Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Artificial Intelligence
IT & Networking
Software Engineering
Supporting Victims of Domestic Violence
Know Thyself - The Value and Limits of Self-Knowledge: The Examined Life
Understanding Dementia
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Discover how researchers uncovered 10 vulnerabilities in Google's Quick Share, leading to QuickShell - a complex RCE attack chain exploiting file sharing protocols on Windows and Android.
Discover how dashcams can be compromised in minutes through automated DriveThru attacks, exposing private data and conversations with live demos and countermeasures.
A penetration test of the VW ID.3 reveals how attackers can gain root access to infotainment and gateway modules and install remote backdoors.
A security analysis of web framework data binding uncovers overlooked attack paths, including two vulnerabilities that lead to remote code execution.
Researchers share how persistent failures and setbacks preceded the discovery of critical zero-day vulnerabilities across multiple projects.
An 11-strategy roadmap for adapting security operations as new risks and shifting conditions challenge detection and response.
A demonstration of how a weakness in Kerberos’ legacy RC4 support can be turned into a limited Windows PAC spoofing exploit.
Dirty Vanity uses Windows’ built-in forking mechanism for a code injection technique that challenges endpoint detection and response defenses.
Presents an intelligent workflow for adapting WAF bypass searches to diverse payloads and differing bypass difficulty.
Explores how exposed MQTT servers can open internal networks to attack through connected devices and firmware replacement.
Examines overlooked Android Bluetooth attack surfaces by tracing packet data lifecycles and weak architectural logic in AOSP.
The talk shows how Half-Double Rowhammer exploits disturbance two rows away and why Targeted Row Refresh can assist attackers instead of stopping them.
Learn how public vulnerability disclosures can guide event-based fuzzing, patch analysis, and code-query rules to uncover further bugs.
A technical overview of Android Parcel exploits, from Bundle FengShui to a privileged-process code-execution chain.
A demonstration of how utility NFTs can move across contracts to bypass staking safeguards and exploit marketplace logic.
Get personalized course recommendations, track subjects and courses with reminders, and more.