Practical, hands-on courses for security professionals and people growing into the field. Clear explanations, modern labs, and friendly mentors to guide you.
Pick a topic that interests you. Every course includes a guided lab environment so you can practice safely.
Learn how Linux kernel security works in practice — memory protections like KASLR, SMEP, and SMAP, plus how common vulnerability classes are studied responsibly.
Understand HTTP request smuggling and cache deception so you can find these issues in your own stack and fix them with confidence.
Turn scattered public data into structured intelligence using ethical, repeatable open-source research workflows.
Audit real-world AWS and Azure environments — misconfigured storage, over-broad IAM, and risky serverless setups — and learn how to fix them.
Use Ghidra and IDA Pro to analyse unknown binaries and understand how malware behaves so you can defend against it.
Understand Active Directory risk paths — Kerberoasting, DCSync, ticket abuse — and how to harden domains against them.
Assess Android and iOS apps end to end: static analysis, runtime inspection, network review, and clear reporting.
Plan and run thoughtful adversary-simulation engagements that produce real value for the defenders you work with.
Review Solidity smart contracts for reentrancy, oracle issues, and access-control mistakes using Foundry and Echidna.
Write YARA and Sigma rules and run hunt missions that stay useful in noisy, real-world environments.
Working practitioners who genuinely enjoy mentoring. You'll always have someone to ask.

Security researcher focused on finding and responsibly disclosing vulnerabilities. Loves teaching the fundamentals well.

Cloud security engineer who has spent years helping teams design and review resilient hybrid-cloud environments.