Cybersecurity, learned like a practitioner.

24 learning paths · 398 modules live · every lesson written by someone who has shipped the control or run the engagement. Free to start.

24
Learning paths
398+
Live modules
0
You've completed
Free
Your tier
Browse the academy

Latest modules

Most recent practitioner playbooks across every track. Filter by topic, level, or search in the sidebar.

538 results · Page 43/54
Attacker Mindset — Network Advanced Members

Wireless — The Perimeter That Moves

Evil Twin, KRACK, PMKID, rogue 802.1X, BLE. $40 of hardware extends the perimeter past the building.

Apr 22, 2026 90 min Open
Attacker Mindset — Network Expert Members

Why Network Detection Underperforms

Encrypted traffic, volume overload, alert fatigue. Why attacker dwell time is weeks to months on average.

Apr 22, 2026 90 min Open
Attacker Mindset — Network Beginner Members

The Network Is Never Flat

Segmentation on paper vs reality. Every network has exceptions attackers exploit for lateral movement.

Apr 22, 2026 60 min Open
Attacker Mindset — Web Beginner Members

Trust Boundaries — Where Every Web Vuln Begins

Every web vuln is a trust-boundary bug. Learn to see boundaries before learning to exploit them.

Apr 22, 2026 60 min Open
Attacker Mindset — Web Intermediate Members

Why Injection Still Happens — A Grammar Problem

Injection isn't about bad input. It's attackers smuggling tokens into an interpreter's grammar.

Apr 22, 2026 75 min Open
Attacker Mindset — Web Intermediate Members

Why Auth Checks Fail — Missing Gates Everywhere

Authentication is one gate. Authorization is every gate after. Most breaches live in the latter.

Apr 22, 2026 75 min Open
Attacker Mindset — Web Advanced Members

Business Logic — Where Scanners Fail

Business logic bugs are legal sequences of actions producing illegal outcomes. Understand the product to find them.

Apr 22, 2026 90 min Open
Attacker Mindset — Web Advanced Members

Why SSRF Is Still Critical in 2026

Every URL parameter where the server fetches. Cloud metadata turned SSRF from inconvenience to catastrophe.

Apr 22, 2026 90 min Open
Attacker Mindset — Web Advanced Members

Why XSS Persists — Context Is Everything

Framework defaults cover one HTML context. Every other context — URL, CSS, JSON-in-script — is fresh attack surface.

Apr 22, 2026 90 min Open
Attacker Mindset — Web Advanced Members

File Upload — Three Attacks in One

Upload = attack at parsing + storage + serving. All three have their own rules, and mistakes compound.

Apr 22, 2026 90 min Open
02 / Why learn here

Practitioners who've
shipped the controls.

Every module is written by someone who has built the defence or run the engagement. No repackaged tutorials, no generic theory.

Why learn here

01

Practitioner-written.

Each lesson is authored by someone who has shipped the control or run the engagement in production.

02

Quiz after every module.

20+ questions with explanations. 70%+ to mark complete. Unlimited retries.

03

Progress tracked.

Completions, scores and streaks saved automatically. Resume exactly where you left off.

04

India-priced.

Start free. ₹499/mo for intermediate. ₹4,999/yr for advanced. No hidden fees, ever.