Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Artificial Intelligence
IT & Networking
Software Engineering
Supporting Victims of Domestic Violence
Know Thyself - The Value and Limits of Self-Knowledge: The Examined Life
Understanding Dementia
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Automated vulnerability discovery in embedded TCP/IP stacks using binary analysis, symbolic execution, firmware inspection, and live network traffic.
Learn to fuzz macOS userland binaries, file parsers, and network services while debugging and triaging crashes.
Examines exploiting an Android kernel use-after-free vulnerability with ret2bpf, bypassing CONFIG_ARM64_UAO, and achieving local privilege escalation.
A technical analysis of JDBC attack derivations, root causes, and exploitation paths from XXE to RCE, including disclosed zero-day vulnerabilities.
An investigation of SHADOWPAD’s plugin-based malware ecosystem, customer business model, user clusters, and impact on China-based espionage operations.
Technical analysis of CloudDragon’s phishing sites, 2FA bypass methods, evolving campaigns, and associated malware across Windows and Android.
An analysis of CVE-2020-14364 and a method for escaping a QEMU virtual machine through a USB device without relying on prior system information.
Examines Windows service privilege escalation from SERVICE to SYSTEM, including SeImpersonatePrivilege abuse, Potato exploits, and a new NTLM relay attack.
Explore how a specialized fuzzer uncovered 10+ VirtualBox vulnerabilities, from attack-surface analysis to exploit primitives and a demonstrated virtual-machine escape.
Examines JavaScript bridge vulnerabilities in hybrid mobile apps, introducing a new attack model, automated vetting tool, and RichInterface mitigation.
A keynote on smartphone attacks, signs of compromise, mobile EDR/DFIR investigations, and accessible mobile-device self-defense.
A hands-on demonstration of OSAS, an open-source machine learning framework for customizable anomaly-detection pipelines and security threat analysis.
A practical demonstration of using signed Windows drivers and IOCTLs to add kernel-mode capabilities to red-team post-exploitation, including credential dumping, process injection, and C2.
Examines macOS sandboxing and TCC permissions, including bypasses enabling sandbox escapes, permission theft, and privilege escalation.
Explores how hackers break and clone point-of-sale terminals to cash out despite anti-tampering and cryptographic protections.
Get personalized course recommendations, track subjects and courses with reminders, and more.