uz
Feedback

Firibgarlarga uchmang! Telemetrio bunday kanallarni topadi va belgilaydi πŸ‘‰ Belgini koβ€˜rmoqchi boβ€˜lsangiz, obuna boβ€˜ling πŸ‘ˆ

Cyber Security Resources

Cyber Security Resources

Kanalga Telegram’da oβ€˜tish

Network : @TheStarkArmyZ πŸ“ŒShop : https://t.me/TheStarkArmyShop/25 Cross/paid : @StarkService Ads policy : https://bit.ly/2BxoT2O

Ko'proq ko'rsatish
5 350
Obunachilar
Ma'lumot yo'q24 soatlar
Ma'lumot yo'q7 kun
Ma'lumot yo'q30 kun
Postlar arxiv
15 common system design topics you must learn
15 common system design topics you must learn

Network Basics: VLANs
Network Basics: VLANs

πŸŒ€ How to hide virus in a picture πŸŒ€ πŸ”Ή Greetings to all readers! Today we will consider one of the simplest ways to disguise malware, and with the help of it, stealers, keyloggers and other nasty things are still masked. 1. Create a folder and drag our picture and virus there. 2. Go to iconvertcom and create an icon for our picture (in the format settings, choose from 16x16 to 256x256). Next, click on "Convert ICO" and download our icon. 3. Don't touch the icon yet. We return to the folder> select the image and the virus> add to the archive. 4. In the parameters of the archive, do the following. Click on "Create self-extracting archive" (general tab)> "SFX options" (additional tab)> Go to "Update" and click on "extract and update all files" and "overwrite all files without prompting". 5. Go to the "Installation" tab and prescribe which files should be opened during the launch of our executable (first a picture, then a virus) 6. Go to the "Mode" tab and click on "Unpack to a temporary folder" and "hide all" 6. Go to the "text and graphics" tab and load our icon (icon). So, we replaced the archive icon with the icon of our picture. 7. Now we have an executable (exemple.exe) with our photo icon. Pretty pale, so we'll use one trick. We rename our file, namely we enter between the name and the point "gpj" (exemplegpj.exe). Now we hover the cursor in front of "gpj", click pkm and select "insert Unicode control character"> Select RLO. πŸ”Ή All my virus is disguised in a picture, and the file does not look like exemple.exe, but exemple.jpgβ€Œβ€Œ ━━━━━━━━━━━━━━━ Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop Double Tap ❀️ For More

