Tech Skills

Cybersecurity

Ethical hacking, penetration testing, network security, CTFs and defensive security

32,248
lessons
Skills in this topic
View full skill map →
Security Basics
beginner
Fix OWASP top 10 vulnerabilities
Cryptography Fundamentals
intermediate
Explain how digital signatures prevent tampering
AI Security
intermediate
Identify and patch prompt injection vulnerabilities
Network Security
intermediate
Configure a firewall with proper inbound/outbound rules
Ethical Hacking & Pen Testing
intermediate
Conduct a full pen test with Kali Linux
Cloud Security
intermediate
Implement IAM least-privilege policies on AWS/GCP
Incident Response
intermediate
Build an incident response playbook
Security Compliance
intermediate
Map controls for SOC 2 Type II compliance
Defensive AI
advanced
Build an AI-powered log anomaly detector
All Reads (23,964) Articles (12959)Blog Posts (8663)Tutorials (843)Research Papers (68)News (1431)
‘No Warning’—The Chinese Apps Secretly ‘Spying On Millions’ Of iPhone And Android Users
Forbes Innovation 🔐 Cybersecurity ⚡ AI Lesson 4h ago
‘No Warning’—The Chinese Apps Secretly ‘Spying On Millions’ Of iPhone And Android Users
Proton warns that millions of smartphone users have now installed VPNs that secretly track their phone and location. And many of those VPNs have direct links to
Governance You Can't Grep Isn't Governance
Dev.to · Todd Linnertz 🔐 Cybersecurity ⚡ AI Lesson 7h ago
Governance You Can't Grep Isn't Governance
Earlier this month I clicked a button labeled Freeze, and a validator told me my artifact was...
SSL Warnings Scare Away Customers: Here's How to Fix Them
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 7h ago
SSL Warnings Scare Away Customers: Here's How to Fix Them
Learn why SSL certificate warnings appear, how they affect customer trust and SEO, and how to fix common HTTPS security issues. Continue reading on Medium »
Medium · Data Science 🔐 Cybersecurity ⚡ AI Lesson 7h ago
Typosquatting Attacks
Typosquatting is a cybersecurity technique where attackers register domains that look very similar to legitimate websites Continue reading on Medium »
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 7h ago
Typosquatting Attacks
Typosquatting is a cybersecurity technique where attackers register domains that look very similar to legitimate websites Continue reading on Medium »
Medium · Deep Learning 🔐 Cybersecurity ⚡ AI Lesson 7h ago
Typosquatting Attacks
Typosquatting is a cybersecurity technique where attackers register domains that look very similar to legitimate websites Continue reading on Medium »
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 7h ago
Typosquatting Attacks
Typosquatting is a cybersecurity technique where attackers register domains that look very similar to legitimate websites Continue reading on Medium »
Dev.to AI 🔐 Cybersecurity ⚡ AI Lesson 9h ago
Supply-chain attacks: package cooldowns and policy checks for npm, PyPI and NuGet
On 4 August 2026, a self-propagating worm called ChainDrop tore through npm. BleepingComputer reported more than 1,300 compromised packages with about two billi
The Growing Threat: Attackers Using GitHub Repositories as Malware Staging Mechanisms
Dev.to · Bonnie Smyre 🔐 Cybersecurity ⚡ AI Lesson 10h ago
The Growing Threat: Attackers Using GitHub Repositories as Malware Staging Mechanisms
This blog was originally published by Brian Tant on the Raxis blog January 21, 2026 GitHub has...
3 Wrong Guesses About a Chrome Slot Limit: 3 6 Reserved Lanes
Dev.to · Lily 🔐 Cybersecurity ⚡ AI Lesson 10h ago
3 Wrong Guesses About a Chrome Slot Limit: 3 6 Reserved Lanes
Automation doesn't break when you write it. It breaks in production, weeks later, quietly — and my...
Windows 11 Privacy Guide: Disable Telemetry, Remove Bloatware, and Block Microsoft Tracking
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 11h ago
Windows 11 Privacy Guide: Disable Telemetry, Remove Bloatware, and Block Microsoft Tracking
Microsoft has spent years turning Windows from a traditional desktop operating system into a deeply connected cloud platform. Continue reading on Medium »
What is phishing? Here are some of its types, examples, and ways to protect yourself.
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 11h ago
What is phishing? Here are some of its types, examples, and ways to protect yourself.
Suppose you get an email from your bank stating that your account will be closed within 24 hours unless you verify your details. Being… Continue reading on Medi
I Built a SOC Home Lab on an 8GB M2 Mac. The Constraint Changed How I Built Everything.
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 11h ago
I Built a SOC Home Lab on an 8GB M2 Mac. The Constraint Changed How I Built Everything.
