Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Computer Science
Artificial Intelligence
Data Science
Intelligenza Artificiale
The Bible's Prehistory, Purpose, and Political Future
Education for All: Disability, Diversity and Inclusion
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Explore Kerberos delegation vulnerabilities in Windows networks, learning techniques for unauthorized impersonation and remote code execution. Gain insights into potential security risks and mitigation strategies.
Vulnerability research on Google’s Titan M security chip, combining firmware fuzzing and emulation to uncover a zero-day enabling code execution and StrongBox key leakage.
Investigates how API exposure in 4G and 5G networks creates attack paths into IoT platforms, devices, and critical infrastructure.
Explore lateral movement between Azure AD joined machines through a new authentication protocol, Pass-the-Certificate attacks, and network-based detection.
Learn how privacy red teams differ from security red teams and how to build operations that uncover privacy weaknesses.
Use pre-silicon power simulation to find and localize side-channel leakage in cryptographic hardware before fabrication.
An examination of how bug bounty programs have evolved, where their incentives and labor practices fall short, and how organizations can build more mature vulnerability coordination.
A technical talk on advancing kernel defenses with pointer-authentication-based control-flow integrity and scalable use-after-free protection.
An examination of whether established Control-Flow Guard bypass techniques still work against Chrome.
A technical walkthrough of ChaosDB, chaining Azure Cosmos DB vulnerabilities to escape a Jupyter container, access internal services, and compromise customer databases.
A chronological analysis of TeamTNT’s cryptojacking campaigns, from Redis exploitation to Docker and Kubernetes targeting, credential theft, lateral movement, and rootkits.
Learn to defend Active Directory Certificate Services by auditing certificate templates, detecting abuse, and planning incident response for certificate-based domain attacks.
Operational guidance for attacking machine-learning models through extraction, evasion, inversion, membership inference, poisoning, and adversarial ML assessment.
Explores HTTP/2 downgrades, tunneling, and malformed requests that enable request smuggling, cache poisoning, and cross-user response attacks.
Explores Windows Defender’s Attack Surface Reduction rules and undocumented signature formats, showing how their implementation can be analyzed and bypassed during security audits.
Get personalized course recommendations, track subjects and courses with reminders, and more.