Absolutely, Ville β€” here’s a clean, future‑proof summary of every step you took to get Jenkins + Docker + SonarQube + Trivy + OWASP DC working inside a single Jenkins container. This is the kind of reference you’ll be glad you saved. --- # 🧱 FULL SETUP SUMMARY β€” Jenkins CI/CD in a Single Container Below is the complete, ordered list of what you did, why you did it, and the exact commands or UI steps involved. --- # 🟦 1. Run Jenkins in Docker with access to host Docker You started Jenkins with: - Host Docker socket mounted - Jenkins home volume - Port 8080 exposed This allows Jenkins to run Docker builds using the host engine. --- # 🟦 2. Install required tools inside the Jenkins container Inside the container:
apt-get update
apt-get install -y docker.io unzip openjdk-17-jdk nodejs npm
You now have: - Docker CLI - JDK 17 - NodeJS - unzip All available to Jenkins. --- # 🟦 3. Install Sonar Scanner manually Downloaded and extracted:
cd /opt
wget https://github.com/SonarSource/sonar-scanner-cli/releases/download/4.4.0.2170/sonar-scanner-cli-4.4.0.2170-linux.zip
unzip sonar-scanner-cli-4.4.0.2170-linux.zip
mv sonar-scanner-4.4.0.2170-linux sonar-scanner
Scanner path:
/opt/sonar-scanner
--- # 🟦 4. Install required Jenkins plugins From Manage Jenkins β†’ Plugins: - SonarQube Scanner for Jenkins - SonarQube - NodeJS - OWASP Dependency Check - Email Extension - Pipeline - Docker Pipeline (optional) --- # 🟦 5. Configure tools in Jenkins UI ### JDK Manage Jenkins β†’ Global Tool Configuration β†’ JDK - Name: jdk17 - Uncheck β€œInstall automatically” - JAVA_HOME: ``` /usr/lib/jvm/java-17-openjdk-amd64 ``` ### NodeJS - Name: node16 - Uncheck β€œInstall automatically” ### Sonar Scanner - Name: sonar-scanner - Uncheck β€œInstall automatically” - Installation directory: ``` /opt/sonar-scanner ``` --- # 🟦 6. Run SonarQube server on the host You used:
docker run -d --name sonarqube \
  -p 9000:9000 \
  -v sonarqube_data:/opt/sonarqube/data \
  -v sonarqube_logs:/opt/sonarqube/logs \
  -v sonarqube_extensions:/opt/sonarqube/extensions \
  sonarqube:lts-community
--- # 🟦 7. Configure SonarQube in Jenkins Manage Jenkins β†’ Configure System β†’ SonarQube Servers - Name: sonar-server - URL: http://<host-ip>:9000 - Token: (generated in SonarQube UI) Matches Jenkinsfile:
withSonarQubeEnv('sonar-server')
--- # 🟦 8. Add credentials in Jenkins Path: Manage Jenkins β†’ Credentials β†’ System β†’ Global credentials β†’ Add Credentials You added: - DockerHub credentials (docker-cred) - SonarQube token (sonar-token) --- # 🟦 9. Fix Docker permission issue inside Jenkins container This was the big one. ### Problem: Host Docker socket group ID = 984 Container docker group ID = 102 ### Fix: recreate docker group inside container with correct GID Inside container:
groupdel docker
groupadd -g 984 docker
usermod -aG docker jenkins
Restart container:
docker restart jenkins
Verify:
docker exec -it jenkins bash
id jenkins
docker ps
Now Docker works. --- # 🟦 10. Run the pipeline β€” SUCCESS Your Jenkinsfile worked without modification because: - All tools were installed inside the container - Jenkins had access to Docker - SonarQube was reachable - Trivy and OWASP DC were installed - Credentials were configured --- # πŸŽ‰ Final Result You now have a fully functional DevSecOps pipeline running entirely inside a single Jenkins container, including: - Git checkout - SonarQube analysis - Quality gate - NPM install - OWASP Dependency Check - Trivy FS scan - Docker build - Docker push - Trivy image scan - Deployment - Email notifications This is a complete, production‑grade CI/CD pipeline. Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop Double Tap ❀️ For More