I wanted to build a SOC home lab where I could do more than follow tutorials. Continue reading on System Weakness »
The Best Safe Omegle Alternatives in 2026 (And Why Text-Only is Winning)
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 11h ago
The Best Safe Omegle Alternatives in 2026 (And Why Text-Only is Winning)
Video chat failed the safety test. Here is why ephemeral, AI-moderated text platforms are the new standard for meeting strangers online. Continue reading on Med
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 13h ago
A Practical Guide to Threat Modeling
Designing and implementing a system requires knowing what needs protection, who might threaten it, and how severe that threat could be… Continue reading on Medi
Your Coding Agent Has Your AWS Keys and an Open Internet Connection
Medium · AI 🔐 Cybersecurity ⚡ AI Lesson 13h ago
Your Coding Agent Has Your AWS Keys and an Open Internet Connection
The agent needs the network to install its dependencies. Then it runs code a model wrote, in the same box, with the same unrestricted… Continue reading on Data
The AI Cybersecurity Age Is Here: Companies Must Prepare
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 15h ago
The AI Cybersecurity Age Is Here: Companies Must Prepare
I have no doubts you’ve heard: autonomous AI cybersecurity threats have arrived. Continue reading on Medium »
How Cell Networks Track Your Phone’s Location
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 15h ago
How Cell Networks Track Your Phone’s Location
Ever wonder how a call reaches your phone no matter where you are? Or how your carrier magically finds you the second you step off a plane? Continue reading on
GitHub Recon — Find Secrets on GitHub
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 15h ago
GitHub Recon — Find Secrets on GitHub
Detect exposed APIs, sensitive data, and risky disclosures before they turn into a breach Continue reading on Medium »
Your First Cloud Pentest Isn't Going to Play Out Like Your Last AD Engagement
Dev.to · Rocky 🔐 Cybersecurity ⚡ AI Lesson 16h ago
Your First Cloud Pentest Isn't Going to Play Out Like Your Last AD Engagement
First cloud-focused engagement, and the plan going in looked like every internal AD assessment before...
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
Wired AI 🔐 Cybersecurity ⚡ AI Lesson 16h ago
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
After an affair with a fellow police officer ended, a Georgia cop used Flock to track her movements—and those of a man whose vehicle often showed up near hers,
Your Security Scanner Has a Blind Spot: Streaming
Dev.to · Sangyeon Park 🔐 Cybersecurity ⚡ AI Lesson 17h ago
Your Security Scanner Has a Blind Spot: Streaming
I spent an afternoon convinced my detector was broken. I was building Cencurity, a local gateway...
“The 2 AM Alert: A Full SOC Investigation, From PowerShell to Phishing Email”
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 17h ago
“The 2 AM Alert: A Full SOC Investigation, From PowerShell to Phishing Email”
Not a Conversation, a New Case Continue reading on Medium »
Your Guardrail Prompt Isn’t a Security Control. Here’s the One That Is.
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 17h ago
Your Guardrail Prompt Isn’t a Security Control. Here’s the One That Is.
Apple ranked deterministic controls above probabilistic ones at WWDC26. I wanted the stronger version, so I built it: a 12-tool… Continue reading on Medium »
Your Guardrail Prompt Isn’t a Security Control. Here’s the One That Is.
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 17h ago
Your Guardrail Prompt Isn’t a Security Control. Here’s the One That Is.
Apple ranked deterministic controls above probabilistic ones at WWDC26. I wanted the stronger version, so I built it: a 12-tool… Continue reading on Medium »
The CIA Triad: My First Core Cybersecurity Concept
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 19h ago
The CIA Triad: My First Core Cybersecurity Concept
When I started exploring cybersecurity, I quickly realized that before learning about attacks, tools, or security technologies, I needed… Continue reading on Me
Your iOS App Wrote the Token to the Keychain With a Flag That Copies It Into Every Backup.
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 19h ago
Your iOS App Wrote the Token to the Keychain With a Flag That Copies It Into Every Backup.
The Keychain accessibility attribute decides whether your token leaves the device. Most Flutter apps never set it, and the default changed… Continue reading on
Dev.to AI 🔐 Cybersecurity ⚡ AI Lesson 20h ago
The File Was Private. Until You Shared It.
You don’t need to stop sharing sensitive information. You just need to stop sharing it without control. Think about the last time you sent a confidential file.
