Evan Hahn
Web security and JavaScript. Express.js Helmet maintainer.
Ben Tasker
Security, home automation, and self-hosting. Practical guides and projects.
Schneier on Security
Bruce Schneier's security blog. Cryptographer and security expert writing since 2004.
Phrack Magazine
The legendary hacker ezine since 1985. Technical articles on security, exploitation, and hacker culture. Issue 72 in 2025.
Privacy Tools
Services, tools and knowledge to protect your privacy. Curated recommendations for privacy-respecting software.
Have I Been Pwned
Check if your email or phone was in a data breach. Free service by Troy Hunt, essential for security awareness.
VirusTotal
Analyze files and URLs for malware. Scans with 70+ antivirus engines and URL/domain blocklists.
Moxie Marlinspike
Founder of Signal. Writing on cryptography, privacy, security, and the intersection of technology and society.
Filippo Valsorda
Cryptographer, Go security lead. Creator of mkcert. Deep technical posts on cryptography and security.
Krebs on Security
Brian Krebs' investigative reporting on cybercrime. Breaking security news and deep dives into hacking incidents.
A Few Thoughts on Cryptographic Engineering
Matthew Green's blog on cryptography and security. Accessible explanations of complex crypto topics.
Awesome Security
Collection of security resources. Tools, books, and resources for security professionals.
Awesome Hacking
Curated list of hacking resources. CTFs, tutorials, tools, and learning paths.
The Book of Secret Knowledge
Collection of inspiring lists, manuals, cheatsheets, and tools. 200K+ stars. A hacker's encyclopedia.
SSL Labs
Test SSL/TLS configuration of any website. Industry standard for SSL analysis.
Security Headers
Analyze HTTP security headers of any website. Quick security audit.
tmp.0ut
ELF research group and zine. Deep technical content on binary hacking, virus writing, and Linux internals.
PoC||GTFO
Proof of Concept or GTFO. Hacker journal with deeply technical essays on reverse engineering and file formats. Often a valid PDF, ZIP, and bootable OS simultaneously.
Exploit Database
Archive of public exploits and vulnerable software. Essential resource for security researchers and penetration testers.
HackTricks
Massive wiki of hacking techniques for CTFs and pentesting. Privilege escalation, web attacks, and more.
Shodan
Search engine for Internet-connected devices. See what's exposed on the internet. Essential for security researchers.
conduition
Deep technical reverse engineering posts. Famous for breaking down Ticketmaster's rotating barcode system.
mango.pdf.zone
Security researcher Alex Hope. Famous for finding Tony Abbott's passport number on Instagram.
OverTheWire Wargames
Learn security through challenges. SSH-based hacking games.
Cryptopals
Learn cryptography by breaking it. Programming challenges teaching crypto.
pwn.college
Cybersecurity education platform. CTF-style learning from ASU.
TryHackMe
Learn cybersecurity through hands-on exercises. Guided hacking rooms.
PortSwigger Web Security Academy
Free web security training. Learn to find and exploit vulnerabilities.
Electronic Frontier Foundation
Digital rights organization defending civil liberties online. Fighting for privacy, free speech, and innovation.
Citizen Lab
Research lab studying digital threats to civil society. Exposes government surveillance and spyware.
Mullvad VPN
Privacy-focused VPN that accepts cash by mail. No accounts, no email required, just anonymous access.