiarity with protocols like TCP/IP, DNS, DHCP, and HTTP, which govern data transmission and communication between devices. +* **Network Topologies**: Knowledge of network architectures such as star, ring, mesh, and hybrid topologies, which influence how devices are interconnected. +* **IP Addressing and Subnetting**: Understanding IP address allocation, subnetting, and CIDR notation for organizing and managing network addresses. +* **Network Devices**: Knowledge of routers, switches, firewalls, and access points, and their roles in directing traffic, providing security, and enabling connectivity. +* **Network Security**: Awareness of security measures like VPNs, firewalls, IDS/IPS, and encryption to protect data and prevent unauthorized access. +* **Troubleshooting**: Skills in diagnosing and resolving network issues using tools like ping, traceroute, and network analyzers. This knowledge is essential for designing, implementing, and maintaining effective and secure network infrastructures. -Learn more from the following resources: +Visit the following resources to learn more: -- [@article@What are Network Protocols?](https://www.solarwinds.com/resources/it-glossary/network-protocols) +- [@article@What are Network Protocols?](https://www.solarwinds.com/resources/it-glossary/network-protocols) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nfc@hwAUFLYpc_ftCfXq95dey.md b/src/data/roadmaps/cyber-security/content/nfc@hwAUFLYpc_ftCfXq95dey.md index ae6a36462..c665bce6b 100644 --- a/src/data/roadmaps/cyber-security/content/nfc@hwAUFLYpc_ftCfXq95dey.md +++ b/src/data/roadmaps/cyber-security/content/nfc@hwAUFLYpc_ftCfXq95dey.md @@ -2,8 +2,8 @@ **Near Field Communication (NFC)** is a short-range wireless technology that allows devices to communicate and exchange data over very short distances, typically up to 4 inches (10 cm). NFC is commonly used for applications such as contactless payments, electronic ticketing, and data transfer between devices. It operates at a frequency of 13.56 MHz and supports various modes, including peer-to-peer communication, card emulation, and reader/writer modes. NFC enables quick and secure interactions with minimal setup, making it convenient for mobile payments, access control, and sharing information. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@The Beginner's Guide to NFCs](https://www.spiceworks.com/tech/networking/articles/what-is-near-field-communication/) - [@article@NFC Guide: All You Need to Know About Near Field Communication](https://squareup.com/us/en/the-bottom-line/managing-your-finances/nfc) -- [@video@NFC Explained: What is NFC? How NFC Works? Applications of NFC](https://youtu.be/eWPtt2hLnJk) +- [@video@NFC Explained: What is NFC? How NFC Works? Applications of NFC](https://youtu.be/eWPtt2hLnJk) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nids@LIPtxl_oKZRcbvXT4EdNf.md b/src/data/roadmaps/cyber-security/content/nids@LIPtxl_oKZRcbvXT4EdNf.md index 1eabd4d69..d80685065 100644 --- a/src/data/roadmaps/cyber-security/content/nids@LIPtxl_oKZRcbvXT4EdNf.md +++ b/src/data/roadmaps/cyber-security/content/nids@LIPtxl_oKZRcbvXT4EdNf.md @@ -1,8 +1,8 @@ -# Network Intrusion Detection System (NIDS) - -A Network Intrusion Detection System (NIDS) is a security solution designed to monitor and analyze network traffic for signs of suspicious activity or potential threats. NIDS operates by inspecting the data packets that flow through a network, looking for patterns that match known attack signatures or anomalies that could indicate malicious behavior. Unlike a Host Intrusion Detection System (HIDS), which focuses on individual host devices, NIDS provides a broader view by monitoring network traffic across multiple systems and devices. - -Visit the following resources to learn more: - -- [@article@What is an Intrusion Detection System?](https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-detection-system-ids) -- [@article@What is a Network Intrusion Detection system (NIDS)?](https://bunny.net/academy/security/what-is-network-intrusion-detection-nids/) +# Network Intrusion Detection System (NIDS) + +A Network Intrusion Detection System (NIDS) is a security solution designed to monitor and analyze network traffic for signs of suspicious activity or potential threats. NIDS operates by inspecting the data packets that flow through a network, looking for patterns that match known attack signatures or anomalies that could indicate malicious behavior. Unlike a Host Intrusion Detection System (HIDS), which focuses on individual host devices, NIDS provides a broader view by monitoring network traffic across multiple systems and devices. + +Visit the following resources to learn more: + +- [@article@What is an Intrusion Detection System?](https://www.paloaltonetworks.com/cyberpedia/what-is-an-intrusion-detection-system-ids) +- [@article@What is a Network Intrusion Detection system (NIDS)?](https://bunny.net/academy/security/what-is-network-intrusion-detection-nids/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nips@7w9qj16OD4pUzq-ItdxeK.md b/src/data/roadmaps/cyber-security/content/nips@7w9qj16OD4pUzq-ItdxeK.md index 02708c4ba..c1be04085 100644 --- a/src/data/roadmaps/cyber-security/content/nips@7w9qj16OD4pUzq-ItdxeK.md +++ b/src/data/roadmaps/cyber-security/content/nips@7w9qj16OD4pUzq-ItdxeK.md @@ -2,7 +2,7 @@ A **Network Intrusion Prevention System (NIPS)** is a security technology designed to monitor, detect, and prevent malicious activities or policy violations on a network. Unlike intrusion detection systems (IDS), which only alert on potential threats, a NIPS actively blocks or mitigates suspicious traffic in real-time. It analyzes network traffic patterns, inspects packet contents, and uses predefined signatures or behavioral analysis to identify threats. By preventing attacks such as malware, unauthorized access, and denial-of-service (DoS) attacks, a NIPS helps protect network integrity and maintain secure operations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is an Intrusion Prevention System?](https://www.paloaltonetworks.co.uk/cyberpedia/what-is-an-intrusion-prevention-system-ips) -- [@video@Intrusion Prevention - SY0-601 CompTIA Security+](https://www.youtube.com/watch?v=WPPSsFnWOYg) +- [@video@Intrusion Prevention - SY0-601 CompTIA Security+](https://www.youtube.com/watch?v=WPPSsFnWOYg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nist@SOkJUTd1NUKSwYMIprv4m.md b/src/data/roadmaps/cyber-security/content/nist@SOkJUTd1NUKSwYMIprv4m.md index cea5062bf..3d32b927b 100644 --- a/src/data/roadmaps/cyber-security/content/nist@SOkJUTd1NUKSwYMIprv4m.md +++ b/src/data/roadmaps/cyber-security/content/nist@SOkJUTd1NUKSwYMIprv4m.md @@ -2,7 +2,7 @@ **NIST (National Institute of Standards and Technology)** is a U.S. federal agency that develops and promotes measurement standards, technology, and best practices. In the context of cybersecurity, NIST provides widely recognized guidelines and frameworks, such as the **NIST Cybersecurity Framework (CSF)**, which offers a structured approach to managing and mitigating cybersecurity risks. NIST also publishes the **NIST Special Publication (SP) 800 series**, which includes standards and guidelines for securing information systems, protecting data, and ensuring system integrity. These resources are essential for organizations seeking to enhance their security posture and comply with industry regulations. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@NIST](https://www.nist.gov/) -- [@article@What is NIST?](https://www.encryptionconsulting.com/education-center/nist/) +- [@article@What is NIST?](https://www.encryptionconsulting.com/education-center/nist/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nmap@Hoou7kWyfB2wx_yFHug_H.md b/src/data/roadmaps/cyber-security/content/nmap@Hoou7kWyfB2wx_yFHug_H.md index 9718f3cc7..fbd9c78d9 100644 --- a/src/data/roadmaps/cyber-security/content/nmap@Hoou7kWyfB2wx_yFHug_H.md +++ b/src/data/roadmaps/cyber-security/content/nmap@Hoou7kWyfB2wx_yFHug_H.md @@ -2,8 +2,8 @@ **Nmap** (Network Mapper) is an open-source network scanning tool used to discover hosts and services on a network, identify open ports, and detect vulnerabilities. It provides detailed information about networked devices, including their IP addresses, operating systems, and running services. Nmap supports various scanning techniques such as TCP SYN scan, UDP scan, and service version detection. It's widely used for network security assessments, vulnerability scanning, and network inventory management, helping administrators and security professionals understand and secure their network environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@NMAP](https://nmap.org/) - [@article@NMAP Cheat Sheet](https://www.tutorialspoint.com/nmap-cheat-sheet) -- [@video@Nmap Tutorial to find Network Vulnerabilities](https://www.youtube.com/watch?v=4t4kBkMsDbQ) +- [@video@Nmap Tutorial to find Network Vulnerabilities](https://www.youtube.com/watch?v=4t4kBkMsDbQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nmap@xqwIEyGfdZFxk6QqbPswe.md b/src/data/roadmaps/cyber-security/content/nmap@xqwIEyGfdZFxk6QqbPswe.md index 86c793af9..c856aabb3 100644 --- a/src/data/roadmaps/cyber-security/content/nmap@xqwIEyGfdZFxk6QqbPswe.md +++ b/src/data/roadmaps/cyber-security/content/nmap@xqwIEyGfdZFxk6QqbPswe.md @@ -2,8 +2,8 @@ **Nmap** (Network Mapper) is an open-source network scanning tool used to discover hosts and services on a network, identify open ports, and detect vulnerabilities. It provides detailed information about networked devices, including their IP addresses, operating systems, and running services. Nmap supports various scanning techniques such as TCP SYN scan, UDP scan, and service version detection. It's widely used for network security assessments, vulnerability scanning, and network inventory management, helping administrators and security professionals understand and secure their network environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@NMAP Website](https://nmap.org/) - [@article@NMAP Cheat Sheet](https://www.tutorialspoint.com/nmap-cheat-sheet) -- [@video@Nmap Tutorial to find Network Vulnerabilities](https://www.youtube.com/watch?v=4t4kBkMsDbQ) +- [@video@Nmap Tutorial to find Network Vulnerabilities](https://www.youtube.com/watch?v=4t4kBkMsDbQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nslookup@OUarb1oS1-PX_3OXNR0rV.md b/src/data/roadmaps/cyber-security/content/nslookup@OUarb1oS1-PX_3OXNR0rV.md index 2376b58ad..c345368ef 100644 --- a/src/data/roadmaps/cyber-security/content/nslookup@OUarb1oS1-PX_3OXNR0rV.md +++ b/src/data/roadmaps/cyber-security/content/nslookup@OUarb1oS1-PX_3OXNR0rV.md @@ -2,7 +2,7 @@ **nslookup** is a network utility used to query Domain Name System (DNS) servers for information about domain names and IP addresses. It allows users to obtain details such as IP address mappings for a given domain name, reverse lookups to find domain names associated with an IP address, and DNS record types like A, MX, and CNAME records. nslookup helps troubleshoot DNS-related issues, verify DNS configurations, and analyze DNS records. It can be run from the command line in various operating systems, including Windows, macOS, and Linux. -Learn more from the following resources +Visit the following resources to learn more: - [@article@nslookup](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/nslookup) -- [@video@What is Nslookup?](https://www.youtube.com/watch?v=n6pT8lbyhog) +- [@video@What is Nslookup?](https://www.youtube.com/watch?v=n6pT8lbyhog) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/nslookup@tk4iG5i1Ml9w9KRO1tGJU.md b/src/data/roadmaps/cyber-security/content/nslookup@tk4iG5i1Ml9w9KRO1tGJU.md index 2376b58ad..c345368ef 100644 --- a/src/data/roadmaps/cyber-security/content/nslookup@tk4iG5i1Ml9w9KRO1tGJU.md +++ b/src/data/roadmaps/cyber-security/content/nslookup@tk4iG5i1Ml9w9KRO1tGJU.md @@ -2,7 +2,7 @@ **nslookup** is a network utility used to query Domain Name System (DNS) servers for information about domain names and IP addresses. It allows users to obtain details such as IP address mappings for a given domain name, reverse lookups to find domain names associated with an IP address, and DNS record types like A, MX, and CNAME records. nslookup helps troubleshoot DNS-related issues, verify DNS configurations, and analyze DNS records. It can be run from the command line in various operating systems, including Windows, macOS, and Linux. -Learn more from the following resources +Visit the following resources to learn more: - [@article@nslookup](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/nslookup) -- [@video@What is Nslookup?](https://www.youtube.com/watch?v=n6pT8lbyhog) +- [@video@What is Nslookup?](https://www.youtube.com/watch?v=n6pT8lbyhog) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ntp@tf0TymdPHbplDHvuVIIh4.md b/src/data/roadmaps/cyber-security/content/ntp@tf0TymdPHbplDHvuVIIh4.md index 505b8cdbe..b86478867 100644 --- a/src/data/roadmaps/cyber-security/content/ntp@tf0TymdPHbplDHvuVIIh4.md +++ b/src/data/roadmaps/cyber-security/content/ntp@tf0TymdPHbplDHvuVIIh4.md @@ -2,7 +2,7 @@ **Network Time Protocol (NTP)** is a protocol used to synchronize the clocks of computers and network devices over a network. It ensures that all systems maintain accurate and consistent time by coordinating with a hierarchy of time sources, such as atomic clocks or GPS, through network communication. NTP operates over UDP port 123 and uses algorithms to account for network delays and adjust for clock drift, providing millisecond-level accuracy. Proper time synchronization is crucial for applications requiring time-sensitive operations, logging events, and maintaining the integrity of security protocols. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Network Time Protocol (NTP)](https://www.youtube.com/watch?v=BAo5C2qbLq8) -- [@article@What is NTP?](https://www.pubnub.com/learn/glossary/ntp-protocol/) \ No newline at end of file +- [@article@What is NTP?](https://www.pubnub.com/learn/glossary/ntp-protocol/) +- [@video@Network Time Protocol (NTP)](https://www.youtube.com/watch?v=BAo5C2qbLq8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/obfuscation@kxlg6rpfqqoBfmMMg3EkJ.md b/src/data/roadmaps/cyber-security/content/obfuscation@kxlg6rpfqqoBfmMMg3EkJ.md index 975a23bdc..8daac44d1 100644 --- a/src/data/roadmaps/cyber-security/content/obfuscation@kxlg6rpfqqoBfmMMg3EkJ.md +++ b/src/data/roadmaps/cyber-security/content/obfuscation@kxlg6rpfqqoBfmMMg3EkJ.md @@ -2,7 +2,7 @@ **Obfuscation** is the practice of deliberately making data, code, or communications difficult to understand or analyze, often to protect intellectual property or enhance security. In software development, obfuscation involves transforming code into a complex or less readable form to hinder reverse engineering or unauthorized access. This technique can include renaming variables and functions to meaningless labels, or altering code structure while preserving functionality. In security contexts, obfuscation can also involve disguising malicious payloads to evade detection by antivirus or security systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@How does Obfuscation work?](https://www.hypr.com/security-encyclopedia/obfuscation) -- [@video@Obfuscation - CompTIA Security+](https://www.youtube.com/watch?v=LfuTMzZke4g) +- [@video@Obfuscation - CompTIA Security+](https://www.youtube.com/watch?v=LfuTMzZke4g) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/onedrive@MWqnhDKm9jXvDDjkeVNxm.md b/src/data/roadmaps/cyber-security/content/onedrive@MWqnhDKm9jXvDDjkeVNxm.md index fd4d5b9d3..61bcb8995 100644 --- a/src/data/roadmaps/cyber-security/content/onedrive@MWqnhDKm9jXvDDjkeVNxm.md +++ b/src/data/roadmaps/cyber-security/content/onedrive@MWqnhDKm9jXvDDjkeVNxm.md @@ -2,7 +2,7 @@ **OneDrive** is a cloud storage service provided by Microsoft that allows users to store, sync, and share files and folders online. It integrates seamlessly with Windows and Microsoft 365 applications, enabling users to access their data from any device with an internet connection. OneDrive offers features such as real-time collaboration, file versioning, and automatic backup, making it convenient for personal and professional use. It also provides options for sharing files with others and controlling access permissions, enhancing productivity and data management. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Microsoft OneDrive](https://onedrive.live.com) -- [@video@Microsoft OneDrive Tutorial](https://www.youtube.com/watch?v=qgw01w0iYjA) +- [@video@Microsoft OneDrive Tutorial](https://www.youtube.com/watch?v=qgw01w0iYjA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/operating-system-hardening@_S25EOGS3P8647zLM5i-g.md b/src/data/roadmaps/cyber-security/content/operating-system-hardening@_S25EOGS3P8647zLM5i-g.md index 1d7695241..ab2093597 100644 --- a/src/data/roadmaps/cyber-security/content/operating-system-hardening@_S25EOGS3P8647zLM5i-g.md +++ b/src/data/roadmaps/cyber-security/content/operating-system-hardening@_S25EOGS3P8647zLM5i-g.md @@ -2,8 +2,8 @@ **Operating system hardening** involves configuring and securing an OS to reduce vulnerabilities and improve its defense against attacks. This process includes disabling unnecessary services and ports, applying security patches and updates, configuring strong authentication mechanisms, enforcing least privilege principles, and enabling firewalls and intrusion detection systems. Hardening also involves setting up proper file permissions, securing system logs, and regularly auditing the system to ensure compliance with security policies and best practices. The goal is to minimize the attack surface and protect the OS from potential threats and exploits. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@OS Hardening: 15 Best Practices](https://perception-point.io/guides/os-isolation/os-hardening-10-best-practices/) - [@article@Operating System (OS) Hardening: Pros, Cons, and Importance](https://linfordco.com/blog/operating-system-hardening/) -- [@video@Hardening Techniques](https://www.youtube.com/watch?v=wXoC46Qr_9Q) +- [@video@Hardening Techniques](https://www.youtube.com/watch?v=wXoC46Qr_9Q) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/operating-systems@UY6xdt_V3YMkZxZ1hZLvW.md b/src/data/roadmaps/cyber-security/content/operating-systems@UY6xdt_V3YMkZxZ1hZLvW.md index eb0ebf374..eaaa59017 100644 --- a/src/data/roadmaps/cyber-security/content/operating-systems@UY6xdt_V3YMkZxZ1hZLvW.md +++ b/src/data/roadmaps/cyber-security/content/operating-systems@UY6xdt_V3YMkZxZ1hZLvW.md @@ -2,8 +2,8 @@ **Operating systems (OS)** are software that manage computer hardware and provide a platform for applications to run. They handle essential functions such as managing memory, processing tasks, controlling input and output devices, and facilitating file management. Key examples include **Windows**, **macOS**, **Linux**, and **Unix**. Each operating system offers different features and interfaces, tailored to specific user needs or system requirements, from desktop computing to server management and embedded systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Operating System?](https://en.wikipedia.org/wiki/Operating_system) - [@article@8 Different Types of Operating Systems With Examples](https://techspirited.com/different-types-of-operating-systems) -- [@video@What is an operating system as fast as possible](https://www.youtube.com/watch?v=pVzRTmdd9j0) +- [@video@What is an operating system as fast as possible](https://www.youtube.com/watch?v=pVzRTmdd9j0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/os-independent-troubleshooting@pJUhQin--BGMuXHPwx3JJ.md b/src/data/roadmaps/cyber-security/content/os-independent-troubleshooting@pJUhQin--BGMuXHPwx3JJ.md index 753261104..749cc61c8 100644 --- a/src/data/roadmaps/cyber-security/content/os-independent-troubleshooting@pJUhQin--BGMuXHPwx3JJ.md +++ b/src/data/roadmaps/cyber-security/content/os-independent-troubleshooting@pJUhQin--BGMuXHPwx3JJ.md @@ -1,45 +1,50 @@ # OS-Independent Troubleshooting -## Understanding Common Symptoms +Understanding Common Symptoms +----------------------------- In order to troubleshoot effectively, it is important to recognize and understand the common symptoms encountered in IT systems. These can range from hardware-related issues, such as overheating or physical damage, to software-related problems, such as slow performance or unresponsiveness. -## Basic Troubleshooting Process +Basic Troubleshooting Process +----------------------------- Following a systematic troubleshooting process is critical, regardless of the operating system. Here are the basic steps you might follow: -- **Identify the problem**: Gather information on the issue and its symptoms, and attempt to reproduce the problem, if possible. Take note of any error messages or unusual behaviors. -- **Research and analyze**: Search for potential causes and remedies on relevant forums, web resources, or vendor documentation. -- **Develop a plan**: Formulate a strategy to resolve the issue, considering the least disruptive approach first, where possible. -- **Test and implement**: Execute the proposed solution(s) and verify if the problem is resolved. If not, repeat the troubleshooting process with a new plan until the issue is fixed. -- **Document the process and findings**: Record the steps taken, solutions implemented, and results to foster learning and improve future troubleshooting efforts. +* **Identify the problem**: Gather information on the issue and its symptoms, and attempt to reproduce the problem, if possible. Take note of any error messages or unusual behaviors. +* **Research and analyze**: Search for potential causes and remedies on relevant forums, web resources, or vendor documentation. +* **Develop a plan**: Formulate a strategy to resolve the issue, considering the least disruptive approach first, where possible. +* **Test and implement**: Execute the proposed solution(s) and verify if the problem is resolved. If not, repeat the troubleshooting process with a new plan until the issue is fixed. +* **Document the process and findings**: Record the steps taken, solutions implemented, and results to foster learning and improve future troubleshooting efforts. -## Isolating the Problem +Isolating the Problem +--------------------- To pinpoint the root cause of an issue, it's important to isolate the problem. You can perform this by: -- **Disabling or isolating hardware components**: Disconnect any peripherals or external devices, then reconnect and test them one by one to identify the defective component(s). -- **Checking resource usage**: Utilize built-in or third-party tools to monitor resource usage (e.g., CPU, memory, and disk) to determine whether a bottleneck is causing the problem. -- **Verifying software configurations**: Analyze the configuration files or settings for any software or applications that could be contributing to the problem. +* **Disabling or isolating hardware components**: Disconnect any peripherals or external devices, then reconnect and test them one by one to identify the defective component(s). +* **Checking resource usage**: Utilize built-in or third-party tools to monitor resource usage (e.g., CPU, memory, and disk) to determine whether a bottleneck is causing the problem. +* **Verifying software configurations**: Analyze the configuration files or settings for any software or applications that could be contributing to the problem. -## Networking and Connectivity Issues +Networking and Connectivity Issues +---------------------------------- Effective troubleshooting of network-related issues requires an understanding of various protocols, tools, and devices involved in networking. Here are some basic steps you can follow: -- **Verify physical connectivity**: Inspect cables, connectors, and devices to ensure all components are securely connected and functioning correctly. -- **Confirm IP configurations**: Check the system's IP address and related settings to ensure it has a valid IP configuration. -- **Test network services**: Use command-line tools, such as `ping` and `traceroute` (or `tracert` in Windows), to test network connections and diagnose potential problems. +* **Verify physical connectivity**: Inspect cables, connectors, and devices to ensure all components are securely connected and functioning correctly. +* **Confirm IP configurations**: Check the system's IP address and related settings to ensure it has a valid IP configuration. +* **Test network services**: Use command-line tools, such as `ping` and `traceroute` (or `tracert` in Windows), to test network connections and diagnose potential problems. -## Log Analysis +Log Analysis +------------ Logs are records of system events, application behavior, and user activity, which can be invaluable when troubleshooting issues. To effectively analyze logs, you should: -- **Identify relevant logs**: Determine which log files contain information related to the problem under investigation. -- **Analyze log content**: Examine events, error messages, or patterns that might shed light on the root cause of the issue. -- **Leverage log-analysis tools**: Utilize specialized tools or scripts to help parse, filter, and analyze large or complex log files. +* **Identify relevant logs**: Determine which log files contain information related to the problem under investigation. +* **Analyze log content**: Examine events, error messages, or patterns that might shed light on the root cause of the issue. +* **Leverage log-analysis tools**: Utilize specialized tools or scripts to help parse, filter, and analyze large or complex log files. -Learn more from the following resources: +Visit the following resources to learn more: -- [@articleOS-Independent Troubleshooting Flashcards](https://quizlet.com/ph/837474114/os-independent-troubleshooting-flash-cards/) -- [@video@Operating System Troubleshooting - CompTIA A+](https://www.youtube.com/watch?v=6gainrNiypc) +- [@article@OS-Independent Troubleshooting Flashcards](https://quizlet.com/ph/837474114/os-independent-troubleshooting-flash-cards/) - [@article@Troubleshooting Guide](https://cdnsm5-ss6.sharpschool.com/userfiles/servers/server_20856499/file/teacher%20pages/lindsay%20dolezal/it%20essentials/5.6.pdf) +- [@video@Operating System Troubleshooting - CompTIA A+](https://www.youtube.com/watch?v=6gainrNiypc) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/oscp@SwVGVP2bbCFs2uNg9Qtxb.md b/src/data/roadmaps/cyber-security/content/oscp@SwVGVP2bbCFs2uNg9Qtxb.md index 9dbbc46a4..28da37127 100644 --- a/src/data/roadmaps/cyber-security/content/oscp@SwVGVP2bbCFs2uNg9Qtxb.md +++ b/src/data/roadmaps/cyber-security/content/oscp@SwVGVP2bbCFs2uNg9Qtxb.md @@ -2,7 +2,7 @@ **OSCP (Offensive Security Certified Professional)** is a widely recognized certification in cybersecurity that focuses on penetration testing and ethical hacking. Offered by Offensive Security, it requires candidates to complete a challenging exam that involves identifying and exploiting vulnerabilities in a controlled environment. The OSCP certification emphasizes hands-on skills, practical experience, and the ability to conduct comprehensive security assessments, making it highly valued by employers for its rigorous approach to real-world penetration testing techniques. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Offensive Security Certified Professional](https://www.offsec.com/courses/pen-200/) - [@article@How to Prepare for OSCP Exam](https://cybersecurityguide.org/programs/cybersecurity-certifications/oscp/) diff --git a/src/data/roadmaps/cyber-security/content/paas@PQ_np6O-4PK2V-r5lywQg.md b/src/data/roadmaps/cyber-security/content/paas@PQ_np6O-4PK2V-r5lywQg.md index 5cf95f95a..4237901a9 100644 --- a/src/data/roadmaps/cyber-security/content/paas@PQ_np6O-4PK2V-r5lywQg.md +++ b/src/data/roadmaps/cyber-security/content/paas@PQ_np6O-4PK2V-r5lywQg.md @@ -2,7 +2,7 @@ Platform as a Service, or **PaaS**, is a type of cloud computing service that provides a platform for developers to create, deploy, and maintain software applications. PaaS combines the software development platform and the underlying infrastructure, such as servers, storage, and networking resources. This enables developers to focus on writing and managing their applications, without worrying about the underlying infrastructure's setup, maintenance, and scalability. PaaS simplifies the application development and deployment process by providing a platform and its associated tools, saving developers time and resources. By leveraging PaaS, organizations can focus on their core competencies and build innovative applications without worrying about infrastructure management. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is PaaS?](https://azure.microsoft.com/en-us/resources/cloud-computing-dictionary/what-is-paas) -- [@video@PaaS Explained](https://www.youtube.com/watch?v=QAbqJzd0PEE) +- [@video@PaaS Explained](https://www.youtube.com/watch?v=QAbqJzd0PEE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/packet-captures@TIxEkfBrN6EXQ3IKP1B7u.md b/src/data/roadmaps/cyber-security/content/packet-captures@TIxEkfBrN6EXQ3IKP1B7u.md index dd37b51a2..e2cf3714e 100644 --- a/src/data/roadmaps/cyber-security/content/packet-captures@TIxEkfBrN6EXQ3IKP1B7u.md +++ b/src/data/roadmaps/cyber-security/content/packet-captures@TIxEkfBrN6EXQ3IKP1B7u.md @@ -2,7 +2,7 @@ **Packet captures** involve recording and analyzing network traffic data packets as they travel across a network. This process allows network administrators and security professionals to inspect the content of packets, including headers and payloads, to diagnose network issues, monitor performance, and detect suspicious activities. Packet captures are typically performed using tools like Wireshark or tcpdump, which collect and store packets for later examination. This analysis helps in understanding network behavior, troubleshooting problems, and identifying security threats or vulnerabilities. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Packet Capture: What is it and What You Need to Know](https://www.varonis.com/blog/packet-capture) -- [@video@Wireshark Tutorial for Beginners](https://www.youtube.com/watch?v=qTaOZrDnMzQ) +- [@video@Wireshark Tutorial for Beginners](https://www.youtube.com/watch?v=qTaOZrDnMzQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/packet-sniffers@k6UX0BJho5arjGD2RWPgH.md b/src/data/roadmaps/cyber-security/content/packet-sniffers@k6UX0BJho5arjGD2RWPgH.md index 968653bd6..436ead02d 100644 --- a/src/data/roadmaps/cyber-security/content/packet-sniffers@k6UX0BJho5arjGD2RWPgH.md +++ b/src/data/roadmaps/cyber-security/content/packet-sniffers@k6UX0BJho5arjGD2RWPgH.md @@ -2,7 +2,7 @@ **Packet sniffers** are tools used to capture and analyze network traffic by intercepting data packets as they traverse a network. They provide insights into network activity, including protocols, IP addresses, and payload contents, which can be useful for diagnosing network issues, monitoring performance, and detecting unauthorized or malicious activity. Packet sniffers operate in promiscuous mode, allowing them to capture all packets on a network segment, and are commonly used for network troubleshooting, security analysis, and forensic investigations. Examples include Wireshark and tcpdump. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Packet Sniffing Explained](https://www.avast.com/c-packet-sniffing) -- [@video@What is Packet Sniffing?](https://www.youtube.com/watch?v=5oioSbgBQ8I) +- [@video@What is Packet Sniffing?](https://www.youtube.com/watch?v=5oioSbgBQ8I) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/parrotos@zR6djXnfTSFVEfvJonQjf.md b/src/data/roadmaps/cyber-security/content/parrotos@zR6djXnfTSFVEfvJonQjf.md index 88f195c4d..ec5fd77d0 100644 --- a/src/data/roadmaps/cyber-security/content/parrotos@zR6djXnfTSFVEfvJonQjf.md +++ b/src/data/roadmaps/cyber-security/content/parrotos@zR6djXnfTSFVEfvJonQjf.md @@ -6,4 +6,4 @@ Visit the following resources to learn more: - [@official@ParrotOS](https://parrotsec.org/) - [@official@ParrotOS Documentation](https://parrotsec.org/docs) -- [@official@ParrotOS Downloads](https://parrotsec.org/download) +- [@official@ParrotOS Downloads](https://parrotsec.org/download) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/pass-the-hash@sMuKqf27y4iG0GrCdF5DN.md b/src/data/roadmaps/cyber-security/content/pass-the-hash@sMuKqf27y4iG0GrCdF5DN.md index 6781f1f12..456da0a4f 100644 --- a/src/data/roadmaps/cyber-security/content/pass-the-hash@sMuKqf27y4iG0GrCdF5DN.md +++ b/src/data/roadmaps/cyber-security/content/pass-the-hash@sMuKqf27y4iG0GrCdF5DN.md @@ -1,8 +1,8 @@ -# Pass the Hash - -Pass the Hash (PtH) is a hacking technique that allows an attacker to authenticate to a remote server or service using the hashed value of a user's password, without needing to know the actual plaintext password. This method exploits weaknesses in the way some authentication protocols handle hashed credentials, particularly in Windows-based systems. - -Visit the following resources to learn more: - -- [@article@What is a pass-the-hash attack?](https://www.crowdstrike.com/cybersecurity-101/pass-the-hash/) -- [@article@Pass the Hash Attack](https://www.netwrix.com/pass_the_hash_attack_explained.html) +# Pass the Hash + +Pass the Hash (PtH) is a hacking technique that allows an attacker to authenticate to a remote server or service using the hashed value of a user's password, without needing to know the actual plaintext password. This method exploits weaknesses in the way some authentication protocols handle hashed credentials, particularly in Windows-based systems. + +Visit the following resources to learn more: + +- [@article@What is a pass-the-hash attack?](https://www.crowdstrike.com/cybersecurity-101/pass-the-hash/) +- [@article@Pass the Hash Attack](https://www.netwrix.com/pass_the_hash_attack_explained.html) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/patching@e-MDyUR3GEv-e4Qsx_5vV.md b/src/data/roadmaps/cyber-security/content/patching@e-MDyUR3GEv-e4Qsx_5vV.md index f5b0d5cb8..d6dee10e2 100644 --- a/src/data/roadmaps/cyber-security/content/patching@e-MDyUR3GEv-e4Qsx_5vV.md +++ b/src/data/roadmaps/cyber-security/content/patching@e-MDyUR3GEv-e4Qsx_5vV.md @@ -2,7 +2,7 @@ **Patching** refers to the process of updating software or systems with fixes or improvements to address security vulnerabilities, bugs, or performance issues. This involves applying patches—small pieces of code provided by software vendors or developers—to close security gaps, resolve operational problems, and enhance functionality. Regular patching is crucial for maintaining system security and stability, protecting against exploits, and ensuring that systems remain compliant with security standards and best practices. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Patch Management?](https://www.ibm.com/topics/patch-management) -- [@video@What Is Patch Management, and Why Does Your Company Need It?](https://www.youtube.com/watch?v=O5XXlJear0w) +- [@video@What Is Patch Management, and Why Does Your Company Need It?](https://www.youtube.com/watch?v=O5XXlJear0w) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/penetration-testing-rules-of-engagement@NkAAQikwH-A6vrF8fWpuB.md b/src/data/roadmaps/cyber-security/content/penetration-testing-rules-of-engagement@NkAAQikwH-A6vrF8fWpuB.md index 1709a8cfe..5d855fff9 100644 --- a/src/data/roadmaps/cyber-security/content/penetration-testing-rules-of-engagement@NkAAQikwH-A6vrF8fWpuB.md +++ b/src/data/roadmaps/cyber-security/content/penetration-testing-rules-of-engagement@NkAAQikwH-A6vrF8fWpuB.md @@ -2,7 +2,7 @@ **Penetration Testing Rules of Engagement** define the guidelines and boundaries for conducting a penetration test. They establish the scope, objectives, and constraints, including the systems and networks to be tested, the testing methods allowed, and the times during which testing can occur. These rules ensure that the testing is conducted ethically and legally, minimizing disruptions and protecting sensitive data. They also include communication protocols for reporting findings and any necessary approvals or permissions from stakeholders to ensure that the testing aligns with organizational policies and compliance requirements. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Why are Rules of Engagement Important to a Penetration Test?](https://www.triaxiomsecurity.com/rules-of-engagement-important-to-penetration-test/) -- [@video@CompTIA Pentest+ : Rules of Engagement](https://www.youtube.com/watch?v=Rt-4j8k6J2U) +- [@video@CompTIA Pentest+ : Rules of Engagement](https://www.youtube.com/watch?v=Rt-4j8k6J2U) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/performing-crud-on-files@zRXyoJMap9irOYo3AdHE8.md b/src/data/roadmaps/cyber-security/content/performing-crud-on-files@zRXyoJMap9irOYo3AdHE8.md index 6b9289c41..42beff611 100644 --- a/src/data/roadmaps/cyber-security/content/performing-crud-on-files@zRXyoJMap9irOYo3AdHE8.md +++ b/src/data/roadmaps/cyber-security/content/performing-crud-on-files@zRXyoJMap9irOYo3AdHE8.md @@ -2,8 +2,8 @@ Performing CRUD operations on files involves creating new files (using write mode), reading file contents (using read mode), updating files (by appending or overwriting existing content), and deleting files (using commands or functions like `os.remove()` in Python). These basic operations are fundamental for managing file data in various applications. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is CRUD?](https://www.crowdstrike.com/cybersecurity-101/observability/crud/) - [@article@CRUD Operations](https://www.freecodecamp.org/news/crud-operations-explained/) -- [@video@What is CRUD?](https://www.youtube.com/watch?v=iNkspbIfcic) +- [@video@What is CRUD?](https://www.youtube.com/watch?v=iNkspbIfcic) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/perimiter-vs-dmz-vs-segmentation@PUgPgpKio4Npzs86qEXa7.md b/src/data/roadmaps/cyber-security/content/perimiter-vs-dmz-vs-segmentation@PUgPgpKio4Npzs86qEXa7.md index dbcf82804..e3650c64b 100644 --- a/src/data/roadmaps/cyber-security/content/perimiter-vs-dmz-vs-segmentation@PUgPgpKio4Npzs86qEXa7.md +++ b/src/data/roadmaps/cyber-security/content/perimiter-vs-dmz-vs-segmentation@PUgPgpKio4Npzs86qEXa7.md @@ -2,15 +2,16 @@ In network security, **perimeter**, **DMZ (Demilitarized Zone)**, and **segmentation** are strategies for organizing and protecting systems: -1. **Perimeter** security refers to the outer boundary of a network, typically protected by firewalls, intrusion detection systems (IDS), and other security measures. It acts as the first line of defense against external threats, controlling incoming and outgoing traffic to prevent unauthorized access. - -2. **DMZ** is a subnet that sits between an internal network and the external internet, hosting public-facing services like web servers and mail servers. The DMZ isolates these services to minimize the risk of attackers gaining access to the internal network by compromising a public-facing server. - -3. **Segmentation** divides a network into smaller, isolated sections or zones, each with its own security controls. This limits the spread of attacks, enhances internal security, and enforces access control between different parts of the network, reducing the potential impact of a breach. +1. **Perimeter** security refers to the outer boundary of a network, typically protected by firewalls, intrusion detection systems (IDS), and other security measures. It acts as the first line of defense against external threats, controlling incoming and outgoing traffic to prevent unauthorized access. + +2. **DMZ** is a subnet that sits between an internal network and the external internet, hosting public-facing services like web servers and mail servers. The DMZ isolates these services to minimize the risk of attackers gaining access to the internal network by compromising a public-facing server. + +3. **Segmentation** divides a network into smaller, isolated sections or zones, each with its own security controls. This limits the spread of attacks, enhances internal security, and enforces access control between different parts of the network, reducing the potential impact of a breach. + Together, these strategies create a layered defense, protecting sensitive resources by managing traffic flow and access points across the network. -Learn more from the following resources: +Visit the following resources to learn more: - [@opensource@Best practice for network segmentation](https://github.com/sergiomarotco/Network-segmentation-cheat-sheet) -- [@opensource@OWASP Network segmentation Cheat Sheet](https://github.com/OWASP/CheatSheetSeries/blob/master/cheatsheets/Network_Segmentation_Cheat_Sheet.md#network-segmentation-cheat-sheet) +- [@opensource@OWASP Network segmentation Cheat Sheet](https://github.com/OWASP/CheatSheetSeries/blob/master/cheatsheets/Network_Segmentation_Cheat_Sheet.md#network-segmentation-cheat-sheet) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/phishing@7obusm5UtHwWMcMMEB3lt.md b/src/data/roadmaps/cyber-security/content/phishing@7obusm5UtHwWMcMMEB3lt.md index 70f75159e..d3574dd6a 100644 --- a/src/data/roadmaps/cyber-security/content/phishing@7obusm5UtHwWMcMMEB3lt.md +++ b/src/data/roadmaps/cyber-security/content/phishing@7obusm5UtHwWMcMMEB3lt.md @@ -1,6 +1,6 @@ # Phishing -The technique where scammers pretend to be trusted organizations like your *bank*, *online retailers* or a *government office* in order to trick you into sharing your personal information like bank passcode, credit card number, Paypal password etc. +The technique where scammers pretend to be trusted organizations like your _bank_, _online retailers_ or a _government office_ in order to trick you into sharing your personal information like bank passcode, credit card number, Paypal password etc. Visit the following resources to learn more: diff --git a/src/data/roadmaps/cyber-security/content/picoctf@pou5xHwnz9Zsy5J6lNlKq.md b/src/data/roadmaps/cyber-security/content/picoctf@pou5xHwnz9Zsy5J6lNlKq.md index a35b7e606..c905872fa 100644 --- a/src/data/roadmaps/cyber-security/content/picoctf@pou5xHwnz9Zsy5J6lNlKq.md +++ b/src/data/roadmaps/cyber-security/content/picoctf@pou5xHwnz9Zsy5J6lNlKq.md @@ -2,7 +2,7 @@ **picoCTF** is an online cybersecurity competition designed to help students and beginners learn and practice hacking skills through capture-the-flag (CTF) challenges. Developed by Carnegie Mellon University, picoCTF features a series of progressively difficult puzzles that teach concepts such as reverse engineering, cryptography, web exploitation, forensics, and binary exploitation. It's an educational platform that offers hands-on experience in solving real-world cybersecurity problems, making it popular among both students and aspiring cybersecurity professionals for learning and improving their skills in a practical, interactive environment. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@picoCTF](https://picoctf.org/) -- [@video@BEGINNER Capture The Flag - PicoCTF 2021 001 "Obedient Cat"](https://www.youtube.com/watch?v=P07NH5F-t3s) +- [@video@BEGINNER Capture The Flag - PicoCTF 2021 001 "Obedient Cat"](https://www.youtube.com/watch?v=P07NH5F-t3s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ping@GuuY-Q6FZzfspB3wrH64r.md b/src/data/roadmaps/cyber-security/content/ping@GuuY-Q6FZzfspB3wrH64r.md index 312375207..a4c27018d 100644 --- a/src/data/roadmaps/cyber-security/content/ping@GuuY-Q6FZzfspB3wrH64r.md +++ b/src/data/roadmaps/cyber-security/content/ping@GuuY-Q6FZzfspB3wrH64r.md @@ -2,7 +2,7 @@ **Ping** is a network utility used to test the reachability and responsiveness of a device on a network. It sends Internet Control Message Protocol (ICMP) echo request packets to a target host and measures the time it takes for an echo reply to be received. Ping is commonly used to diagnose network connectivity issues, determine network latency, and check if a specific server or device is online. A successful ping response indicates that the target device is reachable, while failures or delays may suggest network problems, such as packet loss or routing issues. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is ping?](https://www.solarwinds.com/resources/it-glossary/ping) -- [@video@Ping command explained](https://www.youtube.com/watch?v=7sv5pL-XgSg) +- [@video@Ping command explained](https://www.youtube.com/watch?v=7sv5pL-XgSg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ping@yfTpp-ePuDB931FnvNB-Y.md b/src/data/roadmaps/cyber-security/content/ping@yfTpp-ePuDB931FnvNB-Y.md index 312375207..a4c27018d 100644 --- a/src/data/roadmaps/cyber-security/content/ping@yfTpp-ePuDB931FnvNB-Y.md +++ b/src/data/roadmaps/cyber-security/content/ping@yfTpp-ePuDB931FnvNB-Y.md @@ -2,7 +2,7 @@ **Ping** is a network utility used to test the reachability and responsiveness of a device on a network. It sends Internet Control Message Protocol (ICMP) echo request packets to a target host and measures the time it takes for an echo reply to be received. Ping is commonly used to diagnose network connectivity issues, determine network latency, and check if a specific server or device is online. A successful ping response indicates that the target device is reachable, while failures or delays may suggest network problems, such as packet loss or routing issues. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is ping?](https://www.solarwinds.com/resources/it-glossary/ping) -- [@video@Ping command explained](https://www.youtube.com/watch?v=7sv5pL-XgSg) +- [@video@Ping command explained](https://www.youtube.com/watch?v=7sv5pL-XgSg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/pki@fxyJxrf3mnFTa3wXk1MCW.md b/src/data/roadmaps/cyber-security/content/pki@fxyJxrf3mnFTa3wXk1MCW.md index 984fe655e..2e6c528dc 100644 --- a/src/data/roadmaps/cyber-security/content/pki@fxyJxrf3mnFTa3wXk1MCW.md +++ b/src/data/roadmaps/cyber-security/content/pki@fxyJxrf3mnFTa3wXk1MCW.md @@ -2,7 +2,7 @@ **Public Key Infrastructure (PKI)** is a framework that manages digital certificates and public-private key pairs, enabling secure communication, authentication, and data encryption over networks. PKI supports various security services such as confidentiality, integrity, and digital signatures. It includes components like **Certificate Authorities (CAs)**, which issue and revoke digital certificates, **Registration Authorities (RAs)**, which verify the identity of certificate requestors, and **certificates** themselves, which bind public keys to individuals or entities. PKI is essential for secure online transactions, encrypted communications, and identity verification in applications like SSL/TLS, email encryption, and code signing. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is PKI?](https://cpl.thalesgroup.com/faq/public-key-infrastructure-pki/what-public-key-infrastructure-pki) -- [@article@What Is Public Key Infrastructure (PKI) & How Does It Work?](https://www.okta.com/identity-101/public-key-infrastructure/) +- [@article@What Is Public Key Infrastructure (PKI) & How Does It Work?](https://www.okta.com/identity-101/public-key-infrastructure/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/port-blocking@W7bcydXdwlubXF2PHKOuq.md b/src/data/roadmaps/cyber-security/content/port-blocking@W7bcydXdwlubXF2PHKOuq.md index 9009188ef..78b21cae0 100644 --- a/src/data/roadmaps/cyber-security/content/port-blocking@W7bcydXdwlubXF2PHKOuq.md +++ b/src/data/roadmaps/cyber-security/content/port-blocking@W7bcydXdwlubXF2PHKOuq.md @@ -2,7 +2,7 @@ Port blocking is an essential practice in hardening the security of your network and devices. It involves restricting, filtering, or entirely denying access to specific network ports to minimize exposure to potential cyber threats. By limiting access to certain ports, you can effectively safeguard your systems against unauthorized access and reduce the likelihood of security breaches. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Port Blocking?](https://cyberpedia.reasonlabs.com/EN/port%20blocking.html) -- [@article@Is Your Router Blocking Your Ports? Here's How to Find Out?](https://softhandtech.com/how-can-i-tell-if-a-port-is-blocked-on-my-router/) +- [@article@Is Your Router Blocking Your Ports? Here's How to Find Out?](https://softhandtech.com/how-can-i-tell-if-a-port-is-blocked-on-my-router/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/port-scanners@iJRQHzh5HXADuWpCouwxv.md b/src/data/roadmaps/cyber-security/content/port-scanners@iJRQHzh5HXADuWpCouwxv.md index f1da39096..04311bfcd 100644 --- a/src/data/roadmaps/cyber-security/content/port-scanners@iJRQHzh5HXADuWpCouwxv.md +++ b/src/data/roadmaps/cyber-security/content/port-scanners@iJRQHzh5HXADuWpCouwxv.md @@ -2,7 +2,7 @@ Port scanners are essential tools in the troubleshooting and cybersecurity landscape. They are designed to detect open or closed network ports on a target system. Network ports serve as communication endpoints for various applications and services running on a device, and knowing the status of these ports can help identify potential security vulnerabilities or confirm that specific services are running as intended. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Top 5 Best Port Scanners](https://securitytrails.com/blog/best-port-scanners) -- [@video@How To Use Nmap To Scan For Open Ports](https://www.youtube.com/watch?v=ifbwTt3_oCg) +- [@video@How To Use Nmap To Scan For Open Ports](https://www.youtube.com/watch?v=ifbwTt3_oCg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/power-shell@paY9x2VJA98FNGBFGRXp2.md b/src/data/roadmaps/cyber-security/content/power-shell@paY9x2VJA98FNGBFGRXp2.md index f820f01d6..a650501ab 100644 --- a/src/data/roadmaps/cyber-security/content/power-shell@paY9x2VJA98FNGBFGRXp2.md +++ b/src/data/roadmaps/cyber-security/content/power-shell@paY9x2VJA98FNGBFGRXp2.md @@ -2,9 +2,9 @@ **PowerShell** is a task automation and configuration management framework from Microsoft, consisting of a command-line shell and an associated scripting language. It is widely used for system administration, enabling administrators to automate tasks, manage systems, and configure services both on-premises and in cloud environments. PowerShell supports complex scripting with its access to .NET libraries, making it powerful for automating processes, managing network configurations, and interacting with APIs. It also plays a critical role in cybersecurity, as attackers can use PowerShell for malicious purposes, while defenders use it for forensic analysis and system management. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@PowerShell.org](https://powershell.org/) -- [@article@Microsoft's PowerShell Documentation](https://docs.microsoft.com/en-us/powershell/) -- [@video@PowerShell Course](https://www.youtube.com/watch?v=ZOoCaWyifmI) - [@opensource@Learning PowerShell GitHub Repository](https://github.com/PowerShell/PowerShell/tree/master/docs/learning-powershell) +- [@article@Microsoft's PowerShell Documentation](https://docs.microsoft.com/en-us/powershell/) +- [@video@PowerShell Course](https://www.youtube.com/watch?v=ZOoCaWyifmI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/preparation@w6V4JOtXKCMPAkKIQxvMg.md b/src/data/roadmaps/cyber-security/content/preparation@w6V4JOtXKCMPAkKIQxvMg.md index 6c16ab42a..40919b992 100644 --- a/src/data/roadmaps/cyber-security/content/preparation@w6V4JOtXKCMPAkKIQxvMg.md +++ b/src/data/roadmaps/cyber-security/content/preparation@w6V4JOtXKCMPAkKIQxvMg.md @@ -2,7 +2,7 @@ The **Preparation** phase in incident response involves establishing and maintaining the tools, policies, and procedures necessary to handle security incidents effectively. This includes creating an incident response plan, defining roles and responsibilities, training staff, and ensuring that appropriate technologies, such as monitoring systems and logging tools, are in place to detect and respond to incidents. Preparation also involves conducting regular drills, threat intelligence gathering, and vulnerability assessments to enhance readiness, ensuring the organization is equipped to mitigate potential security threats quickly and efficiently. