Skip to content

enzowritescode/appsec-learning-guide

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

16 Commits
 
 
 
 

Repository files navigation

AppSec Learning Guide

A list of key resources for learning about Application Security (AppSec). Each section should not be treated as a comprehensive list, but rather a jumping off point for you to explore.

OWASP Top 10s

The various vulnerabilities spanning the misc OWASP Top 10 lists that pertain to your role should be a fundamental pillar of your knowledge. Also if you are expanding into a new area, this is a good place to start.

Offensive Security Labs

Learn offensive security in a safe/legal environment.

Secure SDLC / DevSecOps

These resources are key for implementing automation and processes into your software development lifecycle (SDLC).

Secure Coding and Developer Training

Conferences and Meetups

Reputable conferences and meetups. It's worth noting that conference talks are often recorded and can frequently be found on YouTube.

Certifications

Podcasts

  • The Boring AppSec Podcast
  • Absolute AppSec
  • 404 Security Not Found
  • Application Paranoia
  • Where Warlocks Stay Up Late
  • Cloud Security Podcast
  • Darknet Diaries

Content Creators / Influencers

COMING SOON

Online Communities

There are many regional and global online communities (Slack, Discord, etc) for various frameworks, programming languages, cybersecurity focuses, etc. These can be good places to network, talk shop, learn new ideas, and so on.

Resource Collections

  • awesome repositories are curated lists of resources pertaining to a specific topic. When learning about a new topic sometimes it is useful to find an awesome repository on the subject. Example: search "awesome cloud security" or "awesome mobile security" on GitHub
  • Ultime DevSecOps library

Books

  • Alice and Bob Learn Application Security
  • Misc cybersecurity books that I have enjoyed:
    • The Code Book by Simon Singh
    • The Cuckoo's Egg by Clifford Stoll
    • Becoming an Ethical Hacker by Gary Rivlin

About

AppSec Learning Guide

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published