OWASP publishes several texts with summaries related to security topics, applied to web applications.

Threat Modeling                  Cryptographic Storage
Deserialization                     XXE vulnerabilities                         SSRF vulnerabilities