Live, hands-on technical labs you work directly in your browser. Type real commands into simulated terminals and fix real security problems, the same way an analyst would on the job, no installs required, built to work on locked-down school computers.
8 weekly labs covering network defense, cryptography, endpoint security, wireless & cloud, threat hunting, and governance, ending in a final capstone. Click a card to preview it, then open the full guided lab. More courses are coming soon.
Live terminal lab, two deep missions: audit a real network across four zones and fix the one truly dangerous rule, then investigate login and network logs to catch the real attacker among several look-alikes. ~30 minutes, real commands, real output.
Four live simulated terminals, about 75-90 minutes. Map a real company's attack surface across four zones, research the actual CVEs behind what you find, rank them the way a real analyst would, lock down the perimeter firewall, and then write the incident brief your manager would actually expect on their desk Monday morning.
Four live simulated terminals, about 75-90 minutes. Tell symmetric and asymmetric encryption apart for real, generate an actual SSH key pair, encrypt and sign a message with PGP, and then catch someone trying to fake encryption in a set of intercepted payloads.
Four live simulated terminals, about 75-90 minutes. Hunt down malware hiding as a legitimate process on a workstation, lock down a fleet of mobile devices through MDM, audit users for access they should have lost years ago, and then respond to an incident where a sloppy permission was the real reason the damage spread.
Four live simulated terminals, about 75-90 minutes. Catch a rogue access point hiding among legitimate WiFi, read a wireless attack log and harden clients against it, then find and fix exposed cloud storage buckets and wide-open cloud network rules before someone else does.
Four live simulated terminals, about 75-90 minutes. Run a vulnerability scan across a small fleet, prioritize patches using more than just a CVSS number, investigate real server logs to trace exactly how an incident happened, and write the postmortem that makes sure it doesn't happen the same way twice.
Four live simulated terminals, about 75-90 minutes. Audit a company's controls against the NIST Cybersecurity Framework, find the real gaps in its written policies, fix a business continuity plan that doesn't match what the business actually needs, and run the first hour of response to a live zero-day.
One continuous incident, four missions, about 90 minutes. This is where everything from the last seven weeks comes together. You'll contain a live compromise, trace it back to how it started, work out exactly which data was actually destroyed, and restore the business from a backup that's actually safe to trust.
This page grows every time a new topic is taught. Check back before class.