Docker cheatsheet
Docker cheatsheet

WHAT DO YOU WANT TO LEARN❓

sticker.webp0.42 KB

Cybersecurity Roadmap | |-- Fundamentals | |-- Introduction to Cybersecurity | | |-- Importance and Principles of Cybersecurity | | |-- Types of Cybersecurity (Network, Information, Application, Cloud, etc.) | | |-- Cybersecurity Threat Landscape (Malware, Phishing, Ransomware, etc.) | |-- Network Security | | |-- Firewalls and VPNs | | |-- Intrusion Detection Systems (IDS) | | |-- Intrusion Prevention Systems (IPS) | | |-- Network Access Control | |-- Threats and Vulnerabilities | |-- Types of Cyber Threats | | |-- Malware (Viruses, Worms, Trojans, etc.) | | |-- Phishing and Social Engineering | | |-- Denial of Service (DoS) Attacks | | |-- Insider Threats | |-- Vulnerability Assessment | | |-- Vulnerability Scanning | | |-- Penetration Testing (Ethical Hacking) | | |-- Security Audits and Assessments | |-- Encryption and Cryptography | |-- Introduction to Cryptography | | |-- Symmetric and Asymmetric Encryption | | |-- Hashing Algorithms (SHA, MD5, etc.) | | |-- Public Key Infrastructure (PKI) | |-- Encryption Protocols | | |-- SSL/TLS | | |-- IPsec | |-- Identity and Access Management (IAM) | |-- Authentication Mechanisms | | |-- Password Policies and Multi-Factor Authentication (MFA) | | |-- Biometric Authentication | |-- Access Control Models | | |-- Role-Based Access Control (RBAC) | | |-- Attribute-Based Access Control (ABAC) | | |-- Mandatory Access Control (MAC) | |-- Incident Response and Forensics | |-- Incident Response Process | | |-- Detection, Containment, Eradication, Recovery | | |-- Incident Response Teams (CSIRT) | |-- Digital Forensics | | |-- Evidence Collection and Preservation | | |-- Data Recovery | | |-- Forensic Tools (Autopsy, EnCase, etc.) | |-- Security Operations | |-- Security Monitoring | | |-- Security Information and Event Management (SIEM) | | |-- Log Management and Analysis | | |-- Threat Intelligence | |-- Security Operations Center (SOC) | | |-- SOC Roles and Responsibilities | | |-- Incident Management | |-- Cloud Security | |-- Cloud Security Principles | | |-- Shared Responsibility Model | | |-- Data Protection in Cloud Environments | |-- Cloud Security Tools | | |-- Cloud Access Security Brokers (CASB) | | |-- Security in Cloud Platforms (AWS, Azure, Google Cloud) | |-- Application Security | |-- Secure Software Development | | |-- Secure Coding Practices | | |-- Software Development Life Cycle (SDLC) | | |-- Secure Code Reviews | |-- Web Application Security | | |-- OWASP Top 10 | | |-- SQL Injection, Cross-Site Scripting (XSS), CSRF | |-- Compliance and Regulations | |-- Cybersecurity Standards | | |-- ISO/IEC 27001, NIST Cybersecurity Framework | | |-- CIS Controls, SOC 2 | |-- Data Privacy Regulations | | |-- GDPR | | |-- HIPAA, CCPA, PCI DSS | |-- Advanced Topics | |-- Advanced Persistent Threats (APT) | | |-- Detection and Mitigation | | |-- Threat Hunting | |-- Blockchain Security | | |-- Cryptographic Principles | | |-- Smart Contracts and Security | |-- IoT Security | | |-- Securing IoT Devices | | |-- Network Segmentation for IoT | |-- Emerging Trends | |-- AI and Machine Learning in Cybersecurity | | |-- AI-Based Threat Detection | | |-- Automating Incident Response | |-- Zero Trust Architecture | | |-- Principles of Zero Trust | | |-- Implementing Zero Trust in an Organization | |-- Soft Skills | |-- Communication and Collaboration | | |-- Reporting Security Incidents | | |-- Collaboration with Other Departments | |-- Ethical Hacking | | |-- Red Teaming and Blue Teaming | | |-- Bug Bounty Programs Free CyberSecurity Course For FREE Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop Double Tap ❀️ For More

Cybersecurity Roadmap πŸ”’ πŸ“‚ Networking Basics β€ƒβˆŸπŸ“‚ OS Basics β€ƒβ€ƒβˆŸπŸ“‚ Scripting Skills β€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Security Core β€ƒβ€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Threat Intel β€ƒβ€ƒβ€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Pen Testing β€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Incident Ops β€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Cloud Sec β€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβˆŸπŸ“‚ Do Lab β€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβ€ƒβˆŸ βœ… Job Learn More Hackings Here 🀩Crax Hacks 🌐Network | πŸ›Shop

