Web Security
28 sites
https://digdeeper.club/
Dig Deeper is a privacy and security-focused resource site covering browser selection, spyware testing, email providers, VPNs, darknet setup, and critiques of major software like Mozilla and various search engines. The site goes deep into practical guides and opinion pieces on digital autonomy, making it a substantial destination for anyone serious about escaping surveillance and corporate tech.
https://shellsharks.com/
Mike's digital garden at Shellsharks covers infosec research, technology, and personal life across a richly interconnected set of blogs, notebooks, and logs. A self-described 'Internet homesteader,' Mike has built an expansive personal web presence complete with a podcast, linklog, devlog, and Fediverse integration that makes it a compelling destination for security-minded web explorers.
https://2600.com/
2600: The Hacker Quarterly is the legendary print and digital magazine covering hacking, phreaking, and information security culture since 1984. The site serves as a hub for the quarterly publication, the HOPE hacker conference, the 'Off The Hook' radio program, and community forums covering old-school and modern hacking topics.
https://cgisecurity.com/
CGISecurity.com bills itself as the oldest application security site online, predating OWASP, and covers topics ranging from XSS and CSRF to cryptography, web application firewalls, and vulnerability research. Run by Robert Auger, the site offers advisories, research papers, security tool roundups, and a deep archive of industry news and commentary stretching back to 2001.
https://fyr.io/
Matt is a UK sysadmin who runs this ever-evolving personal site covering infosec, the indieweb movement, and life both on and offline. The site features multiple custom themes, a changelog documenting its evolution, technical guides, and a curated collection of favourite corners of the internet to explore.
https://sqlninja.sourceforge.net/
Sqlninja is an open-source penetration testing tool designed to exploit SQL Injection vulnerabilities in web applications backed by Microsoft SQL Server, automating the process of gaining remote access to vulnerable database servers. Created by 'icesurfer', it includes attack modules, a Metasploit wrapper, DNS tunneling for data extraction, and even a hidden Easter Egg that streams music.
https://cutsfrombrokenglass.neocities.org/
SK14R's personal site at CutsFromBrokenGlass is a tech-focused corner of the old web with a strong anti-surveillance bent, prominently featuring contributions to DeFlock, a community project mapping Flock license plate reader cameras. The site also links to a custom tool called sc-scrape, a tech blog, and resources, all wrapped in a minimalist ASCII-art aesthetic.
https://maia.crimew.gay/
Maia Arson Crimew is a Swiss hacktivist, investigative journalist, and musician whose personal site serves as a hub for her technical security research, hacking write-ups, and journalistic work including a column for the Swiss magazine Das Lamm. The site links to a blog covering high-profile hacks and hacktivism, music projects, DJ work, and sample packs, making it a fascinating window into one of the more notable figures in modern hacktivist circles.
https://secretonions.neocities.org/
Secret Onions is a community-maintained Tor hidden service link directory focused on legitimate content, tools, and knowledge rather than scammy dark web marketplaces. Curated with an anti-surveillance, pro-privacy philosophy, it organizes onion links into categories like forums, email services, file hosting, software, and search engines while actively filtering out scam and marketplace sites.
https://websec.ca/kb/sql_injection
A comprehensive reference covering SQL injection techniques across MySQL, MSSQL, Oracle, and other database platforms, with detailed cheat sheets for testing, exploitation, obfuscation, and prevention. The Knowledge Base is organized as a dense technical reference for security researchers and penetration testers, covering everything from basic injection testing to advanced topics like out-of-band channeling and password cracking.