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Incident Response](https://www.microsoft.com/en-gb/security/business/security-101/what-is-incident-response) -- [@video@Cyber Security Incident Response Explained](https://www.youtube.com/watch?v=ePZGqlcB1O8) +- [@video@Cyber Security Incident Response Explained](https://www.youtube.com/watch?v=ePZGqlcB1O8) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/private-vs-public-keys@7svh9qaaPp0Hz23yinIye.md b/src/data/roadmaps/cyber-security/content/private-vs-public-keys@7svh9qaaPp0Hz23yinIye.md index 85ec72459..9df528865 100644 --- a/src/data/roadmaps/cyber-security/content/private-vs-public-keys@7svh9qaaPp0Hz23yinIye.md +++ b/src/data/roadmaps/cyber-security/content/private-vs-public-keys@7svh9qaaPp0Hz23yinIye.md @@ -1,14 +1,15 @@ # Private Key vs Public Key -**Public keys** and **private keys** are cryptographic components used in asymmetric encryption. +**Public keys** and **private keys** are cryptographic components used in asymmetric encryption. -- **Public Key:** This key is shared openly and used to encrypt data or verify a digital signature. It can be distributed widely and is used by anyone to send encrypted messages to the key owner or to verify their digital signatures. - -- **Private Key:** This key is kept secret by the owner and is used to decrypt data encrypted with the corresponding public key or to create a digital signature. It must be protected rigorously to maintain the security of encrypted communications and authentication. +* **Public Key:** This key is shared openly and used to encrypt data or verify a digital signature. It can be distributed widely and is used by anyone to send encrypted messages to the key owner or to verify their digital signatures. + +* **Private Key:** This key is kept secret by the owner and is used to decrypt data encrypted with the corresponding public key or to create a digital signature. It must be protected rigorously to maintain the security of encrypted communications and authentication. + Together, they enable secure communications and authentication, where the public key encrypts or verifies, and the private key decrypts or signs. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@SSH Keys Explained](https://www.sectigo.com/resource-library/what-is-an-ssh-key) -- [@article@Public Key vs Private Key: How are they Different?](https://venafi.com/blog/what-difference-between-public-key-and-private-key/) +- [@article@Public Key vs Private Key: How are they Different?](https://venafi.com/blog/what-difference-between-public-key-and-private-key/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/private@ecpMKP1cQXXsfKETDUrSf.md b/src/data/roadmaps/cyber-security/content/private@ecpMKP1cQXXsfKETDUrSf.md index c564e9bf9..7f4d3c256 100644 --- a/src/data/roadmaps/cyber-security/content/private@ecpMKP1cQXXsfKETDUrSf.md +++ b/src/data/roadmaps/cyber-security/content/private@ecpMKP1cQXXsfKETDUrSf.md @@ -2,7 +2,7 @@ A **private cloud** is a cloud computing environment dedicated to a single organization, offering the same benefits as public clouds, such as scalability and self-service, but with greater control and customization. It is hosted either on-premises or by a third-party provider, and it ensures that the organization's data and applications are isolated from other entities. This setup enhances security and compliance, making it ideal for businesses with specific regulatory requirements or high-security needs. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Private Cloud?](https://aws.amazon.com/what-is/private-cloud/) -- [@video@Private Cloud Rules](https://www.youtube.com/watch?v=Tzqy8lW0bk4) +- [@video@Private Cloud Rules](https://www.youtube.com/watch?v=Tzqy8lW0bk4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/privilege-escalation@cvI8-sxY5i8lpelW9iY_5.md b/src/data/roadmaps/cyber-security/content/privilege-escalation@cvI8-sxY5i8lpelW9iY_5.md index 19115654e..17b60bceb 100644 --- a/src/data/roadmaps/cyber-security/content/privilege-escalation@cvI8-sxY5i8lpelW9iY_5.md +++ b/src/data/roadmaps/cyber-security/content/privilege-escalation@cvI8-sxY5i8lpelW9iY_5.md @@ -5,4 +5,4 @@ Privilege escalation is a technique where an attacker increases their access lev Visit the following resources to learn more: - [@article@What is Privilege Escalation?](https://www.crowdstrike.com/cybersecurity-101/privilege-escalation/) -- [@video@Privilege Escalation](https://www.youtube.com/watch?v=ksjU3Iu195Q) +- [@video@Privilege Escalation](https://www.youtube.com/watch?v=ksjU3Iu195Q) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/programming-skills@_RnuQ7952N8GWZfPD60sJ.md b/src/data/roadmaps/cyber-security/content/programming-skills@_RnuQ7952N8GWZfPD60sJ.md index f094d8db8..774e39111 100644 --- a/src/data/roadmaps/cyber-security/content/programming-skills@_RnuQ7952N8GWZfPD60sJ.md +++ b/src/data/roadmaps/cyber-security/content/programming-skills@_RnuQ7952N8GWZfPD60sJ.md @@ -2,11 +2,11 @@ Programming knowledge is a fundamental skill for professionals in the cybersecurity field, as it enables them to build, assess, and defend computer systems, networks, and applications. Having a strong foundation in programming languages, concepts, and techniques is essential for identifying potential security threats, writing secure code, and implementing robust security measures. -- **Python**: As an easy-to-learn high-level language, Python is commonly used for tasks like automation, scripting, and data analysis. It also contains a plethora of libraries and frameworks for cybersecurity, making it highly valuable for security professionals. -- **C/C++**: These two languages are foundational for understanding system and application-level vulnerabilities since most operating systems are written in C and C++. Knowledge of these languages allows cybersecurity experts to analyze source code, identify potential exploits, and create secure software. -- **Java**: As a popular and versatile programming language, Java is often used in web applications and enterprise environments. Java knowledge equips cybersecurity professionals to understand and mitigate potential security flaws in Java-based applications. -- **JavaScript**: With its ubiquity in modern web browsers, JavaScript is crucial for understanding and protecting against web security vulnerabilities, such as Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) attacks. -- **Ruby**: Ruby has a strong foothold in web application development and is utilized for scripting and automation, just like Python. Familiarity with Ruby may give cybersecurity professionals an edge in certain environments. +* **Python**: As an easy-to-learn high-level language, Python is commonly used for tasks like automation, scripting, and data analysis. It also contains a plethora of libraries and frameworks for cybersecurity, making it highly valuable for security professionals. +* **C/C++**: These two languages are foundational for understanding system and application-level vulnerabilities since most operating systems are written in C and C++. Knowledge of these languages allows cybersecurity experts to analyze source code, identify potential exploits, and create secure software. +* **Java**: As a popular and versatile programming language, Java is often used in web applications and enterprise environments. Java knowledge equips cybersecurity professionals to understand and mitigate potential security flaws in Java-based applications. +* **JavaScript**: With its ubiquity in modern web browsers, JavaScript is crucial for understanding and protecting against web security vulnerabilities, such as Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) attacks. +* **Ruby**: Ruby has a strong foothold in web application development and is utilized for scripting and automation, just like Python. Familiarity with Ruby may give cybersecurity professionals an edge in certain environments. Visit the following resources to learn more: @@ -15,4 +15,4 @@ Visit the following resources to learn more: - [@roadmap@Visit C++ Roadmap](https://roadmap.sh/cpp) - [@roadmap@Visit Java Roadmap](https://roadmap.sh/java) - [@roadmap@Visit JavaScript Roadmap](https://roadmap.sh/javascript) -- [@roadmap@Visit Typescript Roadmap](https://roadmap.sh/typescript) +- [@roadmap@Visit Typescript Roadmap](https://roadmap.sh/typescript) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/protocol-analyzers@K05mEAsjImyPge0hDtsU0.md b/src/data/roadmaps/cyber-security/content/protocol-analyzers@K05mEAsjImyPge0hDtsU0.md index 5bda1db11..1488a653e 100644 --- a/src/data/roadmaps/cyber-security/content/protocol-analyzers@K05mEAsjImyPge0hDtsU0.md +++ b/src/data/roadmaps/cyber-security/content/protocol-analyzers@K05mEAsjImyPge0hDtsU0.md @@ -2,7 +2,7 @@ **Protocol analyzers**, also known as network analyzers or packet sniffers, are tools used to capture, inspect, and analyze network traffic. They help diagnose network issues, troubleshoot performance problems, and ensure security by providing detailed insights into the data packets transmitted across a network. Protocol analyzers decode and display various network protocols, such as TCP/IP, HTTP, and DNS, allowing users to understand communication patterns, detect anomalies, and identify potential vulnerabilities. Popular examples include Wireshark and tcpdump. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Protocol Analyzer?](https://www.liveaction.com/glossary/protocol-analyzer/) -- [@video@Protocol Analyzers](https://www.youtube.com/watch?v=hTMhlB-o0Ow) +- [@video@Protocol Analyzers](https://www.youtube.com/watch?v=hTMhlB-o0Ow) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/proxmox@jqX1A5hFF3Qznqup4lfiF.md b/src/data/roadmaps/cyber-security/content/proxmox@jqX1A5hFF3Qznqup4lfiF.md index 9c3837627..0e1c17c55 100644 --- a/src/data/roadmaps/cyber-security/content/proxmox@jqX1A5hFF3Qznqup4lfiF.md +++ b/src/data/roadmaps/cyber-security/content/proxmox@jqX1A5hFF3Qznqup4lfiF.md @@ -2,7 +2,7 @@ **Proxmox** is an open-source virtualization management platform that integrates both **Proxmox Virtual Environment (Proxmox VE)** and **Proxmox Mail Gateway**. Proxmox VE combines virtualization technologies, including KVM for virtual machines and LXC for lightweight containers, into a unified web-based interface for managing and deploying virtualized environments. It offers features such as high availability, storage management, and backup solutions. Proxmox Mail Gateway provides email security and anti-spam solutions, protecting email systems from threats. Proxmox is valued for its flexibility, cost-effectiveness, and comprehensive management capabilities. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Proxmox](https://www.proxmox.com/en/) - [@article@Proxmox Virtual Environment](https://en.wikipedia.org/wiki/Proxmox_Virtual_Environment) diff --git a/src/data/roadmaps/cyber-security/content/public-vs-private-ip-addresses@2nQfhnvBjJg1uDZ28aE4v.md b/src/data/roadmaps/cyber-security/content/public-vs-private-ip-addresses@2nQfhnvBjJg1uDZ28aE4v.md index 4f80764ae..50b2b05b7 100644 --- a/src/data/roadmaps/cyber-security/content/public-vs-private-ip-addresses@2nQfhnvBjJg1uDZ28aE4v.md +++ b/src/data/roadmaps/cyber-security/content/public-vs-private-ip-addresses@2nQfhnvBjJg1uDZ28aE4v.md @@ -2,7 +2,7 @@ Public addresses are IP addresses assigned to devices directly accessible over the internet, allowing them to communicate with external networks and services. In contrast, private addresses are used within local networks and are not routable over the internet, providing a way for devices within a private network to communicate with each other while conserving public IP address space. Public addresses are unique across the internet, whereas private addresses are reused across different local networks and are typically managed by network address translation (NAT) to interface with public networks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Public vs Private IP Addresses](https://www.avast.com/c-ip-address-public-vs-private) -- [@video@What is the difference between public and private ip?](https://www.youtube.com/watch?v=R6Czae6Iow4&t=1s) +- [@video@What is the difference between public and private ip?](https://www.youtube.com/watch?v=R6Czae6Iow4&t=1s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/public@ZDj7KBuyZsKyEMZViMoXW.md b/src/data/roadmaps/cyber-security/content/public@ZDj7KBuyZsKyEMZViMoXW.md index b9081261b..8b1d854c7 100644 --- a/src/data/roadmaps/cyber-security/content/public@ZDj7KBuyZsKyEMZViMoXW.md +++ b/src/data/roadmaps/cyber-security/content/public@ZDj7KBuyZsKyEMZViMoXW.md @@ -2,7 +2,7 @@ A **public cloud** is a computing service offered by third-party providers over the internet, where resources such as servers, storage, and applications are shared among multiple users or organizations. It is typically managed by the cloud service provider and offers scalability, cost-effectiveness, and ease of access, with users paying only for the resources they consume. Public clouds are ideal for businesses and individuals who need flexible, on-demand computing resources without the overhead of managing physical infrastructure. Popular examples include Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). -Learn more from the following resources: +Visit the following resources to learn more: - [@article@A Public Cloud?](https://azure.microsoft.com/en-gb/resources/cloud-computing-dictionary/what-is-a-public-cloud) -- [@video@What is a Public Cloud](https://www.youtube.com/watch?v=KaCyfQ7luVY) +- [@video@What is a Public Cloud](https://www.youtube.com/watch?v=KaCyfQ7luVY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/python@XiHvGy--OkPFfJeKA6-LP.md b/src/data/roadmaps/cyber-security/content/python@XiHvGy--OkPFfJeKA6-LP.md index 84001a52b..8675f052f 100644 --- a/src/data/roadmaps/cyber-security/content/python@XiHvGy--OkPFfJeKA6-LP.md +++ b/src/data/roadmaps/cyber-security/content/python@XiHvGy--OkPFfJeKA6-LP.md @@ -2,8 +2,8 @@ **Python** is a high-level, interpreted programming language known for its readability, simplicity, and versatility. It supports multiple programming paradigms, including procedural, object-oriented, and functional programming. Python's extensive standard library and a rich ecosystem of third-party packages make it suitable for a wide range of applications, from web development and data analysis to machine learning and automation. Its straightforward syntax and dynamic typing facilitate rapid development and prototyping, making it popular among beginners and experienced developers alike. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated Python Roadmap](https://roadmap.sh/python) - [@course@Python Full Course 2024](https://www.youtube.com/watch?v=ix9cRaBkVe0) -- [@video@Python in 100 Seconds](https://www.youtube.com/watch?v=x7X9w_GIm1s) +- [@video@Python in 100 Seconds](https://www.youtube.com/watch?v=x7X9w_GIm1s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/radius@tH3RLnJseqOzRIbZMklHD.md b/src/data/roadmaps/cyber-security/content/radius@tH3RLnJseqOzRIbZMklHD.md index 7a62b12f2..cd6e4a952 100644 --- a/src/data/roadmaps/cyber-security/content/radius@tH3RLnJseqOzRIbZMklHD.md +++ b/src/data/roadmaps/cyber-security/content/radius@tH3RLnJseqOzRIbZMklHD.md @@ -2,7 +2,7 @@ **Remote Authentication Dial-In User Service (RADIUS)** is a network protocol that provides centralized Authentication, Authorization, and Accounting (AAA) management for users who connect to and use a network service. It is commonly used for managing access to network resources such as VPNs, Wi-Fi, and dial-up services. RADIUS servers validate user credentials, enforce access policies, and log user activities. It operates over UDP ports 1812 (authentication) and 1813 (accounting), and supports encryption for securely transmitting user credentials and data. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@RADIUS (Remote Authentication Dial-In User Service)](https://www.techtarget.com/searchsecurity/definition/RADIUS) -- [@video@How RADIUS Authentication Works](https://www.youtube.com/watch?v=LLrb3em-_po) +- [@video@How RADIUS Authentication Works](https://www.youtube.com/watch?v=LLrb3em-_po) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/rdp@Ia6M1FKPNpqLDiWx7CwDh.md b/src/data/roadmaps/cyber-security/content/rdp@Ia6M1FKPNpqLDiWx7CwDh.md index 0c3dff420..593655ef7 100644 --- a/src/data/roadmaps/cyber-security/content/rdp@Ia6M1FKPNpqLDiWx7CwDh.md +++ b/src/data/roadmaps/cyber-security/content/rdp@Ia6M1FKPNpqLDiWx7CwDh.md @@ -2,7 +2,7 @@ **Remote Desktop Protocol (RDP)** is a Microsoft-developed protocol that enables users to remotely access and control a computer over a network. It allows users to interact with a remote desktop environment as if they were sitting in front of the computer, providing access to applications, files, and network resources. RDP is commonly used for remote administration, technical support, and remote work. It operates over TCP port 3389 and supports encryption for secure data transmission, though proper security measures, like strong passwords and multi-factor authentication, are essential to prevent unauthorized access. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is RDP and how to use it?](https://www.youtube.com/watch?v=flPnBSz-lqw) - [@article@What is the Remote Desktop Protocol (RDP)?](https://www.cloudflare.com/en-gb/learning/access-management/what-is-the-remote-desktop-protocol/) +- [@video@What is RDP and how to use it?](https://www.youtube.com/watch?v=flPnBSz-lqw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/reconnaissance@UU_inxa8Y2lLP2BRhdLDT.md b/src/data/roadmaps/cyber-security/content/reconnaissance@UU_inxa8Y2lLP2BRhdLDT.md index e9fb4b2f9..e7a647244 100644 --- a/src/data/roadmaps/cyber-security/content/reconnaissance@UU_inxa8Y2lLP2BRhdLDT.md +++ b/src/data/roadmaps/cyber-security/content/reconnaissance@UU_inxa8Y2lLP2BRhdLDT.md @@ -1,8 +1,8 @@ -# Reconnaissance - -Reconnaissance is the first phase of a cyber-attack, during which attackers gather as much information as possible about a target system, network, or organization. The goal of reconnaissance is to identify potential vulnerabilities, entry points, and other valuable details that can be exploited in subsequent attack phases. - -Visit the following resources to learn more: - -- [@article@What is Cyber Reconnaissance](https://www.sentinelone.com/cybersecurity-101/threat-intelligence/what-is-cyber-reconnaissance/) +# Reconnaissance + +Reconnaissance is the first phase of a cyber-attack, during which attackers gather as much information as possible about a target system, network, or organization. The goal of reconnaissance is to identify potential vulnerabilities, entry points, and other valuable details that can be exploited in subsequent attack phases. + +Visit the following resources to learn more: + +- [@article@What is Cyber Reconnaissance](https://www.sentinelone.com/cybersecurity-101/threat-intelligence/what-is-cyber-reconnaissance/) - [@article@What is Cybersecurity Reconnaissance?](https://cymulate.com/cybersecurity-glossary/cyber-reconnaissance/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/recovery@vFjbZAJq8OfLb3_tsc7oT.md b/src/data/roadmaps/cyber-security/content/recovery@vFjbZAJq8OfLb3_tsc7oT.md index cd0a98630..418ba5e9e 100644 --- a/src/data/roadmaps/cyber-security/content/recovery@vFjbZAJq8OfLb3_tsc7oT.md +++ b/src/data/roadmaps/cyber-security/content/recovery@vFjbZAJq8OfLb3_tsc7oT.md @@ -2,7 +2,7 @@ The recovery phase of incident response focuses on restoring affected systems and services to normal operation, which involves repairing systems, recovering data from backups, validating functionality, and communicating with stakeholders. This phase also includes conducting a post-incident review to document lessons learned and update response plans to improve future preparedness. The aim is to minimize downtime, ensure data integrity, and return to normal operations efficiently. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Incident Response Plan: Framework and Steps](https://www.crowdstrike.com/cybersecurity-101/incident-response/incident-response-steps/) -- [@video@Incident Response Process](https://www.youtube.com/watch?v=fU_w8Ou9RVg) +- [@video@Incident Response Process](https://www.youtube.com/watch?v=fU_w8Ou9RVg) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/replay-attack@mIX8PsIGuwgPCGQZ6ok2H.md b/src/data/roadmaps/cyber-security/content/replay-attack@mIX8PsIGuwgPCGQZ6ok2H.md index cdef65121..c520b0717 100644 --- a/src/data/roadmaps/cyber-security/content/replay-attack@mIX8PsIGuwgPCGQZ6ok2H.md +++ b/src/data/roadmaps/cyber-security/content/replay-attack@mIX8PsIGuwgPCGQZ6ok2H.md @@ -1,7 +1,7 @@ -# Replay Attack - -A Replay Attack is a type of network attack where an attacker intercepts and retransmits legitimate communication data, often with the aim of gaining unauthorized access to a system or performing unauthorized actions. In this attack, the attacker captures a valid data transmission and then "replays" it later, without needing to decrypt or alter the data, to trick the recipient into thinking it's a legitimate request. - -Visit the following resources to learn more: - -- [@article@What Is a Replay Attack?](https://usa.kaspersky.com/resource-center/definitions/replay-attack) +# Replay Attack + +A Replay Attack is a type of network attack where an attacker intercepts and retransmits legitimate communication data, often with the aim of gaining unauthorized access to a system or performing unauthorized actions. In this attack, the attacker captures a valid data transmission and then "replays" it later, without needing to decrypt or alter the data, to trick the recipient into thinking it's a legitimate request. + +Visit the following resources to learn more: + +- [@article@What Is a Replay Attack?](https://usa.kaspersky.com/resource-center/definitions/replay-attack) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ring@9vEUVJ8NTh0wKyIE6-diY.md b/src/data/roadmaps/cyber-security/content/ring@9vEUVJ8NTh0wKyIE6-diY.md index d708d1d89..809c42a8b 100644 --- a/src/data/roadmaps/cyber-security/content/ring@9vEUVJ8NTh0wKyIE6-diY.md +++ b/src/data/roadmaps/cyber-security/content/ring@9vEUVJ8NTh0wKyIE6-diY.md @@ -2,7 +2,7 @@ In a ring topology, each network device is connected in a circular fashion, where data travels through each node in one direction (or both in a bidirectional setup) until it reaches its destination. This structure simplifies wiring and ensures a predictable data path, but a failure in any single node or connection can disrupt the entire network unless redundant paths are used. Ring topology is known for its straightforward installation but is less common today due to its vulnerability to network interruptions. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Ring Topology?](https://www.lenovo.com/gb/en/glossary/what-is-ring-topology/) -- [@video@Network Topologies - Ring](https://www.youtube.com/watch?v=hjeDN2xnc50) +- [@video@Network Topologies - Ring](https://www.youtube.com/watch?v=hjeDN2xnc50) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/rmf@fjEdufrZAfW4Rl6yDU8Hk.md b/src/data/roadmaps/cyber-security/content/rmf@fjEdufrZAfW4Rl6yDU8Hk.md index c020ef8f6..970e8059e 100644 --- a/src/data/roadmaps/cyber-security/content/rmf@fjEdufrZAfW4Rl6yDU8Hk.md +++ b/src/data/roadmaps/cyber-security/content/rmf@fjEdufrZAfW4Rl6yDU8Hk.md @@ -2,14 +2,14 @@ A **Risk Management Framework (RMF)** is a structured approach that organizations use to identify, assess, manage, and mitigate risks. It provides a systematic process to ensure that risks are effectively controlled and aligned with the organization's objectives. Key components include: -1. **Risk Identification:** Identifying potential internal and external risks that could impact the organization. -2. **Risk Assessment:** Evaluating the likelihood and impact of identified risks. -3. **Risk Mitigation:** Developing strategies to reduce or eliminate risks, such as controls, policies, and contingency plans. -4. **Risk Monitoring:** Continuously tracking risks and the effectiveness of mitigation measures. -5. **Communication and Reporting:** Regularly updating stakeholders on the risk status and actions taken. -6. **Review and Improvement:** Periodically reassessing the framework and adapting to changes in the business or regulatory environment. +1. **Risk Identification:** Identifying potential internal and external risks that could impact the organization. +2. **Risk Assessment:** Evaluating the likelihood and impact of identified risks. +3. **Risk Mitigation:** Developing strategies to reduce or eliminate risks, such as controls, policies, and contingency plans. +4. **Risk Monitoring:** Continuously tracking risks and the effectiveness of mitigation measures. +5. **Communication and Reporting:** Regularly updating stakeholders on the risk status and actions taken. +6. **Review and Improvement:** Periodically reassessing the framework and adapting to changes in the business or regulatory environment. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is the Risk Management Framework?](https://www.techtarget.com/searchcio/definition/Risk-Management-Framework-RMF) -- [@video@RMF explained in 5 minutes](https://www.youtube.com/watch?v=X5yqPFp__rc) +- [@video@RMF explained in 5 minutes](https://www.youtube.com/watch?v=X5yqPFp__rc) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/rogue-access-point@Ee7LfbhwJbiWjJ3b_bbni.md b/src/data/roadmaps/cyber-security/content/rogue-access-point@Ee7LfbhwJbiWjJ3b_bbni.md index 61cd23814..ff4a60384 100644 --- a/src/data/roadmaps/cyber-security/content/rogue-access-point@Ee7LfbhwJbiWjJ3b_bbni.md +++ b/src/data/roadmaps/cyber-security/content/rogue-access-point@Ee7LfbhwJbiWjJ3b_bbni.md @@ -1,8 +1,8 @@ -# Rogue Access Point - -A Rogue Access Point (Rogue AP) is an unauthorized wireless access point installed on a secure network without the network administrator's knowledge or consent. These devices can be set up by malicious actors to intercept, steal, or manipulate network traffic, or by employees who unintentionally compromise network security by setting up their own wireless access points. - -Visit the following resources to learn more: - -- [@article@Rogue Access Points](https://www.khanacademy.org/computing/computers-and-internet/xcae6f4a7ff015e7d:online-data-security/xcae6f4a7ff015e7d:cyber-attacks/a/rogue-access-points-mitm-attacks) -- [@article@What is Rogue Access Point](https://pentescope.com/rogue-access-point-detection-and-prevention/) +# Rogue Access Point + +A Rogue Access Point (Rogue AP) is an unauthorized wireless access point installed on a secure network without the network administrator's knowledge or consent. These devices can be set up by malicious actors to intercept, steal, or manipulate network traffic, or by employees who unintentionally compromise network security by setting up their own wireless access points. + +Visit the following resources to learn more: + +- [@article@Rogue Access Points](https://www.khanacademy.org/computing/computers-and-internet/xcae6f4a7ff015e7d:online-data-security/xcae6f4a7ff015e7d:cyber-attacks/a/rogue-access-points-mitm-attacks) +- [@article@What is Rogue Access Point](https://pentescope.com/rogue-access-point-detection-and-prevention/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/roles-of-compliance-and-auditors@kqT0FRLt9Ak9P8PhHldO-.md b/src/data/roadmaps/cyber-security/content/roles-of-compliance-and-auditors@kqT0FRLt9Ak9P8PhHldO-.md index 064dcc73c..a7d9a8f36 100644 --- a/src/data/roadmaps/cyber-security/content/roles-of-compliance-and-auditors@kqT0FRLt9Ak9P8PhHldO-.md +++ b/src/data/roadmaps/cyber-security/content/roles-of-compliance-and-auditors@kqT0FRLt9Ak9P8PhHldO-.md @@ -2,7 +2,7 @@ Compliance officers ensure that an organization adheres to legal, regulatory, and internal policies by proactively implementing controls, training employees, and mitigating risks. Auditors, both internal and external, assess the effectiveness of these controls and the accuracy of financial reporting through periodic evaluations, providing independent assurance to management and stakeholders. While compliance focuses on prevention and day-to-day adherence, auditors focus on verifying and evaluating past performance to ensure integrity and identify areas for improvement. Both roles work together to manage risk and maintain organizational accountability. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Compliance Audit?](https://www.auditboard.com/blog/compliance-audit/) - [@article@Compliance Office and Internal Audit Roles and Responsibilities](https://www.compliance.com/resources/compliance-office-and-internal-audit-roles-and-responsibilities/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/route@xFuWk7M-Vctk_xb7bHbWs.md b/src/data/roadmaps/cyber-security/content/route@xFuWk7M-Vctk_xb7bHbWs.md index 9d86d1eea..ecc5e9b50 100644 --- a/src/data/roadmaps/cyber-security/content/route@xFuWk7M-Vctk_xb7bHbWs.md +++ b/src/data/roadmaps/cyber-security/content/route@xFuWk7M-Vctk_xb7bHbWs.md @@ -2,7 +2,7 @@ The `route` command is a network utility used to view and manipulate the IP routing table on Unix-like and Windows systems. It allows users to display the current routes that data packets take, as well as add, modify, or delete routes for network traffic. This command is often used in network troubleshooting and configuration to control how data flows between different networks and subnets. By specifying routes manually, administrators can define specific paths for network traffic, bypassing default routes and optimizing performance or security. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@route command](https://www.man7.org/linux/man-pages/man8/route.8.html) -- [@video@route command explained](https://www.youtube.com/watch?v=uOqBollh_x4) +- [@video@route command explained](https://www.youtube.com/watch?v=uOqBollh_x4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/router@lwSFIbIX-xOZ0QK2sGFb1.md b/src/data/roadmaps/cyber-security/content/router@lwSFIbIX-xOZ0QK2sGFb1.md index 2c66366aa..1cf0acb36 100644 --- a/src/data/roadmaps/cyber-security/content/router@lwSFIbIX-xOZ0QK2sGFb1.md +++ b/src/data/roadmaps/cyber-security/content/router@lwSFIbIX-xOZ0QK2sGFb1.md @@ -2,9 +2,9 @@ A router is a networking device that directs data packets between different networks, ensuring they reach their destination. It operates at the network layer (Layer 3) of the OSI model and forwards data based on the IP addresses of the source and destination. Routers are essential for connecting devices to the internet or linking multiple networks together. They maintain a routing table to decide the best path for data and can dynamically update routes using protocols like RIP, OSPF, or BGP. Routers also handle Network Address Translation (NAT), allowing multiple devices to share a single public IP address. Many modern routers offer Wi-Fi for wireless connectivity and include basic firewall security to protect the network from threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Router](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-a-router/) - [@video@What is a router and How does it work?](https://www.youtube.com/watch?v=UIJzHLpG9bM) - [@video@Everything Routers do](https://youtu.be/AzXys5kxpAM?si=nEsCH6jG2Lj6Ua8N) -- [@video@How Routers forward Packets?](https://youtu.be/Ep-x_6kggKA?si=II5xBPoXjYEjLvWX) +- [@video@How Routers forward Packets?](https://youtu.be/Ep-x_6kggKA?si=II5xBPoXjYEjLvWX) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/s3@2jsTgT7k8MeaDtx6RJhOP.md b/src/data/roadmaps/cyber-security/content/s3@2jsTgT7k8MeaDtx6RJhOP.md index 566ff5ad9..2c8b895cc 100644 --- a/src/data/roadmaps/cyber-security/content/s3@2jsTgT7k8MeaDtx6RJhOP.md +++ b/src/data/roadmaps/cyber-security/content/s3@2jsTgT7k8MeaDtx6RJhOP.md @@ -2,8 +2,8 @@ Amazon Simple Storage Service (S3) is a scalable, object-based cloud storage service provided by AWS. It allows users to store and retrieve large amounts of data, such as files, backups, or media content, with high durability and availability. S3 is designed for flexibility, enabling users to access data from anywhere via the internet while offering security features like encryption and access controls. It is widely used for data storage, content distribution, disaster recovery, and big data analytics, providing cost-effective, scalable storage for a variety of applications. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Amazon Web Services S3](https://docs.aws.amazon.com/AmazonS3/latest/userguide/Welcome.html) - [@official@Amazon Simple Storage Service Documentation](https://docs.aws.amazon.com/s3/) -- [@video@Getting started with AWS S3](https://www.youtube.com/watch?v=e6w9LwZJFIA) +- [@video@Getting started with AWS S3](https://www.youtube.com/watch?v=e6w9LwZJFIA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/saas@sVw5KVNxPEatBRKb2ZbS_.md b/src/data/roadmaps/cyber-security/content/saas@sVw5KVNxPEatBRKb2ZbS_.md index e894524c7..89f851021 100644 --- a/src/data/roadmaps/cyber-security/content/saas@sVw5KVNxPEatBRKb2ZbS_.md +++ b/src/data/roadmaps/cyber-security/content/saas@sVw5KVNxPEatBRKb2ZbS_.md @@ -2,7 +2,7 @@ Software as a Service (SaaS) is a cloud-based model where software applications are delivered to users over the internet, eliminating the need for local installation or maintenance. SaaS providers manage infrastructure, security, and updates, allowing users to access the software on a subscription basis from any device with an internet connection. This model offers scalability, reduced upfront costs, and easy integration with other cloud services, making it a popular choice for businesses looking for flexibility and efficiency in software deployment. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Software as a Service?](https://azure.microsoft.com/en-us/resources/cloud-computing-dictionary/what-is-saas) -- [@video@What is SaaS?](https://www.youtube.com/watch?v=UEHdYNXiIUU) +- [@video@What is SaaS?](https://www.youtube.com/watch?v=UEHdYNXiIUU) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/salting@jqWhR6oTyX6yolUBv71VC.md b/src/data/roadmaps/cyber-security/content/salting@jqWhR6oTyX6yolUBv71VC.md index f91629a2d..86cb1f86e 100644 --- a/src/data/roadmaps/cyber-security/content/salting@jqWhR6oTyX6yolUBv71VC.md +++ b/src/data/roadmaps/cyber-security/content/salting@jqWhR6oTyX6yolUBv71VC.md @@ -2,7 +2,6 @@ Salting is a crucial concept within the realm of cryptography. It is a technique employed to enhance the security of passwords or equivalent sensitive data by adding an extra layer of protection to safeguard them against hacking attempts, such as brute-force attacks or dictionary attacks. -Learn more from the following resources: +Visit the following resources to learn more: -- [@article@What is salting?](https://www.techtarget.com/searchsecurity/definition/salt) -- [@video@](https://www.youtube.com/watch?v=PsIO0gxJF3g) +- [@article@What is salting?](https://www.techtarget.com/searchsecurity/definition/salt) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sandboxing@SLKwuLHHpC7D1FqrpPRAe.md b/src/data/roadmaps/cyber-security/content/sandboxing@SLKwuLHHpC7D1FqrpPRAe.md index 214ff98dc..3aaee3cb3 100644 --- a/src/data/roadmaps/cyber-security/content/sandboxing@SLKwuLHHpC7D1FqrpPRAe.md +++ b/src/data/roadmaps/cyber-security/content/sandboxing@SLKwuLHHpC7D1FqrpPRAe.md @@ -5,4 +5,4 @@ Sandboxing is a security technique where a program or code is isolated in a cont Visit the following resources to learn more: - [@article@What is Sandboxing?](https://www.checkpoint.com/cyber-hub/threat-prevention/what-is-sandboxing/) -- [@video@Sandboxing in under 4 minutes](https://www.youtube.com/watch?v=kn32PHG2wcU) +- [@video@Sandboxing in under 4 minutes](https://www.youtube.com/watch?v=kn32PHG2wcU) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sans-holiday-hack-challenge@WCeJrvWl837m1BIjuA1Mu.md b/src/data/roadmaps/cyber-security/content/sans-holiday-hack-challenge@WCeJrvWl837m1BIjuA1Mu.md index aed12b4db..ca103ed31 100644 --- a/src/data/roadmaps/cyber-security/content/sans-holiday-hack-challenge@WCeJrvWl837m1BIjuA1Mu.md +++ b/src/data/roadmaps/cyber-security/content/sans-holiday-hack-challenge@WCeJrvWl837m1BIjuA1Mu.md @@ -2,7 +2,7 @@ The SANS Holiday Hack Challenge is an annual cybersecurity event that offers participants the opportunity to solve a series of themed cybersecurity puzzles and challenges. Designed to engage both beginners and experienced professionals, the challenge covers a wide range of topics including network forensics, penetration testing, reverse engineering, and more. It provides a fun, gamified learning experience that encourages participants to enhance their skills while collaborating with the global cybersecurity community. The event often features real-world security scenarios, creative storytelling, and interactive, hands-on tasks. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@SANS Holiday Hack](https://www.sans.org/mlp/holiday-hack-challenge-2023/) -- [@video@Official SANS Holiday Hack Challenge Video](https://www.youtube.com/watch?v=zfhhLi8jZzI) +- [@video@Official SANS Holiday Hack Challenge Video](https://www.youtube.com/watch?v=zfhhLi8jZzI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/security-skills-and-knowledge@_hYN0gEi9BL24nptEtXWU.md b/src/data/roadmaps/cyber-security/content/security-skills-and-knowledge@_hYN0gEi9BL24nptEtXWU.md index 9c1383817..3e1fbaf2a 100644 --- a/src/data/roadmaps/cyber-security/content/security-skills-and-knowledge@_hYN0gEi9BL24nptEtXWU.md +++ b/src/data/roadmaps/cyber-security/content/security-skills-and-knowledge@_hYN0gEi9BL24nptEtXWU.md @@ -2,71 +2,79 @@ In the constantly evolving world of cyber security, it is essential for professionals to stay updated with the latest skills and knowledge. This allows them to proactively defend against emerging threats, maintain secure systems, and create a robust security posture. Here's a brief summary of the essential security skills and knowledge you should possess: -## Understanding of Security Fundamentals +Understanding of Security Fundamentals +-------------------------------------- An in-depth understanding of the fundamental concepts of cyber security is crucial, which includes: -- Confidentiality, Integrity, and Availability (CIA) triad -- Risk management -- Security policies and best practices -- Authentication, authorization, and access control -- Cryptography +* Confidentiality, Integrity, and Availability (CIA) triad +* Risk management +* Security policies and best practices +* Authentication, authorization, and access control +* Cryptography -## Networking +Networking +---------- A strong grasp of networking concepts is required to identify and prevent potential threats. Develop a comprehensive knowledge of: -- Networking protocols, standards, and devices (e.g., switches, routers, and firewalls) -- Network architecture and design -- Virtual Private Networks (VPNs) and Virtual Local Area Networks (VLANs) +* Networking protocols, standards, and devices (e.g., switches, routers, and firewalls) +* Network architecture and design +* Virtual Private Networks (VPNs) and Virtual Local Area Networks (VLANs) -## Operating Systems and Application Security +Operating Systems and Application Security +------------------------------------------ Well-rounded knowledge of various operating systems (e.g., Windows, Linux, macOS) and applications, as well as: -- Security configuration best practices -- Patch management -- Denial-of-service prevention -- Privileged user management +* Security configuration best practices +* Patch management +* Denial-of-service prevention +* Privileged user management -## Web Security +Web Security +------------ Web security expertise is necessary for maintaining a secure online presence. Key knowledge areas include: -- Web application vulnerabilities (e.g., SQL injection, XSS) -- Secure web protocols (e.g., HTTP Secure, Transport Layer Security) -- Content Security Policy (CSP) and other defensive mechanisms +* Web application vulnerabilities (e.g., SQL injection, XSS) +* Secure web protocols (e.g., HTTP Secure, Transport Layer Security) +* Content Security Policy (CSP) and other defensive mechanisms -## Security Testing +Security Testing +---------------- Familiarity with testing methodologies, tools, and frameworks is essential for identifying and mitigating vulnerabilities. Acquire competency in: -- Vulnerability scanning and penetration testing -- Security testing best practices (e.g., OWASP Top Ten) -- Static and dynamic code analysis tools +* Vulnerability scanning and penetration testing +* Security testing best practices (e.g., OWASP Top Ten) +* Static and dynamic code analysis tools -## Incident Response and Forensic Analysis +Incident Response and Forensic Analysis +--------------------------------------- Learn to handle security incidents and conduct investigations to minimize the impact of cyber threats. Enhance knowledge of: -- Security incident containment and response strategies -- Digital forensic tools and techniques -- Regulatory requirements and legal implications of cyber incidents +* Security incident containment and response strategies +* Digital forensic tools and techniques +* Regulatory requirements and legal implications of cyber incidents -## Cloud Security +Cloud Security +-------------- Cloud platforms are becoming increasingly prevalent, making it necessary to understand cloud security best practices, including: -- Cloud-specific risks and vulnerabilities -- Implementing proper access control and identity management -- Compliance in cloud environments +* Cloud-specific risks and vulnerabilities +* Implementing proper access control and identity management +* Compliance in cloud environments -## Soft Skills +Soft Skills +----------- In addition to technical skills, soft skills play an important role in effective communication and collaboration among cyber security teams. Develop: -- Problem-solving ability -- Adaptability and continuous learning -- Teamwork and collaboration +* Problem-solving ability +* Adaptability and continuous learning +* Teamwork and collaboration -By continually refining and updating your security skills and knowledge, you become an invaluable asset in the rapidly evolving field of cyber security, helping to protect critical systems and data from ever-increasing threats. +By continually refining and updating your security skills and knowledge, you become an invaluable asset in the rapidly evolving field of cyber security, helping to protect critical systems and data from ever-increasing threats. \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sftp@YEy6o-clTBKZp1yOkLwNb.md b/src/data/roadmaps/cyber-security/content/sftp@YEy6o-clTBKZp1yOkLwNb.md index 756486110..77d4239a4 100644 --- a/src/data/roadmaps/cyber-security/content/sftp@YEy6o-clTBKZp1yOkLwNb.md +++ b/src/data/roadmaps/cyber-security/content/sftp@YEy6o-clTBKZp1yOkLwNb.md @@ -2,7 +2,7 @@ SFTP (SSH File Transfer Protocol) is a secure file transfer protocol that provides file access, transfer, and management over a reliable data stream. It runs over the SSH protocol, typically on port 22, ensuring encrypted file transfers. SFTP offers stronger security than traditional FTP by encrypting both commands and data in transit, preventing unauthorized interception. It supports features like resuming interrupted transfers, directory listings, and remote file system operations. SFTP is widely used for secure file transfers in various environments, from web hosting to enterprise data management, offering a more secure alternative to FTP while maintaining similar functionality. Its integration with SSH makes it a preferred choice for secure, authenticated file transfers in many network configurations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is SFTP?](https://www.precisely.com/glossary/sftp) - [@video@How to use SFTP Commands to Copy Files to/from a Server](https://www.youtube.com/watch?v=22lBJIfO9qQ&t=4s) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/shoulder-surfing@FD0bkmxNpPXiUB_NevEUf.md b/src/data/roadmaps/cyber-security/content/shoulder-surfing@FD0bkmxNpPXiUB_NevEUf.md index 7dcb41bba..75f2349fe 100644 --- a/src/data/roadmaps/cyber-security/content/shoulder-surfing@FD0bkmxNpPXiUB_NevEUf.md +++ b/src/data/roadmaps/cyber-security/content/shoulder-surfing@FD0bkmxNpPXiUB_NevEUf.md @@ -1,9 +1,9 @@ -# Shoulder Surfing - -In a Shoulder Surfing Attack, an attacker tries to get information when you are unaware of where the attacker looks over your shoulder or from your back to see what you're doing on your device and obtain sensitive information. Shoulder Surfing attacks are accomplished by observing the content "over the victim's shoulder". It is a social engineering attack where the attackers physically view the device screen and keypad to obtain personal information. This attack is mostly done when you are in a public place or crowded area. Sometimes attackers attack when you are busy on your device and the attacker could be your friend, someone you know or it may be some stranger. - -Visit the following resources to learn more: - -- [@article@What is Shoulder Surfing, and How can you avoid it?](https://nordvpn.com/blog/shoulder-surfing/?srsltid=AfmBOorl5NPpW_Tnhas9gB2HiblorqwXyK0NJae7uaketrnDwbjJmiYV) -- [@article@What is Shoulder Surfing?](https://www.mcafee.com/learn/what-is-shoulder-surfing/) -- [@article@What is Shoulder Surfing? 9 ways to protect yourself](https://www.bigrock.in/blog/products/security/what-is-shoulder-surfing-9-ways-to-protect-yourself-from-shoulder-surfing/) +# Shoulder Surfing + +In a Shoulder Surfing Attack, an attacker tries to get information when you are unaware of where the attacker looks over your shoulder or from your back to see what you're doing on your device and obtain sensitive information. Shoulder Surfing attacks are accomplished by observing the content "over the victim's shoulder". It is a social engineering attack where the attackers physically view the device screen and keypad to obtain personal information. This attack is mostly done when you are in a public place or crowded area. Sometimes attackers attack when you are busy on your device and the attacker could be your friend, someone you know or it may be some stranger. + +Visit the following resources to learn more: + +- [@article@What is Shoulder Surfing, and How can you avoid it?](https://nordvpn.com/blog/shoulder-surfing/?srsltid=AfmBOorl5NPpW_Tnhas9gB2HiblorqwXyK0NJae7uaketrnDwbjJmiYV) +- [@article@What is Shoulder Surfing?](https://www.mcafee.com/learn/what-is-shoulder-surfing/) +- [@article@What is Shoulder Surfing? 9 ways to protect yourself](https://www.bigrock.in/blog/products/security/what-is-shoulder-surfing-9-ways-to-protect-yourself-from-shoulder-surfing/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/siem@c2kY3wZVFKZYxMARhLIwO.md b/src/data/roadmaps/cyber-security/content/siem@c2kY3wZVFKZYxMARhLIwO.md index c04e86c86..571d1b36d 100644 --- a/src/data/roadmaps/cyber-security/content/siem@c2kY3wZVFKZYxMARhLIwO.md +++ b/src/data/roadmaps/cyber-security/content/siem@c2kY3wZVFKZYxMARhLIwO.md @@ -1,11 +1,11 @@ -# SIEM - -SIEM, short for Security Information and Event Manager, is a term used to describe tools that greatly increases visibility into a network or system. It does this by monitoring, filtering, collecting, normalizing, and correlating vast amounts of data such as logs, and neatly presents it via an interface/dashboard. Organizations leverage SIEMs to monitor and thus identify, protect, and respond to potential threats in their environment. For hands-on experience, you should consider setting up a SIEM in your own environment. There are some commercial tools that you can try out for free, and there are also open source alternatives, such as Wazuh or LevelBlue OSSIM (AlienVault). - -Visit the following resources to learn more: - -- [@article@Security 101: What is a SIEM? - Microsoft](https://www.microsoft.com/security/business/security-101/what-is-siem) -- [@video@SIEM Explained - Professor Messer](https://www.youtube.com/watch?v=JEcETdy5WxU) -- [@video@Wazuh | Open source SIEM](https://www.youtube.com/watch?v=3CaG2GI1kn0) -- [@video@Splunk | The Complete Beginner Tutorial](https://www.youtube.com/playlist?list=PLY2f3p7xyMiTUbUo0A_lBFEwj6KdH0nFy) -- [@video@Elastic Security | Build a powerful home SIEM](https://www.youtube.com/watch?v=2XLzMb9oZBI) +# SIEM + +SIEM, short for Security Information and Event Manager, is a term used to describe tools that greatly increases visibility into a network or system. It does this by monitoring, filtering, collecting, normalizing, and correlating vast amounts of data such as logs, and neatly presents it via an interface/dashboard. Organizations leverage SIEMs to monitor and thus identify, protect, and respond to potential threats in their environment. For hands-on experience, you should consider setting up a SIEM in your own environment. There are some commercial tools that you can try out for free, and there are also open source alternatives, such as Wazuh or LevelBlue OSSIM (AlienVault). + +Visit the following resources to learn more: + +- [@article@Security 101: What is a SIEM? - Microsoft](https://www.microsoft.com/security/business/security-101/what-is-siem) +- [@video@SIEM Explained - Professor Messer](https://www.youtube.com/watch?v=JEcETdy5WxU) +- [@video@Wazuh | Open source SIEM](https://www.youtube.com/watch?v=3CaG2GI1kn0) +- [@video@Splunk | The Complete Beginner Tutorial](https://www.youtube.com/playlist?list=PLY2f3p7xyMiTUbUo0A_lBFEwj6KdH0nFy) +- [@video@Elastic Security | Build a powerful home SIEM](https://www.youtube.com/watch?v=2XLzMb9oZBI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sinkholes@oFgyQYL3Ws-l7B5AF-bTR.md b/src/data/roadmaps/cyber-security/content/sinkholes@oFgyQYL3Ws-l7B5AF-bTR.md index 7705f2f6a..3c5d358e9 100644 --- a/src/data/roadmaps/cyber-security/content/sinkholes@oFgyQYL3Ws-l7B5AF-bTR.md +++ b/src/data/roadmaps/cyber-security/content/sinkholes@oFgyQYL3Ws-l7B5AF-bTR.md @@ -2,6 +2,6 @@ A sinkhole in cybersecurity is a method used to redirect malicious Internet traffic away from its intended destination to a designated server or IP address controlled by a security team or researcher. This technique is often employed to combat botnets, malware, and other cyber threats. By redirecting traffic to a sinkhole, analysts can monitor and analyze malicious activities, prevent further spread of threats, and gather intelligence on attack patterns. Sinkholes are particularly useful in disrupting command and control communications of botnets, effectively neutralizing their ability to receive instructions or exfiltrate data. This approach is a critical tool in large-scale threat mitigation and cyber defense strategies. -Learn more from the following resources: +Visit the following resources to learn more: -- [@article@DNS Sinkholes: What is it and how to start using](https://www.threatintelligence.com/blog/dns-sinkhole) +- [@article@DNS Sinkholes: What is it and how to start using](https://www.threatintelligence.com/blog/dns-sinkhole) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/smime@9rmDvycXFcsGOq3v-_ziD.md b/src/data/roadmaps/cyber-security/content/smime@9rmDvycXFcsGOq3v-_ziD.md index 7feee29df..c588dac85 100644 --- a/src/data/roadmaps/cyber-security/content/smime@9rmDvycXFcsGOq3v-_ziD.md +++ b/src/data/roadmaps/cyber-security/content/smime@9rmDvycXFcsGOq3v-_ziD.md @@ -2,7 +2,7 @@ S/MIME (Secure/Multipurpose Internet Mail Extensions) is a protocol for sending digitally signed and encrypted messages. It provides end-to-end encryption and authentication for email communications. S/MIME uses public key cryptography to ensure message confidentiality, integrity, and non-repudiation. It allows users to verify the sender's identity and ensures that the message hasn't been tampered with during transmission. S/MIME is widely supported by major email clients and is commonly used in corporate environments to secure sensitive communications. While it offers strong security, its adoption can be limited by the need for certificate management and the complexity of key exchange processes. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@S/MIME for message signing and encryption in Exchange Online](https://learn.microsoft.com/en-us/exchange/security-and-compliance/smime-exo/smime-exo) - [@video@S/MIME - Secure MIME protocol - Functions, Services](https://www.youtube.com/watch?v=0hzmoB7yYfw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/smishing@d4U6Jq-CUB1nNN2OCFoum.md b/src/data/roadmaps/cyber-security/content/smishing@d4U6Jq-CUB1nNN2OCFoum.md index dbe419480..8f6858498 100644 --- a/src/data/roadmaps/cyber-security/content/smishing@d4U6Jq-CUB1nNN2OCFoum.md +++ b/src/data/roadmaps/cyber-security/content/smishing@d4U6Jq-CUB1nNN2OCFoum.md @@ -2,7 +2,7 @@ Smishing, a portmanteau of "SMS" and "phishing," is a form of cyber attack that uses text messages (SMS) to deceive recipients into divulging sensitive information or taking harmful actions. Attackers typically impersonate trusted entities like banks, government agencies, or popular services, urging victims to click on malicious links, download harmful apps, or provide personal data. These messages often create a sense of urgency or offer enticing rewards to manipulate recipients. Smishing exploits the trust people place in mobile communications and the limited security features of SMS. As mobile device usage increases, smishing has become a significant threat, requiring user awareness and caution when interacting with unsolicited text messages. -Learn more from the following: +Visit the following resources to learn more: - [@article@What is smishing (SMS phishing)?](https://www.ibm.com/topics/smishing) - [@video@What is smishing? How phishing via text message works](https://www.youtube.com/watch?v=ZOZGQeG8avQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/soar@i0ulrA-GJrNhIVmzdWDrn.md b/src/data/roadmaps/cyber-security/content/soar@i0ulrA-GJrNhIVmzdWDrn.md index 3214ae4e1..7e6f67fdf 100644 --- a/src/data/roadmaps/cyber-security/content/soar@i0ulrA-GJrNhIVmzdWDrn.md +++ b/src/data/roadmaps/cyber-security/content/soar@i0ulrA-GJrNhIVmzdWDrn.md @@ -2,7 +2,7 @@ SOAR (Security Orchestration, Automation, and Response) is a set of software solutions and tools that enable organizations to streamline security operations. It combines three key capabilities: orchestration of security tools, automation of repetitive tasks, and intelligent incident response. SOAR platforms integrate with existing security tools, automate workflow processes, and provide case management features. They help security teams respond faster to incidents, reduce manual workload, standardize response procedures, and improve overall incident management efficiency. SOAR solutions are particularly valuable in managing the high volume of security alerts in modern environments, helping prioritize threats and coordinate responses across multiple tools and teams. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is SOAR?](https://www.paloaltonetworks.co.uk/cyberpedia/what-is-soar) - [@video@What is SOAR (Security, Orchestration, Automation & Response)](https://www.youtube.com/watch?v=k7ju95jDxFA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/social-engineering@O1VceThdxRlgQ6DcGyY7Y.md b/src/data/roadmaps/cyber-security/content/social-engineering@O1VceThdxRlgQ6DcGyY7Y.md index 9cfd6813f..5aafc58a4 100644 --- a/src/data/roadmaps/cyber-security/content/social-engineering@O1VceThdxRlgQ6DcGyY7Y.md +++ b/src/data/roadmaps/cyber-security/content/social-engineering@O1VceThdxRlgQ6DcGyY7Y.md @@ -1,8 +1,8 @@ -# Social Engineering - -Social Engineering is a manipulation technique that exploits human psychology to gain access to confidential information, systems, or physical locations. Unlike traditional hacking methods that rely on technical skills, social engineering primarily focuses on deceiving or tricking individuals into revealing sensitive information or performing actions that compromise security. - -Visit the following resources to learn more: - -- [@article@What Is Social Engineering?](https://www.cisco.com/c/en/us/products/security/what-is-social-engineering.html) -- [@video@Social Engineering Explained](https://www.youtube.com/shorts/DdCSraNCxhs) +# Social Engineering + +Social Engineering is a manipulation technique that exploits human psychology to gain access to confidential information, systems, or physical locations. Unlike traditional hacking methods that rely on technical skills, social engineering primarily focuses on deceiving or tricking individuals into revealing sensitive information or performing actions that compromise security. + +Visit the following resources to learn more: + +- [@article@What Is Social Engineering?](https://www.cisco.com/c/en/us/products/security/what-is-social-engineering.html) +- [@video@Social Engineering Explained](https://www.youtube.com/shorts/DdCSraNCxhs) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/spam-vs-spim@cbEMUyg_btIPjdx-XqIM5.md b/src/data/roadmaps/cyber-security/content/spam-vs-spim@cbEMUyg_btIPjdx-XqIM5.md index 92375704d..c78667cdd 100644 --- a/src/data/roadmaps/cyber-security/content/spam-vs-spim@cbEMUyg_btIPjdx-XqIM5.md +++ b/src/data/roadmaps/cyber-security/content/spam-vs-spim@cbEMUyg_btIPjdx-XqIM5.md @@ -1,8 +1,8 @@ -# Spam vs. Spim - -Spam refers to unsolicited and often irrelevant messages sent over email, typically to a large number of recipients, with the purpose of advertising, phishing, spreading malware, or other malicious activities. Spam emails are usually sent by automated bots and are characterized by their bulk nature. Spim is a type of spam that specifically targets instant messaging (IM) platforms rather than email. Spim messages are unsolicited and typically used for advertising, phishing, or spreading malware. As instant messaging apps have grown in popularity, so too has the prevalence of Spim. - -Visit the following resources to learn more: - -- [@article@What Is Spam?](https://www.proofpoint.com/us/threat-reference/spam) +# Spam vs. Spim + +Spam refers to unsolicited and often irrelevant messages sent over email, typically to a large number of recipients, with the purpose of advertising, phishing, spreading malware, or other malicious activities. Spam emails are usually sent by automated bots and are characterized by their bulk nature. Spim is a type of spam that specifically targets instant messaging (IM) platforms rather than email. Spim messages are unsolicited and typically used for advertising, phishing, or spreading malware. As instant messaging apps have grown in popularity, so too has the prevalence of Spim. + +Visit the following resources to learn more: + +- [@article@What Is Spam?](https://www.proofpoint.com/us/threat-reference/spam) - [@article@What Is Spim?](https://www.brosix.com/blog/what-is-spim/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sql-injection@P-Am25WJV8cFd_KsX7cdj.md b/src/data/roadmaps/cyber-security/content/sql-injection@P-Am25WJV8cFd_KsX7cdj.md index a982bd508..d0df52ffb 100644 --- a/src/data/roadmaps/cyber-security/content/sql-injection@P-Am25WJV8cFd_KsX7cdj.md +++ b/src/data/roadmaps/cyber-security/content/sql-injection@P-Am25WJV8cFd_KsX7cdj.md @@ -1,8 +1,8 @@ -# What is SQL Injection? - -**SQL Injection** is a type of web application security vulnerability that allows an attacker to inject malicious SQL code into a web application's database, potentially leading to unauthorized data access, modification, or deletion. - -Visit the following resources to learn more: - -- [@article@PortSwigger - SQL Injection](https://portswigger.net/web-security/sql-injection) +# What is SQL Injection? + +**SQL Injection** is a type of web application security vulnerability that allows an attacker to inject malicious SQL code into a web application's database, potentially leading to unauthorized data access, modification, or deletion. + +Visit the following resources to learn more: + +- [@article@PortSwigger - SQL Injection](https://portswigger.net/web-security/sql-injection) - [@video@SQL Injections are scary](https://www.youtube.com/watch?v=2OPVViV-GQk) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/srtp@_9lQSG6fn69Yd9rs1pQdL.md b/src/data/roadmaps/cyber-security/content/srtp@_9lQSG6fn69Yd9rs1pQdL.md index 3dcb30fe0..7953b769a 100644 --- a/src/data/roadmaps/cyber-security/content/srtp@_9lQSG6fn69Yd9rs1pQdL.md +++ b/src/data/roadmaps/cyber-security/content/srtp@_9lQSG6fn69Yd9rs1pQdL.md @@ -2,6 +2,6 @@ SRTP (Secure Real-time Transport Protocol) is a security-enhanced version of the Real-time Transport Protocol (RTP) used for voice and video communication over IP networks. It provides encryption, message authentication, and integrity for RTP data in unicast and multicast applications. SRTP is designed to ensure the confidentiality of media streams and protect against eavesdropping, tampering, and replay attacks in Voice over IP (VoIP) and video conferencing systems. It uses AES encryption for confidentiality and HMAC-SHA1 for authentication. SRTP is widely used in secure communication applications, including SIP-based VoIP systems and WebRTC, to protect sensitive audio and video transmissions across potentially untrusted networks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@SRTP (Secure RTP)](https://developer.mozilla.org/en-US/docs/Glossary/RTP) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ssh@8Mog890Lj-gVBpWa05EzT.md b/src/data/roadmaps/cyber-security/content/ssh@8Mog890Lj-gVBpWa05EzT.md index 9c37ddb4d..2fe350b35 100644 --- a/src/data/roadmaps/cyber-security/content/ssh@8Mog890Lj-gVBpWa05EzT.md +++ b/src/data/roadmaps/cyber-security/content/ssh@8Mog890Lj-gVBpWa05EzT.md @@ -2,7 +2,7 @@ SSH (Secure Shell) is a cryptographic network protocol used for secure remote login and other secure network services over an unsecured network. It provides a secure channel over an unsecured network by using strong encryption to protect the connection against eavesdropping, tampering, and man-in-the-middle attacks. SSH is commonly used for remote command-line login, remote command execution, and secure file transfers. It typically runs on TCP port 22 and replaces older, less secure protocols like Telnet. SSH uses public-key cryptography for authentication and supports various authentication methods, including passwords and key-based authentication. It's a fundamental tool for system administrators, developers, and anyone requiring secure remote access to systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is SSH? | Secure Shell (SSH) protocol](https://www.cloudflare.com/en-gb/learning/access-management/what-is-ssh/) -- [@video@How does SSH work](https://www.youtube.com/watch?v=5JvLV2-ngCI) +- [@video@How does SSH work](https://www.youtube.com/watch?v=5JvLV2-ngCI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ssl--tls@LKK1A5-xawA7yCIAWHS8P.md b/src/data/roadmaps/cyber-security/content/ssl--tls@LKK1A5-xawA7yCIAWHS8P.md index f0998cce9..078cd6553 100644 --- a/src/data/roadmaps/cyber-security/content/ssl--tls@LKK1A5-xawA7yCIAWHS8P.md +++ b/src/data/roadmaps/cyber-security/content/ssl--tls@LKK1A5-xawA7yCIAWHS8P.md @@ -2,7 +2,7 @@ Secure Sockets Layer (SSL) and Transport Layer Security (TLS) are cryptographic protocols used to provide security in internet communications. These protocols encrypt the data that is transmitted over the web, so anyone who tries to intercept packets will not be able to interpret the data. One difference that is important to know is that SSL is now deprecated due to security flaws, and most modern web browsers no longer support it. But TLS is still secure and widely supported, so preferably use TLS. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is SSL? | SSL definition](https://www.cloudflare.com/en-gb/learning/ssl/what-is-ssl/) - [@article@TLS Basics](https://www.internetsociety.org/deploy360/tls/basics/) diff --git a/src/data/roadmaps/cyber-security/content/ssl-and-tls-basics@dJ0NUsODFhk52W2zZxoPh.md b/src/data/roadmaps/cyber-security/content/ssl-and-tls-basics@dJ0NUsODFhk52W2zZxoPh.md index 0c206e8ca..14f01a672 100644 --- a/src/data/roadmaps/cyber-security/content/ssl-and-tls-basics@dJ0NUsODFhk52W2zZxoPh.md +++ b/src/data/roadmaps/cyber-security/content/ssl-and-tls-basics@dJ0NUsODFhk52W2zZxoPh.md @@ -2,7 +2,7 @@ Secure Sockets Layer (SSL) and Transport Layer Security (TLS) are cryptographic protocols used to provide security in internet communications. These protocols encrypt the data that is transmitted over the web, so anyone who tries to intercept packets will not be able to interpret the data. One difference that is important to know is that SSL is now deprecated due to security flaws, and most modern web browsers no longer support it. But TLS is still secure and widely supported, so preferably use TLS. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What’s the Difference Between SSL and TLS?](https://aws.amazon.com/compare/the-difference-between-ssl-and-tls/) - [@video@TLS vs SSL - What's the Difference?](https://www.youtube.com/watch?v=J7fI_jH7L84) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/ssl-vs-tls@6ILPXeUDDmmYRiA_gNTSr.md b/src/data/roadmaps/cyber-security/content/ssl-vs-tls@6ILPXeUDDmmYRiA_gNTSr.md index fbb508bb0..5854b6994 100644 --- a/src/data/roadmaps/cyber-security/content/ssl-vs-tls@6ILPXeUDDmmYRiA_gNTSr.md +++ b/src/data/roadmaps/cyber-security/content/ssl-vs-tls@6ILPXeUDDmmYRiA_gNTSr.md @@ -4,7 +4,7 @@ **TLS (Transport Layer Security)** improves upon SSL by using stronger encryption algorithms, more secure key exchange mechanisms, and enhanced certificate validation. Like SSL, TLS begins with a handshake where the client and server agree on a protocol version and cipher suite, exchange keys, and verify certificates. However, TLS incorporates additional features like Perfect Forward Secrecy (PFS) and more secure hashing algorithms, making it significantly more secure than SSL for modern communications. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What’s the Difference Between SSL and TLS?](https://aws.amazon.com/compare/the-difference-between-ssl-and-tls/) - [@video@TLS vs SSL - What's the Difference?](https://www.youtube.com/watch?v=J7fI_jH7L84) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/sso@xL32OqDKm6O043TYgVV1r.md b/src/data/roadmaps/cyber-security/content/sso@xL32OqDKm6O043TYgVV1r.md index eee47f68a..fe3e61415 100644 --- a/src/data/roadmaps/cyber-security/content/sso@xL32OqDKm6O043TYgVV1r.md +++ b/src/data/roadmaps/cyber-security/content/sso@xL32OqDKm6O043TYgVV1r.md @@ -2,7 +2,7 @@ Single Sign-On (SSO) is an authentication method that allows users to access multiple applications or systems with one set of login credentials. It enables users to log in once and gain access to various connected systems without re-entering credentials. SSO enhances user experience by reducing password fatigue, streamlines access management for IT departments, and can improve security by centralizing authentication controls. It typically uses protocols like SAML, OAuth, or OpenID Connect to securely share authentication information across different domains. While SSO offers convenience and can strengthen security when implemented correctly, it also presents a single point of failure if compromised, making robust security measures for the SSO system critical. -Learn more from the following resources: +Visit the following resources to learn more: -- [@articles@What is SSO? | How single sign-on works](https://www.cloudflare.com/en-gb/learning/access-management/what-is-sso/) +- [@article@What is SSO? | How single sign-on works](https://www.cloudflare.com/en-gb/learning/access-management/what-is-sso/) - [@video@What Is Single Sign-on (SSO)? How It Works](https://www.youtube.com/watch?v=O1cRJWYF-g4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/stakeholders@lv6fI3WeJawuCbwKtMRIh.md b/src/data/roadmaps/cyber-security/content/stakeholders@lv6fI3WeJawuCbwKtMRIh.md index 475ddaa51..8a4be7534 100644 --- a/src/data/roadmaps/cyber-security/content/stakeholders@lv6fI3WeJawuCbwKtMRIh.md +++ b/src/data/roadmaps/cyber-security/content/stakeholders@lv6fI3WeJawuCbwKtMRIh.md @@ -1,9 +1,9 @@ -# Stakeholders - -Stakeholders are individuals, groups, or organizations with an interest or concern in a project, business, or initiative. They can affect or be affected by the organization's actions, objectives, and policies. In a business context, stakeholders typically include shareholders, employees, customers, suppliers, government agencies, local communities, and sometimes competitors. Effective stakeholder management involves identifying key stakeholders, understanding their needs and expectations, communicating effectively with them, and balancing their often competing interests. Stakeholder engagement is crucial for project success, risk management, and organizational reputation. In IT and cybersecurity projects, stakeholders might include end-users, IT staff, management, compliance officers, and external regulators, each with distinct concerns regarding system functionality, security, and compliance. - -Visit the following resources to learn more: - -- [@official@NIST Publication on Engineering Trustworthy Secure Systems](https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-160v1r1.pdf) -- [@course@TryHackMe room on Cyber Governance and regulation](https://tryhackme.com/r/room/cybergovernanceregulation) -- [@official@NIST Glossary](https://csrc.nist.gov/glossary/term/stakeholder) +# Stakeholders + +Stakeholders are individuals, groups, or organizations with an interest or concern in a project, business, or initiative. They can affect or be affected by the organization's actions, objectives, and policies. In a business context, stakeholders typically include shareholders, employees, customers, suppliers, government agencies, local communities, and sometimes competitors. Effective stakeholder management involves identifying key stakeholders, understanding their needs and expectations, communicating effectively with them, and balancing their often competing interests. Stakeholder engagement is crucial for project success, risk management, and organizational reputation. In IT and cybersecurity projects, stakeholders might include end-users, IT staff, management, compliance officers, and external regulators, each with distinct concerns regarding system functionality, security, and compliance. + +Visit the following resources to learn more: + +- [@course@TryHackMe room on Cyber Governance and regulation](https://tryhackme.com/r/room/cybergovernanceregulation) +- [@official@NIST Publication on Engineering Trustworthy Secure Systems](https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-160v1r1.pdf) +- [@official@NIST Glossary](https://csrc.nist.gov/glossary/term/stakeholder) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/star@P0ZhAXd_H-mTOMr13Ag31.md b/src/data/roadmaps/cyber-security/content/star@P0ZhAXd_H-mTOMr13Ag31.md index 522ef0723..aacdccc20 100644 --- a/src/data/roadmaps/cyber-security/content/star@P0ZhAXd_H-mTOMr13Ag31.md +++ b/src/data/roadmaps/cyber-security/content/star@P0ZhAXd_H-mTOMr13Ag31.md @@ -2,7 +2,7 @@ A star network topology is a configuration where all devices (nodes) are connected directly to a central hub or switch. In this arrangement, each node has a dedicated point-to-point link to the central device, forming a star-like structure. This topology offers advantages such as easy installation and reconfiguration, centralized management, and fault isolation. If one connection fails, it doesn't affect others. However, the central hub is a single point of failure for the entire network. Star topologies are commonly used in local area networks (LANs) due to their reliability, scalability, and ease of maintenance, making them a popular choice in both small office and large enterprise environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Star Topology](https://www.computerhope.com/jargon/s/startopo.htm) - [@video@Star Topology](https://www.youtube.com/watch?v=EQ3rW22-Py0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/subnet-mask@f-v8qtweWXFY_Ryo3oYUF.md b/src/data/roadmaps/cyber-security/content/subnet-mask@f-v8qtweWXFY_Ryo3oYUF.md index 30e31ba2a..c61b24c7d 100644 --- a/src/data/roadmaps/cyber-security/content/subnet-mask@f-v8qtweWXFY_Ryo3oYUF.md +++ b/src/data/roadmaps/cyber-security/content/subnet-mask@f-v8qtweWXFY_Ryo3oYUF.md @@ -2,7 +2,7 @@ A subnet mask is a 32-bit number used in IP networking to divide an IP address into network and host portions. It determines which part of an IP address refers to the network and which part refers to the host. Subnet masks enable network administrators to create subnetworks, improving network efficiency and security by controlling traffic flow between subnets. Common subnet masks include 255.255.255.0 (for a /24 network) and 255.255.0.0 (for a /16 network). Subnetting helps in efficient IP address allocation, reduces broadcast traffic, and enhances network performance. Understanding subnet masks is crucial for network configuration, troubleshooting, and implementing effective network segmentation strategies. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What Is a Subnet Mask?](https://www.spiceworks.com/tech/networking/articles/what-is-subnet-mask/) - [@video@What is a subnet mask?](https://www.youtube.com/watch?v=s_Ntt6eTn94) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/switch@r9byGV8XuBPzoqj5ZPf2W.md b/src/data/roadmaps/cyber-security/content/switch@r9byGV8XuBPzoqj5ZPf2W.md index 3a09ad794..d67890b7a 100644 --- a/src/data/roadmaps/cyber-security/content/switch@r9byGV8XuBPzoqj5ZPf2W.md +++ b/src/data/roadmaps/cyber-security/content/switch@r9byGV8XuBPzoqj5ZPf2W.md @@ -2,7 +2,7 @@ A switch is a network device that operates at the data link layer (Layer 2) of the OSI model, connecting multiple devices within a local area network (LAN). It uses MAC addresses to forward data packets between devices, creating separate collision domains for each port. Switches improve network efficiency by sending packets only to their intended destinations, reducing unnecessary traffic. They support full-duplex communication, allowing simultaneous data transmission in both directions. Modern switches often include advanced features like VLANs, port mirroring, and Quality of Service (QoS) management. Switches are fundamental to creating efficient, segmented networks and are crucial components in both small office and large enterprise network infrastructures. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Network Switch?](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-a-network-switch/) - [@video@What is a Switch?](https://www.youtube.com/watch?v=9eH16Fxeb9o) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/syslogs@7oFwRkmoZom8exMDtMslX.md b/src/data/roadmaps/cyber-security/content/syslogs@7oFwRkmoZom8exMDtMslX.md index fe4e501aa..ab34a45f1 100644 --- a/src/data/roadmaps/cyber-security/content/syslogs@7oFwRkmoZom8exMDtMslX.md +++ b/src/data/roadmaps/cyber-security/content/syslogs@7oFwRkmoZom8exMDtMslX.md @@ -2,7 +2,7 @@ Syslog is a standard protocol used for message logging in computer systems, particularly in Unix-like environments. It allows separation of the software that generates messages, the system that stores them, and the software that reports and analyzes them. Syslog messages typically include information about system events, security incidents, and application statuses, categorized by facility and severity level. These logs are crucial for system administration, troubleshooting, security monitoring, and compliance. Many network devices and applications support syslog, enabling centralized log management. Syslog data can be stored locally or sent to remote servers for aggregation and analysis, playing a vital role in maintaining system health, detecting anomalies, and conducting forensic investigations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is syslog?](https://www.solarwinds.com/resources/it-glossary/syslog) - [@video@Free CCNA | Syslog](https://www.youtube.com/watch?v=RaQPSKQ4J5A) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/tail@762Wf_Eh-3zq69CZZiIjR.md b/src/data/roadmaps/cyber-security/content/tail@762Wf_Eh-3zq69CZZiIjR.md index 6d62e95d0..50a223b0a 100644 --- a/src/data/roadmaps/cyber-security/content/tail@762Wf_Eh-3zq69CZZiIjR.md +++ b/src/data/roadmaps/cyber-security/content/tail@762Wf_Eh-3zq69CZZiIjR.md @@ -2,7 +2,7 @@ The tail command is a Unix/Linux utility used to display the last part of a file. By default, it shows the last 10 lines of a specified file. It's particularly useful for viewing recent entries in log files, monitoring file changes in real-time, and quickly checking the end of large text files. The command can be customized to display a different number of lines, and with the -f (follow) option, it can continuously update to show new lines as they're added to the file. This makes tail invaluable for system administrators and developers for real-time log monitoring, troubleshooting, and observing ongoing processes or application outputs. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@tail man page](https://man7.org/linux/man-pages/man1/tail.1.html) - [@video@Linux Tail Command](https://www.youtube.com/watch?v=7Y6Ho9JUxTE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/tailgating@o-keJgF9hmifQ_hUD91iN.md b/src/data/roadmaps/cyber-security/content/tailgating@o-keJgF9hmifQ_hUD91iN.md index c03a399bc..212d51a01 100644 --- a/src/data/roadmaps/cyber-security/content/tailgating@o-keJgF9hmifQ_hUD91iN.md +++ b/src/data/roadmaps/cyber-security/content/tailgating@o-keJgF9hmifQ_hUD91iN.md @@ -2,7 +2,7 @@ Tailgating is the act of getting access to a restricted area by simply following an authorized person. This is a common social engineering technique used by attackers to gain physical access to a building or a restricted area. The attacker waits for an authorized person to open the door and then follows them inside. This technique is effective because it is based on trust and the assumption that the attacker is an authorized person. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Tailgating attacks](https://www.proofpoint.com/us/threat-reference/tailgating-attacks-cybersecurity) -- [@video@Tailgating and Piggybacking - Social Engineering Tactics Explained](https://www.youtube.com/watch?v=4SpvulRcVQ0) +- [@video@Tailgating and Piggybacking - Social Engineering Tactics Explained](https://www.youtube.com/watch?v=4SpvulRcVQ0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/tcpdump@y8GaUNpaCT1Ai88wPOk6d.md b/src/data/roadmaps/cyber-security/content/tcpdump@y8GaUNpaCT1Ai88wPOk6d.md index a6ad547f6..a68bb0e6b 100644 --- a/src/data/roadmaps/cyber-security/content/tcpdump@y8GaUNpaCT1Ai88wPOk6d.md +++ b/src/data/roadmaps/cyber-security/content/tcpdump@y8GaUNpaCT1Ai88wPOk6d.md @@ -2,7 +2,7 @@ Tcpdump is a powerful command-line packet analyzer used for network troubleshooting and security analysis. It captures and displays the contents of network packets matching specified criteria. Tcpdump can intercept and display communication protocols, packet headers, and payload data passing over a network interface. It's commonly used for diagnosing network issues, monitoring network traffic, detecting suspicious activities, and analyzing protocol behavior. Tcpdump offers various filtering options to focus on specific types of traffic, IP addresses, or ports. While primarily used on Unix-like systems, its Windows equivalent is WinDump. Due to its ability to capture sensitive data, tcpdump usage often requires administrative privileges and must comply with legal and ethical guidelines. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@tcpdump man page](https://www.tcpdump.org/manpages/tcpdump.1.html) - [@video@TCP Dump - What is it and how to use it?](https://www.youtube.com/watch?v=e45Kt1IYdCI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/tracert@cSz9Qx3PGwmhq3SSKYKfg.md b/src/data/roadmaps/cyber-security/content/tracert@cSz9Qx3PGwmhq3SSKYKfg.md index eac50e8df..34be7f373 100644 --- a/src/data/roadmaps/cyber-security/content/tracert@cSz9Qx3PGwmhq3SSKYKfg.md +++ b/src/data/roadmaps/cyber-security/content/tracert@cSz9Qx3PGwmhq3SSKYKfg.md @@ -2,7 +2,7 @@ Tracert (traceroute in Unix-based systems) is a network diagnostic tool used to trace the path that data packets take from a source computer to a destination host. It shows the number of hops (intermediate routers) traversed, the IP addresses of these routers, and the round-trip time for each hop. Tracert works by sending packets with increasing Time-To-Live (TTL) values, causing each router along the path to respond. This tool is valuable for identifying network bottlenecks, pinpointing where packet loss occurs, and understanding the routing path of network traffic. It's commonly used for troubleshooting network connectivity issues, analyzing network performance, and mapping network topology. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@traceroute man page](https://linux.die.net/man/8/traceroute) - [@article@tracert](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/tracert) diff --git a/src/data/roadmaps/cyber-security/content/tracert@jJtS0mgCYc0wbjuXssDRO.md b/src/data/roadmaps/cyber-security/content/tracert@jJtS0mgCYc0wbjuXssDRO.md index eac50e8df..34be7f373 100644 --- a/src/data/roadmaps/cyber-security/content/tracert@jJtS0mgCYc0wbjuXssDRO.md +++ b/src/data/roadmaps/cyber-security/content/tracert@jJtS0mgCYc0wbjuXssDRO.md @@ -2,7 +2,7 @@ Tracert (traceroute in Unix-based systems) is a network diagnostic tool used to trace the path that data packets take from a source computer to a destination host. It shows the number of hops (intermediate routers) traversed, the IP addresses of these routers, and the round-trip time for each hop. Tracert works by sending packets with increasing Time-To-Live (TTL) values, causing each router along the path to respond. This tool is valuable for identifying network bottlenecks, pinpointing where packet loss occurs, and understanding the routing path of network traffic. It's commonly used for troubleshooting network connectivity issues, analyzing network performance, and mapping network topology. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@traceroute man page](https://linux.die.net/man/8/traceroute) - [@article@tracert](https://learn.microsoft.com/en-us/windows-server/administration/windows-commands/tracert) diff --git a/src/data/roadmaps/cyber-security/content/troubleshooting@xeRWOX1fWQDLNLWMAFTEe.md b/src/data/roadmaps/cyber-security/content/troubleshooting@xeRWOX1fWQDLNLWMAFTEe.md index cd37c207b..82320b86f 100644 --- a/src/data/roadmaps/cyber-security/content/troubleshooting@xeRWOX1fWQDLNLWMAFTEe.md +++ b/src/data/roadmaps/cyber-security/content/troubleshooting@xeRWOX1fWQDLNLWMAFTEe.md @@ -2,7 +2,7 @@ Troubleshooting is a systematic approach to problem-solving used to identify, diagnose, and resolve issues in complex systems, particularly in technology and engineering fields. It involves a step-by-step process of gathering information, identifying symptoms, formulating hypotheses, testing potential solutions, and implementing fixes. Effective troubleshooting requires analytical thinking, deep knowledge of the system in question, and often the use of diagnostic tools. In IT and network environments, common troubleshooting steps include checking physical connections, verifying configurations, analyzing logs, and isolating variables. The goal is to efficiently pinpoint the root cause of a problem and implement an appropriate solution, minimizing downtime and restoring normal operations as quickly as possible. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Problem Solve](https://www.techtarget.com/searchsecurity/info/problemsolve) - [@video@Steps for Network Troubleshooting](https://www.youtube.com/watch?v=1i3XdhC2ZAs) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/true-negative--true-positive@M6uwyD4ibguxytf1od-og.md b/src/data/roadmaps/cyber-security/content/true-negative--true-positive@M6uwyD4ibguxytf1od-og.md index 1a5313a37..5671dc710 100644 --- a/src/data/roadmaps/cyber-security/content/true-negative--true-positive@M6uwyD4ibguxytf1od-og.md +++ b/src/data/roadmaps/cyber-security/content/true-negative--true-positive@M6uwyD4ibguxytf1od-og.md @@ -4,7 +4,7 @@ A True Positive occurs when a security system correctly identifies a genuine thr Both True Positives and True Negatives represent correct assessments by security systems, contributing to effective threat detection and minimizing false alarms. Balancing these with minimizing false positives and false negatives is crucial for optimal security system performance. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@False Positives and False Negatives in Information Security](https://www.guardrails.io/blog/false-positives-and-false-negatives-in-information-security/) -- [@video@False Positives and False Negatives](https://www.youtube.com/watch?v=bUNBzMnfHLw) +- [@video@False Positives and False Negatives](https://www.youtube.com/watch?v=bUNBzMnfHLw) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/tryhackme@kht-L7_v-DbglMYUHuchp.md b/src/data/roadmaps/cyber-security/content/tryhackme@kht-L7_v-DbglMYUHuchp.md index 0d32bc7ee..81bfacabb 100644 --- a/src/data/roadmaps/cyber-security/content/tryhackme@kht-L7_v-DbglMYUHuchp.md +++ b/src/data/roadmaps/cyber-security/content/tryhackme@kht-L7_v-DbglMYUHuchp.md @@ -2,7 +2,7 @@ TryHackMe is an online platform designed for cybersecurity training and learning through hands-on experience. It offers a wide range of virtual rooms and challenges covering various security topics, from basic to advanced levels. Users can access vulnerable machines, engage in capture-the-flag (CTF) style exercises, and learn practical skills in areas like penetration testing, web security, and network security. TryHackMe uses browser-based tools and virtual machines, making it accessible without requiring powerful hardware. The platform caters to beginners and experienced professionals alike, providing guided learning paths, real-world scenarios, and a supportive community. It's widely used for both individual skill development and corporate cybersecurity training. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@TryHackMe](https://tryhackme.com/) - [@video@Start Your Cybersecurity Career with TryHackMe](https://www.youtube.com/watch?v=HPF8y_gDP7w) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/typo-squatting@0LeDwj_tMaXjQBBOUJ5CL.md b/src/data/roadmaps/cyber-security/content/typo-squatting@0LeDwj_tMaXjQBBOUJ5CL.md index 8c33d5812..415432f9f 100644 --- a/src/data/roadmaps/cyber-security/content/typo-squatting@0LeDwj_tMaXjQBBOUJ5CL.md +++ b/src/data/roadmaps/cyber-security/content/typo-squatting@0LeDwj_tMaXjQBBOUJ5CL.md @@ -1,7 +1,7 @@ -# Typosquatting - -Typosquatting is a form of cyberattack that exploits common typing errors made by users when entering website URLs into their browsers. Attackers create malicious websites with URLs that are very similar to legitimate ones, often differing by just a single letter, number, or symbol. When a user accidentally mistypes a URL, they may be redirected to the malicious site, where they can be subjected to phishing attacks, malware downloads, or other forms of cyber exploitation. - -Visit the following resources to learn more: - -- [@article@What is Typosquatting](https://www.mcafee.com/learn/what-is-typosquatting/#:~:text=Typosquatting%2C%20also%20known%20as%20URL,%E2%80%9CGoogle.com%E2%80%9D) +# Typosquatting + +Typosquatting is a form of cyberattack that exploits common typing errors made by users when entering website URLs into their browsers. Attackers create malicious websites with URLs that are very similar to legitimate ones, often differing by just a single letter, number, or symbol. When a user accidentally mistypes a URL, they may be redirected to the malicious site, where they can be subjected to phishing attacks, malware downloads, or other forms of cyber exploitation. + +Visit the following resources to learn more: + +- [@article@What is Typosquatting](https://www.mcafee.com/learn/what-is-typosquatting/#:~:text=Typosquatting%2C%20also%20known%20as%20URL,%E2%80%9CGoogle.com%E2%80%9D) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-backups-and-resiliency@9asy3STW4oTYYHcUazaRj.md b/src/data/roadmaps/cyber-security/content/understand-backups-and-resiliency@9asy3STW4oTYYHcUazaRj.md index 9873ec143..825acbafe 100644 --- a/src/data/roadmaps/cyber-security/content/understand-backups-and-resiliency@9asy3STW4oTYYHcUazaRj.md +++ b/src/data/roadmaps/cyber-security/content/understand-backups-and-resiliency@9asy3STW4oTYYHcUazaRj.md @@ -2,7 +2,7 @@ Backups and resiliency are critical components of data protection and business continuity strategies. Backups involve regularly copying data to secure storage locations, ensuring data can be recovered in case of loss, corruption, or disaster. Resiliency refers to a system's ability to maintain operations and recover quickly from disruptions. This includes implementing redundant systems, distributing resources across multiple locations, and designing fault-tolerant architectures. Effective backup and resiliency strategies incorporate diverse backup methods (full, incremental, differential), off-site storage, regular testing of recovery procedures, and automated failover mechanisms. These practices are essential for minimizing downtime, protecting against data loss, and maintaining business operations in the face of various threats, from hardware failures to cyberattacks. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Backup & Restore](https://aws.amazon.com/solutions/resilience/backup-restore/) - [@video@Why backup should be a part of your cyber resilience plan?](https://www.youtube.com/watch?v=S8BIkoHlU_0) diff --git a/src/data/roadmaps/cyber-security/content/understand-basics-of-forensics@7KLGFfco-hw7a62kXtS3d.md b/src/data/roadmaps/cyber-security/content/understand-basics-of-forensics@7KLGFfco-hw7a62kXtS3d.md index 40daf8c5a..1c48a9b20 100644 --- a/src/data/roadmaps/cyber-security/content/understand-basics-of-forensics@7KLGFfco-hw7a62kXtS3d.md +++ b/src/data/roadmaps/cyber-security/content/understand-basics-of-forensics@7KLGFfco-hw7a62kXtS3d.md @@ -2,7 +2,7 @@ Digital forensics is the process of collecting, analyzing, and preserving electronic evidence for legal or investigative purposes. It involves recovering data from various digital devices, including computers, smartphones, and networks, often in cases of cybercrime, data breaches, or legal disputes. Forensic analysts use specialized tools and techniques to extract and examine data, maintain chain of custody, and present findings in a court-admissible manner. Key aspects include data acquisition, file recovery, timeline analysis, and malware detection. Digital forensics plays a crucial role in cybersecurity incident response, criminal investigations, and corporate compliance, requiring a meticulous approach to ensure the integrity and admissibility of digital evidence. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Introduction to Digital Forensics (TryHackMe)](https://tryhackme.com/room/introdigitalforensics) - [@video@Digital Forensics](https://www.youtube.com/watch?v=UtDWApdO8Zk) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-basics-of-popular-suites@_7RjH4Goi0x6Noy6za0rP.md b/src/data/roadmaps/cyber-security/content/understand-basics-of-popular-suites@_7RjH4Goi0x6Noy6za0rP.md index 99dc2bd14..35f10d433 100644 --- a/src/data/roadmaps/cyber-security/content/understand-basics-of-popular-suites@_7RjH4Goi0x6Noy6za0rP.md +++ b/src/data/roadmaps/cyber-security/content/understand-basics-of-popular-suites@_7RjH4Goi0x6Noy6za0rP.md @@ -1,19 +1,22 @@ # Understand Basics of Popular Suites -## Microsoft Office +Microsoft Office +---------------- Microsoft Office is a suite of productivity software applications developed by Microsoft. It includes popular programs like Word (word processing), Excel (spreadsheets), PowerPoint (presentations), Outlook (email and calendar), and OneNote (note-taking). The suite offers both desktop applications and cloud-based services through Office 365, enabling collaboration and remote work. Office integrates with Microsoft's cloud storage solution, OneDrive, for easy file sharing and syncing across devices. It's widely used in business, education, and personal settings for creating, editing, and managing various types of documents. Regular updates introduce new features and security improvements, maintaining Office's position as a standard tool in personal and professional computing environments. -## Google Workspace (formerly G Suite) +Google Workspace (formerly G Suite) +----------------------------------- Google Workspace (formerly G Suite) is a cloud-based productivity and collaboration platform developed by Google. It includes applications like Gmail (email), Google Docs (word processing), Sheets (spreadsheets), Slides (presentations), Drive (cloud storage), Meet (video conferencing), and Calendar. These tools are designed for real-time collaboration, allowing multiple users to work on documents simultaneously. Google Workspace integrates seamlessly across devices, offers robust search capabilities, and provides advanced security features. It's popular among businesses, educational institutions, and individuals for its user-friendly interface, automatic saving, and extensive third-party app integrations. The platform emphasizes cloud-native work, promoting flexibility and remote collaboration in modern work environments. -## LibreOffice +LibreOffice +----------- LibreOffice is a free, open-source office productivity suite developed by The Document Foundation. It offers alternatives to Microsoft Office applications, including Writer (word processing), Calc (spreadsheets), Impress (presentations), Draw (graphics), Base (databases), and Math (formula editing). LibreOffice supports a wide range of file formats, including Microsoft Office formats, and emphasizes adherence to open standards. It's available for multiple operating systems, doesn't require a subscription, and allows users to customize or extend its functionality. While it may lack some advanced features of commercial alternatives, LibreOffice is popular in educational settings, government agencies, and among users seeking a cost-effective, privacy-focused office suite solution. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Microsoft Office](https://www.office.com/) - [@official@Google Workspace](https://workspace.google.com) -- [@official@LibreOffice](https://www.libreoffice.org/) +- [@official@LibreOffice](https://www.libreoffice.org/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-cia-triad@uz6ELaLEu9U4fHVfnQiOa.md b/src/data/roadmaps/cyber-security/content/understand-cia-triad@uz6ELaLEu9U4fHVfnQiOa.md index 7567481a5..39b279d12 100644 --- a/src/data/roadmaps/cyber-security/content/understand-cia-triad@uz6ELaLEu9U4fHVfnQiOa.md +++ b/src/data/roadmaps/cyber-security/content/understand-cia-triad@uz6ELaLEu9U4fHVfnQiOa.md @@ -2,7 +2,7 @@ The CIA Triad is a fundamental model in information security that defines three key principles: Confidentiality, Integrity, and Availability. Confidentiality ensures that data is accessible only to authorized parties. Integrity guarantees that information remains accurate and unaltered throughout its lifecycle. Availability ensures that data and resources are accessible to authorized users when needed. This model serves as a guide for developing security policies, designing secure systems, and evaluating the effectiveness of security measures. Balancing these three elements is crucial for comprehensive information security, as overemphasizing one aspect may compromise the others. The CIA Triad forms the basis for most security programs and is essential in risk assessment, compliance efforts, and overall cybersecurity strategy. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@The CIA Triad](https://www.fortinet.com/resources/cyberglossary/cia-triad) -- [@video@The CIA Triad - Professor Messer](https://www.youtube.com/watch?v=SBcDGb9l6yo) +- [@video@The CIA Triad - Professor Messer](https://www.youtube.com/watch?v=SBcDGb9l6yo) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-common-exploit-frameworks@Lg7mz4zeCToEzZBFxYuaU.md b/src/data/roadmaps/cyber-security/content/understand-common-exploit-frameworks@Lg7mz4zeCToEzZBFxYuaU.md index dde03d8ec..c632e8e84 100644 --- a/src/data/roadmaps/cyber-security/content/understand-common-exploit-frameworks@Lg7mz4zeCToEzZBFxYuaU.md +++ b/src/data/roadmaps/cyber-security/content/understand-common-exploit-frameworks@Lg7mz4zeCToEzZBFxYuaU.md @@ -2,8 +2,8 @@ Common exploit frameworks are comprehensive platforms used for developing, testing, and executing security exploits. The most prominent is Metasploit, which offers a large database of known vulnerabilities and exploit modules. It allows security professionals to simulate attacks and test system defenses. Other frameworks include Canvas by Immunity, Core Impact, and the open-source BeEF (Browser Exploitation Framework). These tools typically provide features for vulnerability scanning, payload generation, post-exploitation activities, and reporting. While primarily used for legitimate security testing and penetration testing, these frameworks can also be misused by malicious actors. Proper usage requires strict ethical guidelines, legal authorization, and a thorough understanding of cybersecurity principles and potential impacts. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Metasploit Framework](https://www.metasploit.com/) - [@official@Core Impact](https://www.coresecurity.com/) -- [@video@Metasploit for Beginners](https://www.youtube.com/watch?v=8lR27r8Y_ik) +- [@video@Metasploit for Beginners](https://www.youtube.com/watch?v=8lR27r8Y_ik) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-common-hacking-tools@rzY_QsvnC1shDTPQ-til0.md b/src/data/roadmaps/cyber-security/content/understand-common-hacking-tools@rzY_QsvnC1shDTPQ-til0.md index 32ffdf89d..4a1ac9fa0 100644 --- a/src/data/roadmaps/cyber-security/content/understand-common-hacking-tools@rzY_QsvnC1shDTPQ-til0.md +++ b/src/data/roadmaps/cyber-security/content/understand-common-hacking-tools@rzY_QsvnC1shDTPQ-til0.md @@ -2,7 +2,7 @@ Common hacking tools encompass a range of software used for network exploration, security auditing, and penetration testing. These include network scanners like Nmap, vulnerability assessment tools such as Nessus, password crackers like John the Ripper, and exploitation frameworks like Metasploit. Wireshark for packet analysis, Burp Suite for web application security testing, and Aircrack-ng for wireless network auditing are also widely used. While these tools have legitimate purposes in cybersecurity for identifying and addressing vulnerabilities, they can be misused for malicious activities. Ethical use of these tools requires proper authorization and adherence to legal and ethical guidelines. Understanding these tools is crucial for both offensive and defensive cybersecurity practices. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@100 Top Hacking Tools and Ethical Hacking Tools](https://www.eccouncil.org/cybersecurity-exchange/ethical-hacking/best-ethical-hacking-tools/) -- [@video@I Tried 100+ Hacking Tools](https://www.youtube.com/watch?v=4WqymtvuWZQ) +- [@video@I Tried 100+ Hacking Tools](https://www.youtube.com/watch?v=4WqymtvuWZQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-concept-of-defense-in-depth@Rae-f9DHDZuwIwW6eRtKF.md b/src/data/roadmaps/cyber-security/content/understand-concept-of-defense-in-depth@Rae-f9DHDZuwIwW6eRtKF.md index b15044935..2d0d29608 100644 --- a/src/data/roadmaps/cyber-security/content/understand-concept-of-defense-in-depth@Rae-f9DHDZuwIwW6eRtKF.md +++ b/src/data/roadmaps/cyber-security/content/understand-concept-of-defense-in-depth@Rae-f9DHDZuwIwW6eRtKF.md @@ -2,7 +2,7 @@ Defense in Depth is a cybersecurity strategy that employs multiple layers of security controls throughout an IT system or network. This approach assumes that no single security measure is perfect, and therefore combines various defensive mechanisms to protect assets. It typically includes physical security, network security, endpoint protection, application security, data security, and user education. By implementing overlapping security measures, the strategy aims to create a comprehensive security posture that can withstand various types of attacks, slow down intruders, and provide multiple opportunities for detection and response. This layered approach helps organizations maintain security even if one layer is compromised, significantly improving overall resilience against cyber threats. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Defense in Depth?](https://www.fortinet.com/resources/cyberglossary/defense-in-depth) - [@video@Defense-in-Depth - CompTIA Security+](https://www.youtube.com/watch?v=HLQ4wX8NxQY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-concept-of-isolation@aDF7ZcOX9uR8l0W4aqhYn.md b/src/data/roadmaps/cyber-security/content/understand-concept-of-isolation@aDF7ZcOX9uR8l0W4aqhYn.md index 3818b023e..bcec9d0db 100644 --- a/src/data/roadmaps/cyber-security/content/understand-concept-of-isolation@aDF7ZcOX9uR8l0W4aqhYn.md +++ b/src/data/roadmaps/cyber-security/content/understand-concept-of-isolation@aDF7ZcOX9uR8l0W4aqhYn.md @@ -2,7 +2,7 @@ Isolation in computing and cybersecurity refers to the practice of separating systems, processes, or data to contain potential threats and minimize the impact of security breaches. It involves creating boundaries between different components of a system or network to prevent unauthorized access or the spread of malware. Common isolation techniques include virtual machines, containers, network segmentation, and sandboxing. Isolation enhances security by limiting the attack surface, containing potential breaches, and protecting sensitive data or critical systems from compromised areas. It's a fundamental principle in designing secure architectures, implementing least privilege access, and managing multi-tenant environments in cloud computing. