# CHYbeta/Software-Security-Learning

Software-Security-Learning

Repository: https://github.com/CHYbeta/Software-Security-Learning
Canonical: https://ross.abutalabs.com/products/software-security-learning
Homepage: https://chybeta.github.io/2017/08/19/Software-Security-Learning/
Language: HTML
License Family: other
Last push: 2022-08-31T23:17:48+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 3302, "days_push": 1463, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1279, forks 291 (observed 2026-08-28T04:04:13.595072+00:00)

## What it is
A curated collection of links, tutorials, courses, and tools for learning software security, with a strong emphasis on binary security and exploit development (stack overflows, ROP, SROP, shellcoding, browser vulnerabilities). Written in Chinese, it aggregates resources such as angr, pwntools, PEDA, classic exploit-writing tutorials, and university-style binary exploitation courses.

## Use cases
- learn binary exploitation from scratch
- find curated software security learning resources
- study ROP return-oriented programming tutorials
- learn stack overflow and SEH exploit development
- get started with CTF pwn and reverse challenges
- find binary analysis tools like angr and pwntools
- learn browser vulnerability research basics
- security learning materials in Chinese

## When to choose
- You want one curated index of binary security and exploit development learning materials instead of searching piecemeal
- You are preparing for CTF pwn/reverse challenges and need structured tutorials on ROP, heap exploitation, and shellcoding
- You want a mix of English and Chinese resources covering tools, courses, and fundamental concepts like GOT/PLT and virtual memory

## When to avoid
- You need a runnable tool, library, or framework rather than a collection of external links
- You need actively updated content - the README notes the last content update was February 2018
- You are looking for web application security or network security rather than binary/software security
- You need licensed, formally maintained educational material - the repo has no license

## Facets
- artifact type: learning-resource
- maturity: maintenance
- function: security, reverse-engineering, penetration-testing
- domain: security, penetration-testing, reverse-engineering, tutorials, awesome-lists, education
- platform: cross-platform, windows
- tags: awesome-list, binary-security, exploit-development, binary-exploitation, rop, ctf-pwn, shellcoding, browser-security, curated-resources, chinese-language, vulnerability-research, linux

## Member repositories
- CHYbeta/Software-Security-Learning (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:13.595072+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T05:02:39.982934+00:00, confidence not recorded.
  - readme: https://github.com/CHYbeta/Software-Security-Learning (fetched 2026-08-28T04:04:13.595072+00:00, sha 2f03b4361c82)
  - homepage: https://chybeta.github.io/2017/08/19/Software-Security-Learning/ (fetched 2026-08-29T12:13:14.400283+00:00, sha c4bd97dbd1f2)
- Data as of 2026-08-30T08:39:29.467469+00:00.
