STEPHEN
950 posts


🔑 Final Takeaway: SABSA Helps You Build Security That Works for the Business
✔️ Focuses on real risks, not just compliance checkboxes
✔️ Bridges the gap between business leaders & security teams
✔️ Integrates with existing security & enterprise architecture frameworks
✔️ Scales for any industry, from banking to cloud security
📌 Bookmark this thread if you want to build business-aligned security architecture that actually makes sense!
💬 Have you worked with SABSA? What’s your take on risk-driven security frameworks? Let’s discuss! 👇
English

📌 SABSA: The Security Framework You’ve Probably Never Heard Of (But Should Know)
Everyone talks about NIST, ISO 27001, and CIS Controls, but SABSA is one of the most powerful (and underrated) security architecture frameworks out there.
Why is it important, and why haven’t more cybersecurity pros heard of it? Let’s break it down. 🧵
English

🔍 How to Investigate a Phishing Email Like a Pro
You just got a sketchy email. It looks urgent, maybe even legit. One wrong click could mean stolen credentials, malware, or a full-blown security breach.
Before you panic (or click anything), here’s how to break down a phishing email and spot the red flags like a security pro.
🧵
English

That's a wrap!
If you enjoyed this thread:
1. Follow me @heyDhavall for more of these
2. RT the tweet below to share this thread with your audience
x.com/heyDhavall/sta…
Dhaval Makwana@heyDhavall
RIP mobile app developers. In 90 seconds, AI can generate a fully functional app. Here's how it works (no programming required):
English

Easily run an offensive security / pentesting LLM locally:
1. Download @lmstudio
2. Pick one of the @WhiteRabbitNeos models (I tried WhiteRabbitNeo-13B-GGUF but there are others eg distilled into Qwen)
3. no crime? unless?

English

Looking for more posts like this?
Follow me @thisguyknowsai and you'll get 1x post every single day.
And don't forget to repost the thread to reach more.
Thanks for checking!
Brady Long@thisguyknowsai
I made Claude my financial coach. Now it helps me budget, invest, and grow my income. Here are 10 prompts you can use today ↓
English
STEPHEN retweetledi

Final giveaway of the year🎁:
4️⃣Hand-On Web Exploitation (Course Only hhub.io/2024holidays)
3️⃣Shodan Codes
2️⃣Caido licenses
1️⃣Hands-On Web Exploitation (Certificate+Course Bundle)
To enter drop a 🫶🏼and RT

English

5 Open-Source projects to explore or revisit, each playing a key role in network security, identity management, SIEM/SOC, and Cyber Threat Intelligence:
1. Keycloak (IAM) – Open-source Identity and Access Management solution.
keycloak.org
2. PacketFence (NAC) – Open-source network access control (NAC) solution.
Learn more:
packetfence.org
3. Wazuh (SIEM/XDR) – Comprehensive open-source security platform.
Discover: Wazuh
wazuh.com
4. OPNsense (Firewall - Routing) – Open-source firewall and routing platform.
Check it out: OPNsense
opnsense.org
5. OpenCTI (CTI) – Open-source Cyber Threat Intelligence platform.
Find more: OpenCTI
github.com/OpenCTI-Platfo…
Connected @khalilApriday for more free knowledge & resources.
English

40 Key important concepts/tools/services to start for DevSecOps Journey (with Roadmap) 🔥🚀
1. Linux Fundamentals
2. Git
3. Shell Scripting
4. CI/CD Pipeline
5. Docker
6. Kubernetes
7. Ansible
8. Terraform
9. Infrastructure as Code (IaC)
10. Cloud Security Fundamentals
11. AWS Security
12. Azure Security
13. GCP Security
14. IAM
15. Cloud Monitoring
16. Vulnerability Scanning
17. Security Information and Event Management (SIEM)
18. Penetration Testing
19. API Security
20. OWASP Top 10
21. Secure Coding Practices
22. Threat Modeling
23. Incident Response
24. Disaster Recovery
25. Secrets Management
26. Compliance (PCI DSS, HIPAA, etc.)
27. Security Automation
28. Infrastructure Automation
29. DevOps Fundamentals
30. Agile Methodology
31. Version Control System (VCS)
32. Infrastructure provisioning tools
33. Configuration Management tools
34. Containerization technologies
35. Orchestration tools
36. Infrastructure monitoring tools
37. Logging and aggregation tools
38. Infrastructure automation tools
39. Communication and collaboration tools
40. Continuous Integration/Continuous Delivery (CI/CD) tools
Technical Roadmap : x.com/techyoutbe/sta…
English