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@The Power of Isolation in Cyber security](https://peel-cyber.co.uk/the-power-of-isolation-in-cyber-security/) - [@video@Bridging the Air Gap - Understanding Digital Isolation](https://www.youtube.com/watch?v=0rv2996e3S0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-concept-of-runbooks@Ec6EairjFJLCHc7b-1xxe.md b/src/data/roadmaps/cyber-security/content/understand-concept-of-runbooks@Ec6EairjFJLCHc7b-1xxe.md index 649a14cbd..5dd3a1623 100644 --- a/src/data/roadmaps/cyber-security/content/understand-concept-of-runbooks@Ec6EairjFJLCHc7b-1xxe.md +++ b/src/data/roadmaps/cyber-security/content/understand-concept-of-runbooks@Ec6EairjFJLCHc7b-1xxe.md @@ -2,7 +2,7 @@ Runbooks are standardized documents or automated scripts that outline step-by-step procedures for carrying out specific IT operations or resolving common issues. They provide a consistent approach to routine tasks, incident response, and problem-solving, enabling IT teams to handle situations efficiently and minimize human error. Runbooks typically include detailed instructions, decision trees, troubleshooting guides, and may incorporate automation for repetitive tasks. They are essential for maintaining operational consistency, reducing downtime, facilitating knowledge transfer among team members, and supporting rapid incident resolution in complex IT environments. Modern runbooks are often digital, interactive, and integrated with IT service management tools for streamlined operations and continuous improvement. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@Create Automation Runbooks with AWS Systems Manager](https://www.youtube.com/watch?v=fQ_KahCPBeU) -- [@article@What is a runbook?](https://www.pagerduty.com/resources/learn/what-is-a-runbook/) \ No newline at end of file +- [@article@What is a runbook?](https://www.pagerduty.com/resources/learn/what-is-a-runbook/) +- [@video@Create Automation Runbooks with AWS Systems Manager](https://www.youtube.com/watch?v=fQ_KahCPBeU) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-handshakes@zQx_VUS1zRmF4zCGjJD5-.md b/src/data/roadmaps/cyber-security/content/understand-handshakes@zQx_VUS1zRmF4zCGjJD5-.md index e6abc4328..88f3b5d90 100644 --- a/src/data/roadmaps/cyber-security/content/understand-handshakes@zQx_VUS1zRmF4zCGjJD5-.md +++ b/src/data/roadmaps/cyber-security/content/understand-handshakes@zQx_VUS1zRmF4zCGjJD5-.md @@ -2,6 +2,6 @@ In networking and cybersecurity, a handshake is a process of establishing a secure connection between two parties before data exchange begins. It typically involves a series of predefined messages exchanged to verify identities, agree on communication parameters, and sometimes establish encryption keys. The most common example is the TCP three-way handshake used to initiate a connection. In cryptographic protocols like TLS/SSL, handshakes are more complex, involving certificate verification and key exchange. Handshakes are crucial for ensuring secure, authenticated communications, preventing unauthorized access, and setting up the parameters for efficient data transfer in various network protocols and security systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@video@TLS Handshake Explained](https://www.youtube.com/watch?v=86cQJ0MMses) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-permissions@bTfL7cPOmBBFl-eHxUJI6.md b/src/data/roadmaps/cyber-security/content/understand-permissions@bTfL7cPOmBBFl-eHxUJI6.md index 94440b84a..c7a50eaf7 100644 --- a/src/data/roadmaps/cyber-security/content/understand-permissions@bTfL7cPOmBBFl-eHxUJI6.md +++ b/src/data/roadmaps/cyber-security/content/understand-permissions@bTfL7cPOmBBFl-eHxUJI6.md @@ -2,7 +2,7 @@ Permissions in computing systems define the level of access and actions allowed for users or processes on files, directories, and resources. They typically include read (ability to view content), write (ability to modify), and execute (ability to run programs or scripts) privileges. Permissions are fundamental to system security, data protection, and user management, controlling who can access, modify, or run specific resources. In Unix-like systems, permissions are often represented as rwx (read, write, execute) for owner, group, and others. Windows systems use Access Control Lists (ACLs) for more granular control. Proper permission management is crucial for maintaining system integrity, preventing unauthorized access, and ensuring compliance with security policies and regulations. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@Linux File Permissions (Linux Journey)](https://linuxjourney.com/lesson/file-permissions) - [@video@Linux Crash Course - Understanding File Permissions](https://www.youtube.com/watch?v=4N4Q576i3zA) diff --git a/src/data/roadmaps/cyber-security/content/understand-the-basics-and-general-flow-of-deploying-in-the-cloud@XL3FVeGFDhAl_gSol6Tjt.md b/src/data/roadmaps/cyber-security/content/understand-the-basics-and-general-flow-of-deploying-in-the-cloud@XL3FVeGFDhAl_gSol6Tjt.md index 9e4f1980c..b58bc8a16 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-basics-and-general-flow-of-deploying-in-the-cloud@XL3FVeGFDhAl_gSol6Tjt.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-basics-and-general-flow-of-deploying-in-the-cloud@XL3FVeGFDhAl_gSol6Tjt.md @@ -2,7 +2,7 @@ Deploying to the cloud involves the process of making applications, services, or infrastructure available in cloud computing environments. It typically includes selecting a cloud provider (e.g., AWS, Azure, Google Cloud), configuring necessary resources (compute, storage, networking), and using deployment tools to push code or infrastructure definitions. Modern cloud deployments often leverage containerization, orchestration platforms like Kubernetes, and CI/CD pipelines for automated, consistent releases. Key considerations include scalability, security, cost optimization, and maintaining high availability. Cloud-native approaches, such as microservices architecture and serverless computing, are frequently employed to maximize cloud benefits. Effective cloud deployment strategies balance performance, reliability, and cost-efficiency while ensuring compliance with relevant regulations and organizational policies. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Cloud Deployment?](https://www.cognizant.com/us/en/glossary/cloud-deployment) - [@video@Deploying a Website to AWS in Under 1 Minute](https://www.youtube.com/watch?v=goiW0g7A0WE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-infrastructure-as-code@RJctUpvlUJGAdwBNtDSXw.md b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-infrastructure-as-code@RJctUpvlUJGAdwBNtDSXw.md index 1876251f3..6ee487db6 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-infrastructure-as-code@RJctUpvlUJGAdwBNtDSXw.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-infrastructure-as-code@RJctUpvlUJGAdwBNtDSXw.md @@ -2,9 +2,9 @@ Infrastructure as Code (IaC) is a practice of managing and provisioning computing infrastructure through machine-readable definition files, rather than physical hardware configuration or interactive configuration tools. It treats infrastructure configuration as software, allowing it to be version-controlled, tested, and automatically deployed. IaC enables consistent, repeatable environment setups, reduces manual errors, facilitates rapid scaling and disaster recovery, and improves collaboration between development and operations teams. Popular IaC tools include Terraform, AWS CloudFormation, and Ansible, which use declarative or imperative approaches to define infrastructure states. This approach is fundamental to DevOps practices, cloud computing, and the efficient management of complex, dynamic IT environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@roadmap@Visit Dedicated Terraform Roadmap](https://roadmap.sh/terraform) - [@roadmap@Visit Dedicated AWS Roadmap](https://roadmap.sh/aws) - [@article@What is Infrastructure as Code? - IaC Explained - AWS](https://aws.amazon.com/what-is/iac/) -- [@article@What is infrastructure as code (IaC)? - Azure DevOps](https://learn.microsoft.com/en-us/devops/deliver/what-is-infrastructure-as-code) +- [@article@What is infrastructure as code (IaC)? - Azure DevOps](https://learn.microsoft.com/en-us/devops/deliver/what-is-infrastructure-as-code) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-security-in-the-cloud@ThLsXkqLw--uddHz0spCH.md b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-security-in-the-cloud@ThLsXkqLw--uddHz0spCH.md index 0c76f9aad..95e96870e 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-security-in-the-cloud@ThLsXkqLw--uddHz0spCH.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-security-in-the-cloud@ThLsXkqLw--uddHz0spCH.md @@ -2,7 +2,7 @@ Cloud security encompasses the measures, controls, policies, and technologies implemented to protect data, applications, and infrastructure associated with cloud computing environments. It involves securing data both in transit and at rest, managing access controls, ensuring compliance with regulations, and protecting against threats like data breaches, account hijacking, and DDoS attacks. Cloud security strategies often include encryption, multi-factor authentication, regular security audits, and shared responsibility models between cloud providers and customers. While cloud platforms offer advanced security features, organizations must also adapt their security practices to address the unique challenges of cloud environments, such as data sovereignty issues, shared infrastructure risks, and the need for continuous monitoring across distributed systems. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What Is Cloud Security? - Google Cloud](https://cloud.google.com/learn/what-is-cloud-security) - [@article@Cloud Security](https://www.checkpoint.com/cyber-hub/cloud-security/what-is-cloud-security/) diff --git a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-serverless@-83ltMEl3le3yD68OFnTM.md b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-serverless@-83ltMEl3le3yD68OFnTM.md index 169d29f7c..3d649017a 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-concept-of-serverless@-83ltMEl3le3yD68OFnTM.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-concept-of-serverless@-83ltMEl3le3yD68OFnTM.md @@ -2,7 +2,7 @@ Serverless computing is a cloud execution model where the cloud provider dynamically manages server allocation, allowing developers to focus solely on writing code. It offers automatic scaling, pay-per-use billing based on actual compute time, and typically operates through event-driven, stateless functions designed for quick execution. Popular platforms include AWS Lambda, Azure Functions, and Google Cloud Functions. While serverless computing provides reduced operational complexity and cost efficiency, particularly for microservices and event-driven applications, it may face challenges with long-running tasks, cold starts, and potential vendor lock-in. Despite its name, servers are still involved, but their management is abstracted away from the developer, simplifying the deployment and scaling of applications. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Serverless Computing?](https://www.cloudflare.com/en-gb/learning/serverless/what-is-serverless/) - [@video@What is serverless?](https://www.youtube.com/watch?v=vxJobGtqKVM) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-the-definition-of-risk@ggAja18sBUUdCfVsT0vCv.md b/src/data/roadmaps/cyber-security/content/understand-the-definition-of-risk@ggAja18sBUUdCfVsT0vCv.md index 0b473085a..eadf8f009 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-definition-of-risk@ggAja18sBUUdCfVsT0vCv.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-definition-of-risk@ggAja18sBUUdCfVsT0vCv.md @@ -2,15 +2,16 @@ In the context of cybersecurity, risk can be defined as the possibility of damage, loss, or any negative occurrence that is caused by external or internal vulnerabilities, and that may be avoided through preemptive action. Risk is typically characterized by three main components: -- **Threat:** A potential danger to the confidentiality, integrity, or availability of information in your system. Threats can be natural (e.g., floods, earthquakes), human-made (e.g., hackers, malicious software), or due to technical issues (e.g., hardware malfunction). - -- **Vulnerability:** A weakness or flaw in your system that can be exploited by a threat agent to compromise the security of the system. Vulnerabilities can exist in various aspects, such as physical access, network services, or security procedures. - -- **Impact:** The potential amount of damage or loss that can occur to your organization, system, or data due to the successful execution of a threat. Impacts can be financial, reputational, operational, or any other negative consequence that your organization faces as a result of a security breach. +* **Threat:** A potential danger to the confidentiality, integrity, or availability of information in your system. Threats can be natural (e.g., floods, earthquakes), human-made (e.g., hackers, malicious software), or due to technical issues (e.g., hardware malfunction). + +* **Vulnerability:** A weakness or flaw in your system that can be exploited by a threat agent to compromise the security of the system. Vulnerabilities can exist in various aspects, such as physical access, network services, or security procedures. + +* **Impact:** The potential amount of damage or loss that can occur to your organization, system, or data due to the successful execution of a threat. Impacts can be financial, reputational, operational, or any other negative consequence that your organization faces as a result of a security breach. + When evaluating the risk levels of a cybersecurity scenario, it is important to assess the likelihood of a specific threat exploiting a specific vulnerability, as well as the associated impact if such an event occurs. By understanding risks and their components, you can better prioritize your security resources and take appropriate steps to mitigate potential risks. Remember that risk cannot be entirely eliminated, but rather managed to an acceptable level through effective security measures and strategies. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is Cybersecurity Risk?](https://securityscorecard.com/blog/what-is-cybersecurity-risk-factors-to-consider/) -- [@video@Risk Analysis - Know Your Threat Tolerance](https://www.youtube.com/watch?v=xt_Cdtvjbd4) +- [@video@Risk Analysis - Know Your Threat Tolerance](https://www.youtube.com/watch?v=xt_Cdtvjbd4) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-the-differences-between-cloud-and-on-premises@KGjYM4Onr5GQf1Yv9IabI.md b/src/data/roadmaps/cyber-security/content/understand-the-differences-between-cloud-and-on-premises@KGjYM4Onr5GQf1Yv9IabI.md index 51bea3c34..2908e3211 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-differences-between-cloud-and-on-premises@KGjYM4Onr5GQf1Yv9IabI.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-differences-between-cloud-and-on-premises@KGjYM4Onr5GQf1Yv9IabI.md @@ -2,7 +2,7 @@ Cloud computing involves using remote servers hosted on the internet to store, manage, and process data, rather than a local server or personal computer. It offers scalability, flexibility, and often lower upfront costs. Users can access resources on-demand and pay for what they use. Cloud solutions provide easier remote access and automatic updates but may raise data security and compliance concerns. On-premises (or on-prem) refers to installing and running software on computers and servers located within an organization's physical premises. This approach offers more direct control over data and systems, potentially better performance for certain applications, and can address specific regulatory requirements. However, it typically requires higher upfront investment, ongoing maintenance, and may be less scalable than cloud solutions. Many organizations now adopt hybrid approaches, combining both cloud and on-premises solutions to balance their specific needs for control, cost-efficiency, and flexibility. -Learn more of the following resources: +Visit the following resources to learn more: - [@article@What is On-Premises Data Centers vs. Cloud Computing?](https://www.hpe.com/uk/en/what-is/on-premises-vs-cloud.html) - [@video@On Premise vs Cloud : Is Cloud Computing the future?](https://www.youtube.com/watch?v=FuPh2o-GMDA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/understand-the-osi-model@OXUd1UPPsBhNoUGLKZJGV.md b/src/data/roadmaps/cyber-security/content/understand-the-osi-model@OXUd1UPPsBhNoUGLKZJGV.md index 7c2566e3f..7d6df01e9 100644 --- a/src/data/roadmaps/cyber-security/content/understand-the-osi-model@OXUd1UPPsBhNoUGLKZJGV.md +++ b/src/data/roadmaps/cyber-security/content/understand-the-osi-model@OXUd1UPPsBhNoUGLKZJGV.md @@ -2,15 +2,15 @@ The OSI (Open Systems Interconnection) Model is a conceptual framework that describes how data communication occurs between devices in a network. It consists of seven layers, each with specific functions: -1. Physical: Deals with physical transmission media -2. Data Link: Handles error-free transfer between adjacent nodes -3. Network: Manages addressing and routing -4. Transport: Ensures end-to-end data delivery and flow control -5. Session: Establishes, manages, and terminates connections -6. Presentation: Formats and encrypts data for the application layer -7. Application: Provides network services to end-user applications +1. Physical: Deals with physical transmission media +2. Data Link: Handles error-free transfer between adjacent nodes +3. Network: Manages addressing and routing +4. Transport: Ensures end-to-end data delivery and flow control +5. Session: Establishes, manages, and terminates connections +6. Presentation: Formats and encrypts data for the application layer +7. Application: Provides network services to end-user applications -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is OSI Model? - AWS](https://aws.amazon.com/what-is/osi-model/) -- [@video@What is OSI Model?](https://www.youtube.com/watch?v=Ilk7UXzV_Qc) +- [@video@What is OSI Model?](https://www.youtube.com/watch?v=Ilk7UXzV_Qc) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/urlscan@lMiW2q-b72KUl-2S7M6Vb.md b/src/data/roadmaps/cyber-security/content/urlscan@lMiW2q-b72KUl-2S7M6Vb.md index 8a1314f88..3ac6f830c 100644 --- a/src/data/roadmaps/cyber-security/content/urlscan@lMiW2q-b72KUl-2S7M6Vb.md +++ b/src/data/roadmaps/cyber-security/content/urlscan@lMiW2q-b72KUl-2S7M6Vb.md @@ -1,8 +1,8 @@ -# urlscan.io - -urlscan.io is a free service to scan and analyze websites. When a URL is submitted to urlscan.io, an automated process will browse to the URL like a regular user and record the activity that this page navigation creates. This includes the domains and IPs contacted, the resources (JavaScript, CSS, etc) requested from those domains, as well as additional information about the page itself. urlscan.io will take a screenshot of the page, record the DOM content, JavaScript global variables, cookies created by the page, and a myriad of other observations. If the site is targeting the users one of the more than 900 brands tracked by urlscan.io, it will be highlighted as potentially malicious in the scan results. - -Visit the following resources to learn more: - -- [@official@urlscan.io](https://urlscan.io/) -- [@video@Cybersecurity Tool for Beginner Security Analysts - URLScan](https://www.youtube.com/watch?v=tA60bJstrQQ) +# urlscan.io + +[urlscan.io](http://urlscan.io) is a free service to scan and analyze websites. When a URL is submitted to [urlscan.io](http://urlscan.io), an automated process will browse to the URL like a regular user and record the activity that this page navigation creates. This includes the domains and IPs contacted, the resources (JavaScript, CSS, etc) requested from those domains, as well as additional information about the page itself. [urlscan.io](http://urlscan.io) will take a screenshot of the page, record the DOM content, JavaScript global variables, cookies created by the page, and a myriad of other observations. If the site is targeting the users one of the more than 900 brands tracked by [urlscan.io](http://urlscan.io), it will be highlighted as potentially malicious in the scan results. + +Visit the following resources to learn more: + +- [@official@urlscan.io](https://urlscan.io/) +- [@video@Cybersecurity Tool for Beginner Security Analysts - URLScan](https://www.youtube.com/watch?v=tA60bJstrQQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/virtualbox@vGVFhZXYOZOy4qFpLLbxp.md b/src/data/roadmaps/cyber-security/content/virtualbox@vGVFhZXYOZOy4qFpLLbxp.md index 84d7774f8..8f8d41fb6 100644 --- a/src/data/roadmaps/cyber-security/content/virtualbox@vGVFhZXYOZOy4qFpLLbxp.md +++ b/src/data/roadmaps/cyber-security/content/virtualbox@vGVFhZXYOZOy4qFpLLbxp.md @@ -2,8 +2,8 @@ VirtualBox is a free, open-source virtualization software developed by Oracle. It allows users to run multiple operating systems simultaneously on a single physical machine. VirtualBox supports a wide range of guest operating systems, including various versions of Windows, Linux, macOS, and more. It provides features like snapshots for easy system state preservation, shared folders for file exchange between host and guest systems, and USB device support. VirtualBox is popular among developers, IT professionals, and enthusiasts for testing software, running legacy applications, and experimenting with different operating systems without the need for separate physical hardware. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@VirtualBox](https://www.virtualbox.org/) - [@official@VirtualBox Documentation](https://www.virtualbox.org/wiki/Documentation) -- [@video@How to use VirtualBox](https://www.youtube.com/watch?v=nvdnQX9UkMY) +- [@video@How to use VirtualBox](https://www.youtube.com/watch?v=nvdnQX9UkMY) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/virustotal@rxzcAzHjzIc9lkWSw0fef.md b/src/data/roadmaps/cyber-security/content/virustotal@rxzcAzHjzIc9lkWSw0fef.md index 852525a76..fcf2fd0c6 100644 --- a/src/data/roadmaps/cyber-security/content/virustotal@rxzcAzHjzIc9lkWSw0fef.md +++ b/src/data/roadmaps/cyber-security/content/virustotal@rxzcAzHjzIc9lkWSw0fef.md @@ -1,10 +1,10 @@ -# VirusTotal - -VirusTotal's main feature is multi-scanning using over 70 antivirus scanners to generate a cumulative report on whether a file is malicious. It also stores file hashes, eliminating the need to rescan previously uploaded files. Researchers can comment in the community, sharing their analysis and insights into malware for others to benefit from. VirusTotal's aggregated data comes from various antivirus engines, website scanners, file and URL analysis tools, and user contributions. These tools serve diverse purposes, including heuristic engines, known-bad signatures, metadata extraction, and identification of malicious signals. Additionally, VirusTotal offers services to search by file hash, IP address, and URL, which are also scanned. For more comprehensive features, VirusTotal provides Premium services such as Intelligence & Hunting. - -Visit the following resources to learn more: - -- [@official@VirusTotal](https://www.virustotal.com) -- [@official@How VirusTotal Works](https://docs.virustotal.com/docs/how-it-works) -- [@article@@CISA's definition of VirusTotal](https://www.cisa.gov/resources-tools/services/virustotal) -- [@video@Walkthrough VirusTotal Intelligence Interface](https://www.youtube.com/watch?v=WoHVM8pCfsQ) +# VirusTotal + +VirusTotal's main feature is multi-scanning using over 70 antivirus scanners to generate a cumulative report on whether a file is malicious. It also stores file hashes, eliminating the need to rescan previously uploaded files. Researchers can comment in the community, sharing their analysis and insights into malware for others to benefit from. VirusTotal's aggregated data comes from various antivirus engines, website scanners, file and URL analysis tools, and user contributions. These tools serve diverse purposes, including heuristic engines, known-bad signatures, metadata extraction, and identification of malicious signals. Additionally, VirusTotal offers services to search by file hash, IP address, and URL, which are also scanned. For more comprehensive features, VirusTotal provides Premium services such as Intelligence & Hunting. + +Visit the following resources to learn more: + +- [@official@VirusTotal](https://www.virustotal.com) +- [@official@How VirusTotal Works](https://docs.virustotal.com/docs/how-it-works) +- [@article@@CISA's definition of VirusTotal](https://www.cisa.gov/resources-tools/services/virustotal) +- [@video@Walkthrough VirusTotal Intelligence Interface](https://www.youtube.com/watch?v=WoHVM8pCfsQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/vlan@d5Cv3EXf6OXW19yPJ4x6e.md b/src/data/roadmaps/cyber-security/content/vlan@d5Cv3EXf6OXW19yPJ4x6e.md index ed6d41c2d..3daf0c897 100644 --- a/src/data/roadmaps/cyber-security/content/vlan@d5Cv3EXf6OXW19yPJ4x6e.md +++ b/src/data/roadmaps/cyber-security/content/vlan@d5Cv3EXf6OXW19yPJ4x6e.md @@ -2,7 +2,7 @@ A Virtual Local Area Network (VLAN) is a logical segmentation of a physical network, allowing multiple isolated networks to exist on the same physical infrastructure. VLANs group devices together based on function, department, or application, regardless of their physical location. They improve network performance by reducing broadcast traffic, enhance security by isolating sensitive systems, and provide flexibility in network design and management. VLANs are configured on network switches using IEEE 802.1Q standard, which adds tags to Ethernet frames to identify VLAN membership. This technology is crucial for efficient network administration in large enterprises, data centers, and complex network environments. