Skip to main content

Security Resources & Tools

Curated security references for DevSecOps, platform engineering and cloud operations.

Curated by Alban Andrieu

Security Standards & Compliance NIST, ISO 27001, GDPR and compliance tooling.

Application Security

OWASP — Open Worldwide Application Security Project

Practical standards, testing guidance and reference material for building and assessing secure web, API and mobile applications.

Personal Security

Personal Security Checklist

Practical references for strengthening personal digital security, privacy, account hygiene and device protection.

Network Security

Network Security & Scanning Tools

Tools and references for network discovery, packet analysis, vulnerability assessment and infrastructure mapping.

System Hardening

System Hardening & CIS Benchmarks

Best practices and benchmarks for hardening systems and improving security posture.

SSH Security

SSH Security & Hardening

Comprehensive guides for securing SSH access and hardening SSH configurations.

Agentic AI

OpenClaw security hardening

OpenClaw (formerly Clawdbot / MoltBot) can reach APIs, files, and linked accounts; default setups have drawn clear warnings from the security community. If you still self-host it, treat hardening as non-optional. The OpenClaw security hardening guide (Aimaker / Substack, with a technical walkthrough by Fernando Lucktemberg of Next Kick Labs) lays out three progressive tiers: Tier 1 minimum viable isolation and gateway configuration, Tier 2 standard protection for typical hobby or lab use, Tier 3 defense-in-depth (for example egress filtering and rootless Podman). It includes copy-paste-style steps, verification commands, an explicit list of accounts and systems you should never attach, and optional full automation via Ansible.

Standards & Compliance

Security Standards & Compliance

Industry standards, compliance frameworks, and regulatory guidelines for security.

Vulnerability Management

Vulnerability Management & Scanning

Tools and resources for identifying, assessing, and managing vulnerabilities.

CI Vulnerability Scanning

CI Vulnerability Scanning

Multi-scanner analysis tools.

Penetration Testing

Pentest-Tools.com

Online penetration testing and vulnerability scanning platform.

SIEM / Malware Detection

SIEM / Malware Detection

Security monitoring and malware detection resources.

DevSecOps

DevSecOps Tools & Practices

Tools and practices for integrating security into the DevOps pipeline.

Authentication & JWT

Authentication & JWT

Boilerplates and guides for secure authentication and JWT.

App & Infrastructure Security

App & Infrastructure Security

Best practices for securing applications and infrastructure platforms.

Cloud Security

Cloud Security Resources

Best practices and tools for securing cloud infrastructure and services.

Learning & Training

Security Learning Resources

Platforms and resources for learning and improving security skills.

Hacker illustration


SVG Spider 

OSINT Framework


Kali Linux