Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Artificial Intelligence
IT & Networking
Software Engineering
Supporting Victims of Domestic Violence
Know Thyself - The Value and Limits of Self-Knowledge: The Examined Life
Understanding Dementia
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Combine STRIDE threat modeling with FAIR quantitative analysis to express application vulnerabilities as business losses and support strategic security decisions.
Examines design-originated supply chain attacks, from constrained architectures and legacy requirements to malicious influence, with real-world examples and mitigations.
Understand the Kubernetes threat model and actionable recommendations for securely running workloads in managed cloud Kubernetes clusters.
An examination of how people, processes, and tools shape security across modern DevOps pipelines, from vulnerable dependencies and secrets to developer buy-in.
Examines how nation-states, cybercriminals, and insiders exploit IoT, OT, and network devices for persistence, evasion, and attacks—and how to mitigate the risks.
A humorous talk on how parenthood prepares cybersecurity leaders and how they can apply those lessons to improve organizational security.
Learn to detect rogue third-party scripts, expose client-side blind spots, and block attempts to access sensitive data in web applications.
Learn how integrating APIs into External Attack Surface Management can reveal exposed assets and strengthen API security.
Learn how security audits can scrutinize monitoring, CMDB, ticketing, and automation systems—and map their risks to OWASP SAMM.
Use statistically grounded metrics to assess social-engineering resilience beyond email opens and link clicks.
Review OWASP best practices for managing secrets, including CI/CD pipelines, encryption, detection, and response when secrets are exposed.
Learn to expose software’s runtime behavior with JOT, creating security instrumentation without coding to analyze defenses, find vulnerabilities, sandbox applications, and enforce policy.
Use humorous LEGO minifigures and custom builds to make end-user application security training memorable.
Real-world cloud security implementation and migration stories from finance and regulated industries, explored through the continuing misadventures of cartoon companies.
A tour of web applications that hand out too much information, showing how to move between sites and pull data at will.
Get personalized course recommendations, track subjects and courses with reminders, and more.