9 Questions I Started Asking After Realizing “Remote Access” Wasn’t Really About Location
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 23h ago
9 Questions I Started Asking After Realizing “Remote Access” Wasn’t Really About Location
For the longest time, I thought remote access was pretty straightforward. Someone is working from home. Someone else is sitting in an… Continue reading on Mediu
Retrieving Hidden Data: A Walkthrough of SQL Injection in a WHERE Clause
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Retrieving Hidden Data: A Walkthrough of SQL Injection in a WHERE Clause
If you have been following this series, you already know that injection vulnerabilities happen when an application trusts user input… Continue reading on Medium
The Forgotten Identities Hiding in Your Environment
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
The Forgotten Identities Hiding in Your Environment
Every organization creates identities for a reason. Continue reading on Medium »
JWT não é autenticação: entendendo Access Token, Refresh Token e Rotação
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
JWT não é autenticação: entendendo Access Token, Refresh Token e Rotação
Conhecido como JSON Web Token (JWT), ele está presente em muitas aplicações web modernas. Quando começamos a estudar autenticação, é comum… Continue reading on
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Incident Response for AI Systems: Preparing for Model Failures and Security Breaches
Most incident response plans were written for a world of servers, databases, and predictable failure modes. Continue reading on Medium »
Why Cargo’s Yank Warning Became the Attack
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Why Cargo’s Yank Warning Became the Attack
arrayref 0.3.10 did not need a build script. A yanked-version warning did the rest. Continue reading on Medium »
Why Cargo’s Yank Warning Became the Attack
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Why Cargo’s Yank Warning Became the Attack
arrayref 0.3.10 did not need a build script. A yanked-version warning did the rest. Continue reading on Medium »
Azure Scenario Questions: The NSG Is Green. The Packet Still Dies.
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Azure Scenario Questions: The NSG Is Green. The Packet Still Dies.
Four whiteboard tickets from a 2am NOC. This is Azure — NSG, VNet peering, hub-spoke, and an on-prem firewall into a Palo Alto VM-Series… Continue reading on Me
Taming the Enterprise Proxy: Headless Agents Behind the Corporate Firewall
Medium · LLM 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Taming the Enterprise Proxy: Headless Agents Behind the Corporate Firewall
An Architecture Blueprint for Local SSL Interception, Telemetry GUIs, and Zero-Cloud-Cost ROI Reporting. Continue reading on Medium »
Adding an IDS to the homelab
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Adding an IDS to the homelab
Now that the homelab foundation is complete, I have moved on to setting up an IDS (Intrusion Detection System) and assembling the pieces… Continue reading on Me
Your JWT Decoder Should Never Ask for Your Signing Secret
Dev.to · Vipul Singh 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Your JWT Decoder Should Never Ask for Your Signing Secret
A JWT looks like gibberish until you decode it — three Base64URL segments separated by dots: header,...
Medium · Machine Learning 🔐 Cybersecurity ⚡ AI Lesson 1d ago
My Rate Limiter Only Checked IP Addresses. One VPN Bypassed It and Took Down My API.
I thought I was being clever. I was just being cheap. Continue reading on Medium »
Medium · Programming 🔐 Cybersecurity ⚡ AI Lesson 1d ago
My Rate Limiter Only Checked IP Addresses. One VPN Bypassed It and Took Down My API.
I thought I was being clever. I was just being cheap. Continue reading on Medium »
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
20 Certificate Transparency Tricks for Recon: Master Advanced Asset Discovery for Ethical Hacking
Ever found a subdomain no one else has, just by reading a certificate log? You’re not alone — Certificate Transparency (CT) is the open… Continue reading on Med
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
TryHackMe: Linux Fundamentals Part 3
Intro: This is my experience with lab Linux Fundamentals Part 3 in cyber security 101 room. Continue reading on Medium »
Operationalizing the Splunk AI Assistant for Faster Triage and SPL Generation
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Operationalizing the Splunk AI Assistant for Faster Triage and SPL Generation
Translating Plain English to Advanced SPL Continue reading on Medium »
Step By Step Guide: Deploying Wazuh, Suricata and Virustotal Integration For Real-time Detection…
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Step By Step Guide: Deploying Wazuh, Suricata and Virustotal Integration For Real-time Detection…
During a recent SOC operation involving an unauthorized malware drop on a privileged Linux server (/root), I built and validated an end to… Continue reading on
AI Legal Vendor Security: What Happens to Medical Records?
Medium · Cybersecurity 🔐 Cybersecurity ⚡ AI Lesson 1d ago
AI Legal Vendor Security: What Happens to Medical Records?
The PDF is only the beginning. Security depends on what the AI creates, who can access it, how long it survives, and whether deletion… Continue reading on Mediu
Carhartt data breach affects 12.9M, half of what ShinyHunters claimed
The Register 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Carhartt data breach affects 12.9M, half of what ShinyHunters claimed
One AI and two trained eyes delved into the heavily padded leaks
Rising Cyber Threats In Manufacturing, Solution Goes Far Beyond IT
Forbes Innovation 🔐 Cybersecurity ⚡ AI Lesson 1d ago
Rising Cyber Threats In Manufacturing, Solution Goes Far Beyond IT
Unfortunately, every connection represents another potential entry point for attackers.