The (Anti-)EDR Compendium
EDR functionality and bypasses in 2024, with focus on undetected shellcode loader.
blog.deeb.ch/posts/how-edr-…
English

🛡️Security Mind Maps🛡️
📍OWASP API TOP 10
🔗xmind.works/share/gJnF6CP1…
📍Cyber Security Road Map
🔗xmind.works/share/N2eBBiEh…
📍Reset Password Feature Security Testing
🔗xmind.works/share/UYJM9L9t…
📍2FA Feature Security Testing
🔗xmind.works/share/ph6inJpw…
📍Registration Feature Security Testing
🔗xmind.works/share/6ZrhpTgT…
📍Numeric System Base Conversion
🔗xmind.works/share/PuaGf35z…
📍GraphQL Security Testing Mind Map
🔗xmind.works/share/gQBGfaVW…
📍XSS and HTML Injection Attack Methodology
🔗xmind.ai/share/CTAMcPfH…
English

Some Useful E - Books (Updated & More Added)
🔹 Security Career
drive.google.com/open?id=1JGQEX…
🔹 SIEM Solutions
drive.google.com/open?id=1oDDNc…
🔹 Security Books
drive.google.com/open?id=1TYQx-…
🔹 Python
drive.google.com/open?id=1uAfpf…
🔹 PMP
drive.google.com/open?id=1_MQO3…
🔹 Programming Books
drive.google.com/open?id=19HFLJ…
🔹 Prince 2
drive.google.com/open?id=1LqwtH…
🔹 MS OFFICE EXCEL
drive.google.com/open?id=1YI6HU…
🔹 MAHESH CERTIFICATE drive.google.com/open?id=165qCA…
🔹 MACHNE LEARNING drive.google.com/open?id=1eHvY5…
🔹 ITIL V4
drive.google.com/open?id=1GGl9a…
🔹 ISO 27001
drive.google.com/open?id=1CLzAH…
🔹 FORENSIC INVESTIGATIONS
drive.google.com/open?id=1XnjhX…
🔹 F5 LOAD BALANCER
drive.google.com/open?id=1P2HRL…
🔹 CYBER SECURITY BOOKS
drive.google.com/open?id=179D_s…
🔹 CISSP
drive.google.com/open?id=1OTCyi…
🔹 CISM
drive.google.com/open?id=1-Vhz0…
🔹 CISA
drive.google.com/open?id=1vf5E7…
🔹 CRISC
drive.google.com/open?id=1ThyyD…
🔹 CEH
drive.google.com/open?id=18upln…
🔹 CCNA SECURITY
drive.google.com/open?id=14atH7…
🔹 CCDA
drive.google.com/open?id=17ChJX…
🔹 CMMI
drive.google.com/open?id=1Vu61J…
🔹 AZURE
drive.google.com/open?id=1hBkIu…
🔹 AWS
drive.google.com/open?id=1xu0wB…
🔹 Firewalls
drive.google.com/open?id=1_6y_K…
🔹 AGILE, COBIT, TOGAF
drive.google.com/open?id=1VnHqX…
🔹 CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide
#rfa0-MeRkEEv4Nwxh6PbekdR_BCY88z0EEvYQr5fDv4" target="_blank" rel="nofollow noopener">mega.nz/file/cloyVIxS#…
🔹 CCNP entreprise Advanced Routing ENARSI 300-410 Official Cert Guide
#OkN99ZIVCQqJO8T7eoH2F-ExOBLzS8DaICeVelG19WM" target="_blank" rel="nofollow noopener">mega.nz/file/1gIxyaaJ#…
🔹 CCNP and CCIE Enterprise Core & CCNP Enterprise Advanced Routing Portable Command Guide
#fBaMmZtPoPlysb_LV2-XY-8t8_L_ztevpD-uhYzOWO4" target="_blank" rel="nofollow noopener">mega.nz/file/EshSXAoa#….
🔹 Artificial intelligence complete course volume 1,2,3,4&5 :sparkles
#jz9Hd18LLI9b8QyLHSC-AQ" target="_blank" rel="nofollow noopener">mega.nz/folder/rWBmwKA…
idk the og creator though
English


