Security Tools & Platforms articles
Practical guides for scanners, SIEM, testing, and investigation platforms
Explore practical guides for cybersecurity tools used in monitoring, scanning, testing, hardening, investigation, and compliance workflows.
Collection snapshot
—
Published articles in this collection
Best for: Practitioners learning tools used in SOC, pentest, and hardening workflows
…
Published articles
10
Example topics
3
Learning paths
How to use this collection
Read → apply → reference
Each article is written as a practical knowledge block you can use on the job, in labs, or during audits.
Learn the concept
Understand the threat, control, or workflow with clear explanations.
Follow the checklist
Apply steps, commands, or evidence collection in your environment.
Connect to practice
Jump to related labs, tutorials, and tools to reinforce skills.
Example topics in this collection
- Wazuh
- Nmap
- Burp Suite
- Wireshark
- OpenVAS
- Nessus
- Metasploit
- OSQuery
- YARA
- Sigma
Catalog
Articles in security tools & platforms
Practical guides, checklists, and explainers focused on this security domain.
Outcomes
What you'll learn
- Configure and operate common security tools with realistic use cases
- Understand when to use scanners, SIEM, packet tools, and EDR in workflows
- Avoid tool sprawl by connecting platforms to playbooks and team processes
- Jump from tool articles to hands-on labs and tutorial deep dives
More topics
Explore other article collections
Jump between fundamentals, offensive security, blue team, cloud, compliance, and more.
Cybersecurity Fundamentals
Core security concepts, threat models, and the mindset every defender needs
View collectionEthical Hacking & Penetration Testing
Recon, testing workflows, exploitation basics, and professional reporting
View collectionWeb Application Security
OWASP risks, injection flaws, access control, APIs, and secure development
View collectionLinux Security
SSH hardening, permissions, auditd, firewalls, logging, and CIS controls
View collectionSOC & Blue Team
SIEM alerts, log analysis, triage workflows, and blue-team investigation
View collectionIncident Response
Detect, contain, investigate, eradicate, recover, and learn from incidents
View collectionCloud Security
IAM, logging, network controls, storage security, and misconfiguration detection
View collectionDevSecOps
Secure CI/CD, secret scanning, SAST/DAST, containers, and pipeline automation
View collectionCompliance & GRC
Frameworks, controls, audit evidence, policies, and GRC workflows
View collectionNetwork Security
Segmentation, firewalls, VPNs, DNS, IDS/IPS, and packet analysis
View collectionCryptography
Encryption, hashing, TLS, certificates, signatures, and key management
View collection