Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Artificial Intelligence
IT & Networking
Software Engineering
Supporting Victims of Domestic Violence
Know Thyself - The Value and Limits of Self-Knowledge: The Examined Life
Understanding Dementia
Organize and share your learning with Class Central Lists.
View our Lists Showcase
A practical talk on helping security teams join fast-moving DevOps through smaller security checks, asynchronous testing, developer enablement, and security champions.
Threat-model payment networks and apply application security tools to protect payment flows from fraud, money loss, and personal-data exposure.
Explore how cryptographic implementation mistakes enable attacks, including weak randomness, reused keys, CBC padding oracles, bit flipping, and vulnerable password hashing.
Blue-team defense lessons drawn from forensic evidence of the 2016 election hacking campaign.
Explore an engineering-first approach to building scalable threat detection programs that cut alert noise and improve security returns.
Learn how security teams can use meaningful metrics to communicate their value across the company.
Explores strategies that build a proactive security culture in an organization, alongside approaches that failed.
Explore the creation of BSidesSF's Astronaut Badge, from technical aspects to logistics, and learn about innovative PCB printing with colorful artwork.
A security talk shows how teams can confidently ignore most noisy software supply chain vulnerability alerts and reshape their security workflows.
Stories from seven years of physical security testing show how testers used bypasses and social engineering pretexts to defeat security.
Examines Vermilion Strike, a cross-platform Cobalt Strike Beacon reimplementation used in real-world attacks against Linux and Windows.
Learn how detecting JavaScript packers can reveal obfuscated files used in phishing, Magecart, supply-chain injection, and malware droppers.
Explores Hermes, a Swift implant for red teaming macOS, its Mythic C2 integration, capabilities, and detection with Apple's ESF.
Explains WireGuard’s implementation, protocol, and cryptography, comparing its security and performance with IPsec, ngrok, and OpenVPN.
Demonstrates “Webhook Boomerang” attacks that exploit API webhooks for SSRF and cloud-credential compromise despite metadata-header protections.
Get personalized course recommendations, track subjects and courses with reminders, and more.