I hope this thread provided valuable information!
If it did, I'd appreciate it if you followed me @hey_madni
Thank you for reading, and please engage with the first post below by bookmarking, liking, commenting, and reposting.
Madni Aghadi@hey_madni
Do you think your boss is scary? Look at the brutal emails from the CEOs of Apple, Microsoft, Tesla and Facebook:
English

Top 100 Hacking & Security E-Books 📚
(Free Download)
github.com/yeahhub/Hackin…
Credits- @yeahhub
English

🔥 COURSES 🔥
#courses
⛔PMP (Project Management Professional)⛔
drive.google.com/drive/folders/…
⛔CYBER SECURITY⛔
drive.google.com/drive/folders/…
⛔CERTIFIED INFORMATION SYSTEM SECURITY PROFESSIONAL⛔
drive.google.com/drive/folders/…
⛔CERTIFIED INFORMATION SYSTEM MANAGER⛔
drive.google.com/drive/folders/…
⛔CERTIFIED INFORMATION SYSTEM AUDITOR⛔
drive.google.com/drive/folders/…
⛔Certified in Risk and Information Systems Control (CRISC)⛔
drive.google.com/drive/folders/…
⛔Capability Maturity Model Integration (CMMI)⛔
drive.google.com/drive/folders/…
⛔MICROSOFT AZURE CLOUD COMPUTING⛔
drive.google.com/drive/folders/…
⛔AWS CLOUD COMPUTING⛔
drive.google.com/drive/folders/…
⛔ITIL V4⛔
drive.google.com/drive/folders/…
⛔ISO 27001⛔
drive.google.com/drive/folders/…
⛔F5 Load Balancer⛔
drive.google.com/drive/folders/…
⛔AGILE⛔
drive.google.com/drive/folders/…
⛔CCDA (Cisco Certified Data Centre Architecture)⛔
drive.google.com/drive/folders/…
⛔CEH (Certified Ethical Hacking)⛔
drive.google.com/drive/folders/…
⛔TOGAF 9.2⛔
drive.google.com/drive/folders/…
English

🦸♂️Burp Suite Hacking course🦸♂️
Bug Bounty and Web Hacking
1) Introduction
#9SdZ2Xl2hVqBlcmZXtTCSA" target="_blank" rel="nofollow noopener">mega.nz/folder/eM8RkKD…
2) Getting Started with Burp Suite
#XRg5d6vl3kb8iqTS43bnAg" target="_blank" rel="nofollow noopener">mega.nz/folder/7MkjHQ7…
3) Burp Suite Tools Introductions
#1oaSZ5wyUQ95sJep9b0UJg" target="_blank" rel="nofollow noopener">mega.nz/folder/TElzmAD…
4) Insecure Direct Object Reference Vulnerability
#RYoWjUwgLI9WVX0NsrxFnA" target="_blank" rel="nofollow noopener">mega.nz/folder/nA8zgII…
5) Security Miss Configuration Vulnerabilities
#Vtn3GLuZyWR2gbDwTsuZQg" target="_blank" rel="nofollow noopener">mega.nz/folder/KA9j2KL…
6) SQL Injection Vulnerabilities
#1isYLVqGqob7Q0SLTFyssw" target="_blank" rel="nofollow noopener">mega.nz/folder/uBkXWSZ…
7) Various Injection Vulnerabilities and Attacks
#x_NbLw7vCPK6b0vqhD4PWA" target="_blank" rel="nofollow noopener">mega.nz/folder/zcsliIp…
8) Cookie Session Vulnerability Crash
#46GhOEVqXEfWwvwdN1-YMA" target="_blank" rel="nofollow noopener">mega.nz/folder/iB8lRSD…
English