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a VLAN?](https://www.solarwinds.com/resources/it-glossary/vlan) - [@video@VLAN Explained](https://www.youtube.com/watch?v=jC6MJTh9fRE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/vm@251sxqoHggQ4sZ676iX5w.md b/src/data/roadmaps/cyber-security/content/vm@251sxqoHggQ4sZ676iX5w.md index 79e442616..2004b8c46 100644 --- a/src/data/roadmaps/cyber-security/content/vm@251sxqoHggQ4sZ676iX5w.md +++ b/src/data/roadmaps/cyber-security/content/vm@251sxqoHggQ4sZ676iX5w.md @@ -2,7 +2,7 @@ A Virtual Machine (VM) is a software-based emulation of a physical computer. It runs an operating system and applications, isolated from the underlying hardware. VMs allow multiple "guest" operating systems to run on a single physical "host" machine, each with its own allocated virtual resources (CPU, memory, storage). This technology enables efficient hardware utilization, easier system administration, and improved security through isolation. VMs are widely used in cloud computing, software development, testing environments, and for running legacy applications. Hypervisors, such as VMware vSphere or Microsoft Hyper-V, manage the creation and operation of VMs on physical hardware. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Virtual Machine and how does it work?](https://azure.microsoft.com/en-gb/resources/cloud-computing-dictionary/what-is-a-virtual-machine) - [@video@Virtualization Explained](https://www.youtube.com/watch?v=UBVVq-xz5i0) diff --git a/src/data/roadmaps/cyber-security/content/vm@ZTC5bLWEIQcdmowc7sk_E.md b/src/data/roadmaps/cyber-security/content/vm@ZTC5bLWEIQcdmowc7sk_E.md index 79e442616..2004b8c46 100644 --- a/src/data/roadmaps/cyber-security/content/vm@ZTC5bLWEIQcdmowc7sk_E.md +++ b/src/data/roadmaps/cyber-security/content/vm@ZTC5bLWEIQcdmowc7sk_E.md @@ -2,7 +2,7 @@ A Virtual Machine (VM) is a software-based emulation of a physical computer. It runs an operating system and applications, isolated from the underlying hardware. VMs allow multiple "guest" operating systems to run on a single physical "host" machine, each with its own allocated virtual resources (CPU, memory, storage). This technology enables efficient hardware utilization, easier system administration, and improved security through isolation. VMs are widely used in cloud computing, software development, testing environments, and for running legacy applications. Hypervisors, such as VMware vSphere or Microsoft Hyper-V, manage the creation and operation of VMs on physical hardware. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a Virtual Machine and how does it work?](https://azure.microsoft.com/en-gb/resources/cloud-computing-dictionary/what-is-a-virtual-machine) - [@video@Virtualization Explained](https://www.youtube.com/watch?v=UBVVq-xz5i0) diff --git a/src/data/roadmaps/cyber-security/content/vmware@AjywuCZdBi9atGUbetlUL.md b/src/data/roadmaps/cyber-security/content/vmware@AjywuCZdBi9atGUbetlUL.md index 1b3065954..e2d362f50 100644 --- a/src/data/roadmaps/cyber-security/content/vmware@AjywuCZdBi9atGUbetlUL.md +++ b/src/data/roadmaps/cyber-security/content/vmware@AjywuCZdBi9atGUbetlUL.md @@ -2,7 +2,7 @@ VMware is a leading provider of virtualization and cloud computing software. Its core technology allows multiple virtual machines (VMs) to run on a single physical server, each with its own operating system and resources. VMware's product suite includes tools for server virtualization, desktop virtualization, cloud management, and network virtualization. Key products like vSphere and ESXi enable efficient resource utilization, improved scalability, and simplified IT management. VMware's solutions are widely used in enterprise environments for consolidating servers, enabling cloud computing, facilitating disaster recovery, and supporting development and testing environments. The company's technology plays a crucial role in modern data center operations and hybrid cloud strategies. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@VMWare](https://www.vmware.com/) - [@video@What is VMWare](https://www.youtube.com/watch?v=zPNCp9AV-vA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/vpn@gTozEpxJeG1NTkVBHH-05.md b/src/data/roadmaps/cyber-security/content/vpn@gTozEpxJeG1NTkVBHH-05.md index e76080637..781e157c5 100644 --- a/src/data/roadmaps/cyber-security/content/vpn@gTozEpxJeG1NTkVBHH-05.md +++ b/src/data/roadmaps/cyber-security/content/vpn@gTozEpxJeG1NTkVBHH-05.md @@ -6,4 +6,4 @@ Visit the following resources to learn more: - [@article@What is a VPN?](https://azure.microsoft.com/en-us/resources/cloud-computing-dictionary/what-is-vpn) - [@video@VPN (Virtual Private Network) Explained](https://www.youtube.com/watch?v=R-JUOpCgTZc) -- [@video@Virtual Private Networks - Professor Messer](https://www.youtube.com/watch?v=YFyt8aY8PfI) +- [@video@Virtual Private Networks - Professor Messer](https://www.youtube.com/watch?v=YFyt8aY8PfI) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/vulnhub@W94wY_otBuvVW_-EFlKA6.md b/src/data/roadmaps/cyber-security/content/vulnhub@W94wY_otBuvVW_-EFlKA6.md index eb6e1e640..ed2d20357 100644 --- a/src/data/roadmaps/cyber-security/content/vulnhub@W94wY_otBuvVW_-EFlKA6.md +++ b/src/data/roadmaps/cyber-security/content/vulnhub@W94wY_otBuvVW_-EFlKA6.md @@ -2,7 +2,7 @@ VulnHub is an online platform that provides a collection of intentionally vulnerable virtual machines for cybersecurity enthusiasts, penetration testers, and ethical hackers to practice their skills. These virtual machines simulate various real-world scenarios with different vulnerabilities and security misconfigurations. Users can download and run these VMs in their own environments, attempting to exploit vulnerabilities and gain root access. VulnHub offers a hands-on approach to learning about cybersecurity, allowing users to explore different attack vectors, practice exploitation techniques, and understand common security flaws in a safe, legal environment. It's a valuable resource for both beginners and experienced professionals to enhance their offensive security skills and prepare for certifications. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Vulnhub](https://www.vulnhub.com/) - [@article@A Beginners Guide to Vulnhub](https://medium.com/@gavinloughridge/a-beginners-guide-to-vulnhub-part-1-52b06466635d) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/wadcoms@Rnpx7VkhrBkSQTni6UuTR.md b/src/data/roadmaps/cyber-security/content/wadcoms@Rnpx7VkhrBkSQTni6UuTR.md index c03fae1d0..e2a977342 100644 --- a/src/data/roadmaps/cyber-security/content/wadcoms@Rnpx7VkhrBkSQTni6UuTR.md +++ b/src/data/roadmaps/cyber-security/content/wadcoms@Rnpx7VkhrBkSQTni6UuTR.md @@ -2,7 +2,7 @@ WADcoms (Windows/Active Directory Commands) is an interactive cheat sheet, containing a curated list of offensive security tools and their respective commands, to be used against Windows/AD environments. Just select what information you currently have related to the Windows machine (passwords, usernames, services, etc.), and it will display a list of tools you can try against the machine, along with a template command for easy copy/pasting -Learn more from the following resources: +Visit the following resources to learn more: - [@opensource@WADComs/WADComs.github.io](https://wadcoms.github.io/) -- [@article@WADComs: Windows/Active Directory Interactive Cheat Sheet](https://john-woodman.com/research/wadcoms/) +- [@article@WADComs: Windows/Active Directory Interactive Cheat Sheet](https://john-woodman.com/research/wadcoms/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/wan@vCkTJMkDXcQmwsmeNUAX5.md b/src/data/roadmaps/cyber-security/content/wan@vCkTJMkDXcQmwsmeNUAX5.md index 087c36c28..2d49eba53 100644 --- a/src/data/roadmaps/cyber-security/content/wan@vCkTJMkDXcQmwsmeNUAX5.md +++ b/src/data/roadmaps/cyber-security/content/wan@vCkTJMkDXcQmwsmeNUAX5.md @@ -2,7 +2,7 @@ A Wide Area Network (WAN) is a telecommunications network that extends over a large geographical area, connecting multiple smaller networks like LANs across cities, countries, or continents. WANs use technologies such as leased lines, satellites, cellular networks, or the internet to facilitate long-distance communication. They enable organizations to share data and resources across dispersed locations, supporting remote offices and global operations. WANs typically involve slower transmission speeds compared to LANs due to longer distances and varied connection types. Key considerations for WANs include bandwidth management, security protocols like VPNs, and optimizing performance across diverse network conditions. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@What is a WAN?](https://www.cloudflare.com/en-gb/learning/network-layer/what-is-a-wan/) - [@video@WAN...it's not the internet!](https://www.youtube.com/watch?v=xPi4uZu4uF0) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/watering-hole-attack@dcvuKHq0nHgHLcLwtl4IJ.md b/src/data/roadmaps/cyber-security/content/watering-hole-attack@dcvuKHq0nHgHLcLwtl4IJ.md index 58dcd6ab2..2f320510f 100644 --- a/src/data/roadmaps/cyber-security/content/watering-hole-attack@dcvuKHq0nHgHLcLwtl4IJ.md +++ b/src/data/roadmaps/cyber-security/content/watering-hole-attack@dcvuKHq0nHgHLcLwtl4IJ.md @@ -1,8 +1,8 @@ -# Watering Hole Attack - -Watering Hole Attack is a type of cyberattack where the attacker targets a specific group of users by compromising a website or online resource that they are known to frequently visit. The name "watering hole" comes from the idea of predators waiting by a water source to attack prey, similar to how attackers wait for their targets to visit a compromised site. - -Visit the following resources to learn more: - -- [@article@What is a Watering Hole Attack?](https://www.techtarget.com/searchsecurity/definition/watering-hole-attack) -- [@video@Watering Hole Attacks](https://www.youtube.com/watch?v=uBoVWqkfZjk) +# Watering Hole Attack + +Watering Hole Attack is a type of cyberattack where the attacker targets a specific group of users by compromising a website or online resource that they are known to frequently visit. The name "watering hole" comes from the idea of predators waiting by a water source to attack prey, similar to how attackers wait for their targets to visit a compromised site. + +Visit the following resources to learn more: + +- [@article@What is a Watering Hole Attack?](https://www.techtarget.com/searchsecurity/definition/watering-hole-attack) +- [@video@Watering Hole Attacks](https://www.youtube.com/watch?v=uBoVWqkfZjk) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/web-based-attacks-and-owasp10@fyOYVqiBqyKC4aqc6-y0q.md b/src/data/roadmaps/cyber-security/content/web-based-attacks-and-owasp10@fyOYVqiBqyKC4aqc6-y0q.md index b27f03d70..ec36dfe92 100644 --- a/src/data/roadmaps/cyber-security/content/web-based-attacks-and-owasp10@fyOYVqiBqyKC4aqc6-y0q.md +++ b/src/data/roadmaps/cyber-security/content/web-based-attacks-and-owasp10@fyOYVqiBqyKC4aqc6-y0q.md @@ -5,4 +5,4 @@ The OWASP (Open Web Application Security Project) Top 10 is a regularly updated Visit the following resources to learn more: - [@official@OWASP Top Ten](https://owasp.org/www-project-top-ten/) -- [@video@OWASP Top Ten](https://youtube.com/playlist?list=PLyqga7AXMtPOguwtCCXGZUKvd2CDCmUgQ&si=ZYRbcDSRvqTOnDOo) +- [@video@OWASP Top Ten](https://youtube.com/playlist?list=PLyqga7AXMtPOguwtCCXGZUKvd2CDCmUgQ&si=ZYRbcDSRvqTOnDOo) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/whaling@KSwl6sX2W47vUmytpm8LH.md b/src/data/roadmaps/cyber-security/content/whaling@KSwl6sX2W47vUmytpm8LH.md index 1a0d42825..93203621b 100644 --- a/src/data/roadmaps/cyber-security/content/whaling@KSwl6sX2W47vUmytpm8LH.md +++ b/src/data/roadmaps/cyber-security/content/whaling@KSwl6sX2W47vUmytpm8LH.md @@ -1,8 +1,8 @@ -# Whaling - -Whaling is a specific type of phishing attack that targets high-profile individuals within an organization, such as executives, CEOs, or other senior leaders. The term "whaling" is derived from the idea of hunting large "whales," as opposed to the more common "phishing," which targets a broader range of users. Whaling attacks are highly sophisticated and often involve personalized emails or communications that appear legitimate, making them difficult to detect. - -Visit the following resources to learn more: - -- [@article@What is a Whaling Attack?](https://usa.kaspersky.com/resource-center/definitions/what-is-a-whaling-attack) -- [@video@What is a whaling attack and how to stay protected](https://www.youtube.com/watch?v=jQONycdUOAA) +# Whaling + +Whaling is a specific type of phishing attack that targets high-profile individuals within an organization, such as executives, CEOs, or other senior leaders. The term "whaling" is derived from the idea of hunting large "whales," as opposed to the more common "phishing," which targets a broader range of users. Whaling attacks are highly sophisticated and often involve personalized emails or communications that appear legitimate, making them difficult to detect. + +Visit the following resources to learn more: + +- [@article@What is a Whaling Attack?](https://usa.kaspersky.com/resource-center/definitions/what-is-a-whaling-attack) +- [@video@What is a whaling attack and how to stay protected](https://www.youtube.com/watch?v=jQONycdUOAA) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/whishing@M65fCl72qlF0VTbGNT6du.md b/src/data/roadmaps/cyber-security/content/whishing@M65fCl72qlF0VTbGNT6du.md index 45a064d1d..8e72499f9 100644 --- a/src/data/roadmaps/cyber-security/content/whishing@M65fCl72qlF0VTbGNT6du.md +++ b/src/data/roadmaps/cyber-security/content/whishing@M65fCl72qlF0VTbGNT6du.md @@ -2,6 +2,6 @@ Whishing, a portmanteau of "wireless" and "phishing," is a cyber attack method that targets users of wireless networks, particularly public Wi-Fi hotspots. Attackers set up rogue wireless access points or compromise existing ones to intercept network traffic or redirect users to malicious websites. These fake hotspots often mimic legitimate ones, tricking users into connecting and potentially exposing their sensitive information. Whishing attacks can lead to theft of login credentials, financial data, or personal information. To protect against whishing, users are advised to avoid sensitive transactions on public Wi-Fi, use VPNs, verify network authenticity, and ensure HTTPS connections when browsing. -Learn more from the following resources: +Visit the following resources to learn more: -- [@article@Wi-fi Phishing Explained](https://it-explained.com/words/wi-fi-phishing-explained-explained) +- [@article@Wi-fi Phishing Explained](https://it-explained.com/words/wi-fi-phishing-explained-explained) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/whois@-RnlvUltJ9IDtH0HEnMbN.md b/src/data/roadmaps/cyber-security/content/whois@-RnlvUltJ9IDtH0HEnMbN.md index c33115e38..e83c69fc3 100644 --- a/src/data/roadmaps/cyber-security/content/whois@-RnlvUltJ9IDtH0HEnMbN.md +++ b/src/data/roadmaps/cyber-security/content/whois@-RnlvUltJ9IDtH0HEnMbN.md @@ -2,8 +2,8 @@ WHOIS is a query and response protocol used to retrieve information about registered domain names, IP addresses, and autonomous systems on the Internet. It provides details such as the domain registrar, registration date, expiration date, and contact information for the domain owner (although this may be limited due to privacy protection). WHOIS databases are maintained by regional Internet registries and domain registrars. The protocol is commonly used by network administrators, cybersecurity professionals, and researchers for tasks like verifying domain ownership, investigating potential cyber threats, and gathering information for legal or business purposes. However, with the implementation of GDPR and other privacy regulations, some WHOIS information has become more restricted. -Learn more from the following resources: +Visit the following resources to learn more: - [@article@How to use the whois command on Linux](https://www.howtogeek.com/680086/how-to-use-the-whois-command-on-linux/) - [@article@Whois lookup](https://www.whois.com/whois/) -- [@video@Passive Reconnaissance - Whois Lookup Tutorial](https://www.youtube.com/watch?v=12MITs5KK40) +- [@video@Passive Reconnaissance - Whois Lookup Tutorial](https://www.youtube.com/watch?v=12MITs5KK40) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/wifi@fUBNKHNPXbemRYrnzH3VT.md b/src/data/roadmaps/cyber-security/content/wifi@fUBNKHNPXbemRYrnzH3VT.md index fb67f901b..984ae4dc1 100644 --- a/src/data/roadmaps/cyber-security/content/wifi@fUBNKHNPXbemRYrnzH3VT.md +++ b/src/data/roadmaps/cyber-security/content/wifi@fUBNKHNPXbemRYrnzH3VT.md @@ -6,4 +6,4 @@ Visit the following resources to learn more: - [@article@Wireless Networks - Howstuffworks](https://computer.howstuffworks.com/wireless-network.htm) - [@video@That's How Wi-Fi Works](https://youtu.be/hePLDVbULZc) -- [@video@Wireless Networking Explained](https://www.youtube.com/watch?v=Uz-RTurph3c) +- [@video@Wireless Networking Explained](https://www.youtube.com/watch?v=Uz-RTurph3c) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/windows@BNUKEQ4YpZmIhSPQdkHgU.md b/src/data/roadmaps/cyber-security/content/windows@BNUKEQ4YpZmIhSPQdkHgU.md index f913e4c3b..fcad84004 100644 --- a/src/data/roadmaps/cyber-security/content/windows@BNUKEQ4YpZmIhSPQdkHgU.md +++ b/src/data/roadmaps/cyber-security/content/windows@BNUKEQ4YpZmIhSPQdkHgU.md @@ -2,8 +2,8 @@ Windows is Microsoft's widely-used operating system for personal computers and servers. It provides a graphical user interface, multitasking capabilities, and supports a vast array of software applications and hardware devices. Windows offers features like file management, user account control, built-in security tools, and regular updates. It comes in various editions for different use cases, from home computing to enterprise environments. Windows integrates with Microsoft's cloud services and includes tools for productivity, gaming, and system management. Its widespread adoption makes it a primary target for both software developers and cybersecurity threats, necessitating regular security updates and patches. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Windows Security](https://learn.microsoft.com/en-us/windows/security/) - [@video@Windows 11 Full Tutorial - A 2 Hour Course to Learn and Master Windows 11](https://www.youtube.com/watch?v=UKn-r3X2CLk) -- [@feed@Explore top posts about Windows](https://app.daily.dev/tags/windows?ref=roadmapsh) +- [@feed@Explore top posts about Windows](https://app.daily.dev/tags/windows?ref=roadmapsh) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/winhex@gNan93Mg9Ym2AF3Q2gqoi.md b/src/data/roadmaps/cyber-security/content/winhex@gNan93Mg9Ym2AF3Q2gqoi.md index a3c638324..76f9c1985 100644 --- a/src/data/roadmaps/cyber-security/content/winhex@gNan93Mg9Ym2AF3Q2gqoi.md +++ b/src/data/roadmaps/cyber-security/content/winhex@gNan93Mg9Ym2AF3Q2gqoi.md @@ -2,7 +2,7 @@ WinHex is a universal hexadecimal editor and disk editor primarily used for computer forensics and data recovery. It allows users to examine and edit the raw content of files, disks, or memory in hexadecimal and ASCII formats. WinHex provides advanced features for data analysis, including disk cloning, secure data erasure, and file system reconstruction. It supports various file systems and can work with physical disks, disk images, and RAM. Forensic experts use WinHex to investigate digital evidence, recover deleted files, and analyze data structures. While powerful, it requires careful use as it can directly manipulate raw data, potentially causing unintended changes to critical system files or data. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@WinHex](https://x-ways.net/winhex/) - [@article@What is WinHex?](https://www.lenovo.com/in/en/glossary/winhex/) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/wireshark@Sm9bxKUElINHND8FdZ5f2.md b/src/data/roadmaps/cyber-security/content/wireshark@Sm9bxKUElINHND8FdZ5f2.md index 9d3ff8ce9..fb47b33b4 100644 --- a/src/data/roadmaps/cyber-security/content/wireshark@Sm9bxKUElINHND8FdZ5f2.md +++ b/src/data/roadmaps/cyber-security/content/wireshark@Sm9bxKUElINHND8FdZ5f2.md @@ -2,7 +2,7 @@ Wireshark is a powerful, open-source network protocol analyzer used for real-time packet capture and analysis. It allows users to examine network traffic at a microscopic level, capturing and interactively browsing the traffic running on a computer network. Wireshark can decode a wide variety of network protocols, making it an essential tool for network troubleshooting, security analysis, software and protocol development, and education. It provides a user-friendly graphical interface and offers features like deep inspection of hundreds of protocols, live capture and offline analysis, and the ability to read/write many different capture file formats. Wireshark is widely used by IT professionals, security experts, and developers for diagnosing network issues and understanding network communication. -Learn more from the following resources: +Visit the following resources to learn more: - [@official@Wireshark](https://www.wireshark.org/) - [@article@How to Use Wireshark: Comprehensive Tutorial + Tips](https://www.varonis.com/blog/how-to-use-wireshark) diff --git a/src/data/roadmaps/cyber-security/content/wlan@QCVYF1rmPsMVtklBNDNaB.md b/src/data/roadmaps/cyber-security/content/wlan@QCVYF1rmPsMVtklBNDNaB.md index 015e66129..9a92327f0 100644 --- a/src/data/roadmaps/cyber-security/content/wlan@QCVYF1rmPsMVtklBNDNaB.md +++ b/src/data/roadmaps/cyber-security/content/wlan@QCVYF1rmPsMVtklBNDNaB.md @@ -6,4 +6,4 @@ Visit the following resources to learn more: - [@article@What Is a Wireless LAN?](https://www.cisco.com/c/en/us/products/wireless/wireless-lan.html) - [@video@Wireless Networking Explained | Cisco CCNA 200-301](https://www.youtube.com/watch?v=Uz-RTurph3c) -- [@video@Wireless Technologies](https://www.youtube.com/watch?v=_VwpcLiBkAQ) +- [@video@Wireless Technologies](https://www.youtube.com/watch?v=_VwpcLiBkAQ) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/xss@2jo1r9O_rCnDwRv1_4Wo-.md b/src/data/roadmaps/cyber-security/content/xss@2jo1r9O_rCnDwRv1_4Wo-.md index 554311a88..1554e0092 100644 --- a/src/data/roadmaps/cyber-security/content/xss@2jo1r9O_rCnDwRv1_4Wo-.md +++ b/src/data/roadmaps/cyber-security/content/xss@2jo1r9O_rCnDwRv1_4Wo-.md @@ -5,5 +5,5 @@ Cross-Site Scripting (XSS) is a common web application vulnerability where attac Visit the following resources to learn more: - [@article@Cross Site Scripting (XSS) - OWASP](https://owasp.org/www-community/attacks/xss/) -= [@article@Cross Site Scripting Prevention Cheat Sheet](https://cheatsheetseries.owasp.org/cheatsheets/Cross_Site_Scripting_Prevention_Cheat_Sheet.html) -- [@video@Cross-site Scripting](https://www.youtube.com/watch?v=PKgw0CLZIhE) +- [@article@Cross Site Scripting Prevention Cheat Sheet](https://cheatsheetseries.owasp.org/cheatsheets/Cross_Site_Scripting_Prevention_Cheat_Sheet.html) +- [@video@Cross-site Scripting](https://www.youtube.com/watch?v=PKgw0CLZIhE) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/zero-day@v9njgIxZyabJZ5iND3JGc.md b/src/data/roadmaps/cyber-security/content/zero-day@v9njgIxZyabJZ5iND3JGc.md index fa2951670..b94f6bf6a 100644 --- a/src/data/roadmaps/cyber-security/content/zero-day@v9njgIxZyabJZ5iND3JGc.md +++ b/src/data/roadmaps/cyber-security/content/zero-day@v9njgIxZyabJZ5iND3JGc.md @@ -2,7 +2,7 @@ A zero-day vulnerability is a software security flaw unknown to the vendor and its developers, leaving it unpatched and potentially exploitable. When attackers discover and exploit such a vulnerability before the software creator can develop and release a fix, it's called a zero-day attack. These attacks are particularly dangerous because they take advantage of the window between discovery and patching, during which systems are highly vulnerable. Zero-days are prized in cybercriminal circles and can be used for various malicious purposes, including data theft, system compromise, or as part of larger attack campaigns. Defending against zero-days often requires proactive security measures, as traditional signature-based defenses are ineffective against unknown threats. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is a Zero Day Threat?](https://www.youtube.com/watch?v=w5MV1Jeo76g) - [@article@What is a Zero-day Attack?](https://www.kaspersky.com/resource-center/definitions/zero-day-exploit) +- [@video@What is a Zero Day Threat?](https://www.youtube.com/watch?v=w5MV1Jeo76g) \ No newline at end of file diff --git a/src/data/roadmaps/cyber-security/content/zero-day@zqRaMmqcLfx400kJ-h0LO.md b/src/data/roadmaps/cyber-security/content/zero-day@zqRaMmqcLfx400kJ-h0LO.md index fa2951670..b94f6bf6a 100644 --- a/src/data/roadmaps/cyber-security/content/zero-day@zqRaMmqcLfx400kJ-h0LO.md +++ b/src/data/roadmaps/cyber-security/content/zero-day@zqRaMmqcLfx400kJ-h0LO.md @@ -2,7 +2,7 @@ A zero-day vulnerability is a software security flaw unknown to the vendor and its developers, leaving it unpatched and potentially exploitable. When attackers discover and exploit such a vulnerability before the software creator can develop and release a fix, it's called a zero-day attack. These attacks are particularly dangerous because they take advantage of the window between discovery and patching, during which systems are highly vulnerable. Zero-days are prized in cybercriminal circles and can be used for various malicious purposes, including data theft, system compromise, or as part of larger attack campaigns. Defending against zero-days often requires proactive security measures, as traditional signature-based defenses are ineffective against unknown threats. -Learn more from the following resources: +Visit the following resources to learn more: -- [@video@What is a Zero Day Threat?](https://www.youtube.com/watch?v=w5MV1Jeo76g) - [@article@What is a Zero-day Attack?](https://www.kaspersky.com/resource-center/definitions/zero-day-exploit) +- [@video@What is a Zero Day Threat?](https://www.youtube.com/watch?v=w5MV1Jeo76g) \ No newline at end of file