πŸ›‘πŸ”₯ Cybersecurity Terms Every Beginner Should Know β€” Part 6 β€’ 1. Vulnerability Assessment πŸ” β€” The process of identifying and evaluating security weaknesses in systems or applications. β€’ 2. Penetration Testing πŸ•΅οΈ β€” Authorized security testing used to validate whether vulnerabilities can actually be exploited. β€’ 3. Vulnerability Scanner πŸ“‘ β€” A security tool that automatically checks systems or applications for known weaknesses. β€’ 4. Patch Management πŸ”§ β€” The process of identifying, testing, and applying software updates and security patches. β€’ 5. Security Misconfiguration βš™οΈ β€” An insecure system or application configuration that can create security risks. β€’ 6. Attack Surface Management 🎯 β€” Identifying, monitoring, and reducing an organization's exposed assets and entry points. β€’ 7. Endpoint πŸ’» β€” A device connected to a network, such as a laptop, desktop, smartphone, or server. β€’ 8. EDR πŸ›‘ β€” Endpoint Detection and Response technology that monitors endpoints and helps detect and investigate suspicious activity. β€’ 9. NDR 🌐 β€” Network Detection and Response technology that monitors network activity to identify suspicious behavior. β€’ 10. Firewall Rule πŸ”₯ β€” A rule that determines whether specific network traffic should be allowed or blocked. β€’ 11. Port πŸšͺ β€” A logical communication endpoint used by network services and applications. β€’ 12. Protocol πŸ“‘ β€” A defined set of rules that devices use to communicate over a network. β€’ 13. Packet πŸ“¦ β€” A unit of data transmitted across a network. β€’ 14. DNS 🌍 β€” Domain Name System that translates domain names into IP addresses. β€’ 15. IP Address πŸ“ β€” A numerical address used to identify a device or network interface. β€’ 16. MAC Address πŸ–₯ β€” A hardware-level network address associated with a network interface. β€’ 17. Proxy Server πŸ”„ β€” An intermediary that forwards requests between a client and another system. β€’ 18. VPN Tunnel πŸ”’ β€” An encrypted connection that carries network traffic between a device and a VPN endpoint. β€’ 19. Network Segmentation 🧱 β€” Dividing a network into separate segments to limit access and reduce the impact of incidents. β€’ 20. DMZ 🌐 β€” A network segment used to isolate publicly accessible services from an organization's internal network. πŸ’‘ Understanding these networking and infrastructure terms will make topics like ethical hacking, SOC analysis, cloud security, and network defense much easier to learn. Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop Double Tap ❀️ For More

πŸ”… Windows & macOS can't do this, but Linux can! Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

🐧 Linux sed command crash course
🐧 Linux sed command crash course

Fundamentals, Soft Skills & Office Tools πŸ’» Computer Basic Training β€” Drive Link πŸ—£ English Language Course β€” Direct Download Link πŸ“Š Tally ERP 9 β€” Drive Link Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

Software Development & Mobile Apps iOS App Development πŸ“± β€” Drive Link Software Development πŸ’» β€” Drive Link Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

Cybersecurity & IT Infrastructure Amazon Web Services (AWS) ☁️ β€” Drive Link Computer Networking 🌐 β€” Drive Link Ethical Hacking Course Updated πŸ“ β€” Drive Link Ethical Hacking Training πŸ’» β€” Drive Link Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

Video Production, Animation & Content Creation πŸ€– AI Videos Drive β€” Drive Link 🎨 Explaindio 2D Animation β€” Direct Download Link ✨ Logo Designing β€” Drive Link πŸŽ₯ Video Recording and Editing β€” Direct Download Link πŸ– Whiteboard Animation β€” Direct Download Link πŸ“Ί YouTube Course β€” Drive Link | Direct Download Link Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

πŸ’Ό Freelancing & Online Business πŸš€ Fiverr Course β€” Drive Link | Direct Download Link Freelancers Course β€” Drive Link Upwork Course β€” Drive Link | Direct Download Link Web Hosting Business Training β€” Direct Download Link Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop

πŸ“ˆ Digital Marketing & Advertising πŸš€ Facebook Ads β€” Drive Link πŸ”— Facebook Instant Ad Article β€” Direct Download Link πŸ“„ Google Ads β€” Drive Link πŸ”— Google AdSense Course β€” Drive Link | Direct Download Link πŸ’° Google Business β€” Drive Link 🏒 Master SEO Course β€” Drive Link πŸ“š SEO Content Writer β€” Drive Link ✍️ Learn More Hackings Here ⚑️@TheAnonGhost πŸ“‚Network | πŸ›Shop