Short lessons in plain language, each with something you can try. Most topics take one sitting, and you never need a degree or a special setup to follow along.

Start with networking Browse all topics

Try the oldest cipher

Julius Caesar is said to have shifted every letter in a message by a fixed number. Type something and move the slider.

Plain letter

Becomes

There are only 25 useful shifts, so anyone can try them all in a few seconds. That weakness is why modern encryption exists, and it’s where the lessons below begin.




Every attack and every defense happens on a network. Start by understanding what actually travels between your laptop and a website.


Most servers, and most security tools, live in a terminal. You’ll set up a safe virtual machine and get comfortable breaking things in it.


The handful of concepts that show up everywhere: what you’re protecting, who might go after it, and how hashing and encryption fit in.


Once the basics are clear, attacks stop looking like magic. You’ll see how each one works and what makes it possible.


The other half of the job: noticing something is wrong, working out what happened, and making sure it doesn’t happen twice.



Security has a lot of jargon. These six come up constantly, so here they are in plain English.

A weakness in a system that someone could take advantage of.

The method or code that actually takes advantage of a vulnerability.

The part of an attack that does the damage once the exploit gets in.

A fixed-length fingerprint made from some data. The same input always gives the same result, and you can’t work backwards from it.

Whoever is behind an attack, from a lone hobbyist to an organized group.

A vulnerability nobody has fixed yet, often because the vendor doesn’t know about it.

See the full glossary


Reading only takes you so far. The practice section has small labs and challenges that match what’s covered here, with hints when you get stuck.