Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Computer Science
Artificial Intelligence
Data Science
Intelligenza Artificiale
The Bible's Prehistory, Purpose, and Political Future
Education for All: Disability, Diversity and Inclusion
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Examines how inconsistent identity permissions across cloud providers can expose sensitive data and create paths to privilege escalation.
A vulnerability audit chains flaws in a popular identity provider into unauthenticated remote code execution as root.
Examines whether AI-generated voice detection methods remain reliable outside laboratory settings.
Explains how Apple’s Endpoint Security Framework turns macOS event data into behavioral detections, including pivots for more advanced detection methods.
Examines how Microsoft’s dynamic hashing design in IIS can be destabilized through hash table collision attacks.
A standards-based fuzzing framework probes WebAssembly runtimes for VM escapes and remote code execution vulnerabilities.
A practical demonstration of how intentional electromagnetic interference can exploit touchscreen devices and expose gaps in their resilience.
Shows how powerful Kubernetes system pods can turn a container escape into cluster-wide privilege escalation, and how to identify and mitigate those paths.
A technical walkthrough of exploiting two SAP HTTP server memory corruption flaws through protocol techniques and the server’s inter-process communication mechanisms.
A reverse-engineering look at how Industroyer2 uses IEC-104 to target Ukrainian power-grid equipment.
A security review of GitHub Copilot shows how its prompts can produce vulnerable code, from SQL injections to buffer overflows.
A pragmatic, compassionate harm-reduction approach to cybersecurity addresses unavoidable risk where abstinence-based guidance may increase harm.
A systematic analysis of CPU vulnerabilities reveals how transient-execution attacks and architectural flaws can arise from the same kinds of bugs.
Shows how a malicious RPKI publication point can stall relying-party software, disable route-origin validation, and expose networks to prefix hijacks.
The playbook adapts lessons from aviation incident investigations to create a shared historical narrative of major cyber incidents through independent review.
Get personalized course recommendations, track subjects and courses with reminders, and more.