This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Permissions for wordpress: | |
http://blog.johnpray.net/2013/02/wordpress-security-quickly-set-the-proper-file-and-folder-permissions/ | |
Apt-Get Update | |
Install Apache | |
Apache Configuration | |
Install MySql | |
Mysql configuration | |
Install Dropbox-Uploader |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
http://www.thestar.com.my/news/nation/2016/12/08/bnm-you-wont-pay-dearly-for-contactless-cards-these-plastics-come-with-security-features-that-are-im/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Apache: | |
https://github.com/gregrickaby/The-Perfect-Apache-Configuration/blob/master/http.conf | |
http://www.acunetix.com/blog/articles/10-tips-secure-apache-installation/ | |
https://httpd.apache.org/docs/2.4/misc/security_tips.html | |
NGINX: | |
https://peteris.rocks/blog/unattended-installation-of-wordpress-on-ubuntu-server/ | |
Uses let's encrypt as well | |
IPTABLES: |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
https://www.maketecheasier.com/securing-apache-ubuntu/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
https://www.maketecheasier.com/securing-apache-ubuntu/ | |
http://askubuntu.com/questions/176964/permanently-removing-apache2 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
https://github.com/RoverWire/virtualhost/blob/master/virtualhost.sh | |
http://www.grymoire.com/Unix/Sed.html#uh-42 | |
Use SED to modify: | |
-Document root to current wordpress install | |
-Load standard ApacheCFG from Git (optional) | |
-Use link above to create virtual host--might be enought...but I prefer SED | |
Generic Apache Config, but using SED to point Apache to $WPDIR -- best approach, as you don't have to worry about /var/www/html or other wp-config anomalies | |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
https://www.linode.com/docs/websites/apache/apache-web-server-on-ubuntu-14-04 | |
Thanks. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
https://blog.gruntwork.io/why-we-use-terraform-and-not-chef-puppet-ansible-saltstack-or-cloudformation-7989dad2865c#.g73c4uvrd |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Using DOPY to create/rebuild an image onto a machine | |
https://github.com/Wiredcraft/dopy | |
Using Fabric to run SSH Scripts | |
https://www.digitalocean.com/community/tutorials/how-to-use-fabric-to-automate-administration-tasks-and-deployments | |
Using SSH keys with Fabric | |
http://stackoverflow.com/questions/5327465/using-an-ssh-keyfile-with-fabric | |
FABRIC: http://www.fabfile.org/ | |
Digital Ocean Libraries: https://developers.digitalocean.com/libraries/ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Reviews of people who've taken the exam: | |
http://www.securitysift.com/offsec-pwb-oscp/ - great detail and pythong scripts | |
https://codemonkeyism.co.uk/the-road-to-oscp/ | |
http://www.jasonbernier.com/oscp-review/ | |
https://www.cybrary.it/0p3n/prep-guide-offsecs-pwkoscp/ | |
https://itgeekchronicles.co.uk/2012/10/10/oscp-useful-resources/ | |
http://n3ko1.github.io/certification/2015/05/27/oscp---offensive-security-certified-professional/ (very good!!) | |
Windows Priviledge Escalation |
OlderNewer