Getting into cybersecurity can be a bit daunting. It’s a huge, rapidly evolving field with specializations including penetration testing, incident response, digital forensics, network engineering, malware analysis, and more.
If you’re just getting started, here’s what we recommend:
Our GitHub organization
CofC Cybersecurity Club on GitHub — we keep a lot of resources and in-progress projects there. Active member? Ask and we'll add you to the org so you can contribute too.
Linux
Linux is a family of open-source operating systems. Prominent distributions (distros) exist for personal computers (Ubuntu, Fedora), mobile devices (Android), embedded devices (BusyBox), and servers (Red Hat, Ubuntu Server).
Getting started
Infosec-oriented distros
New to Linux or security? Start with Kali.
Other distros worth knowing
Virtualization
Hypervisors like VirtualBox and VMware let you run virtual machines (VMs) on your computer — multiple operating systems, each in its own sandbox. We recommend setting up Kali using Kali's own virtualization guides, or one of ours below.
Our favorites — most come prepackaged with Kali. The most important to know are nmap, netcat, and Wireshark.
Other tools
- PEASS-ng — privilege escalation toolkit (Windows/macOS/Linux)
- Gobuster — web server directory enumeration
- SO-CRATES — Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!
Hardware hacking
- Hak5 — pentesting/infosec gear, including the WiFi Pineapple, network implants, and hardware keyloggers
- Raspberry Pi — cheap, versatile single-board computer
The cloud
Cloud knowledge is crucial to almost everything in computer science now, security included. Pick a platform and learn the basics — most offer free credit to get started.
YouTube channels & podcasts