Guides
All our guides
Browse all DeafNews guides grouped by cluster, with practical resources and step-by-step sections.
Nmap
Practical guides on Nmap, network discovery, scanning and advanced reconnaissance.
- The Complete Nmap Mastery Guide: From Network Discovery to Advanced ReconnaissanceIn a world where networks no longer end at the office perimeter, understanding what is exposed — and what should not be — has become a critical security skill. Nmap remains one of the most powerful instruments for that task: no longer just a port scanner, but a complete reconnaissance platform used for discovery, inventory, assessment, and red team operations. This guide is built for practitioners who want to go beyond basic commands. You will move from the foundations of network scanning to host discovery, port scanning, service detection, OS fingerprinting, NSE scripting, timing optimization, evasion techniques, output workflows, troubleshooting, and custom script development. The goal is simple: not just to run Nmap, but to understand what it is telling you — and how to turn scan results into real operational intelligence.
Offensive Security & Security Testing
Offensive Security and Security Testing brings together guides, analysis and methodologies focused on penetration testing, vulnerability validation and controlled attack simulation. This cluster explores tools and workflows used in authorized environments, covering reconnaissance, scanning, web application testing, exploit validation, wireless security, password auditing and technical reporting.
- Kali Linux Field Guide: Essential Tools for Penetration Testing and Security AuditingAs cyber threats evolve rapidly, understanding offensive security tools and methodologies is essential to assess and strengthen system security. Kali Linux Field Guide is a practical, structured guide to using Kali Linux in authorized environments: from environment setup and reconnaissance to scanning, vulnerability assessment, web application testing, wireless auditing, credential assessment and technical reporting. Each chapter combines operational explanations, practical examples and a strong focus on ethical, legal and defensive aspects, providing a complete path for building real-world security testing skills.
malware
Deep dives into modern malware: ransomware, trojans, infostealers, botnets, evasion techniques, technical analysis, and cyber defense strategies.
- Modern Malware Analysis and Defense: A Comprehensive Guide from Mobile Trojans to Post-Quantum RansomwareThe modern threat landscape has undergone a fundamental transformation. What began as hobbyist viruses has evolved into a **professionalized criminal economy**—complete with subscription models, 24/7 technical support, and profit-sharing arrangements that rival legitimate SaaS businesses. Today's malware operates across every attack surface simultaneously: your smartphone unlocks your bank account, your workstation contains intellectual property worth millions, and your cloud infrastructure hosts the crown jewels of enterprise data. The stakes have never been higher, nor the adversaries more capable. This guide traces the full arc of contemporary malware—from the **sophisticated trojan ecosystems** infecting billions of mobile devices, through the **double and triple extortion ransomware** crippling critical infrastructure, to the **post-quantum cryptographic threats** that will render today's defenses obsolete. We bridge theory and practice: establishing rigorous taxonomies and threat models, mastering advanced static and dynamic analysis techniques, dissecting real-world multi-stage intrusions, and architecting proactive defenses integrated with operational threat intelligence. Whether you are reverse-engineering samples in a sandbox, briefing the board on quantum risk, or rebuilding after a devastating breach, these ten chapters provide the comprehensive foundation and forward-looking perspective essential for defending organizations against the malware of today and tomorrow.