Bite-sized courses. Pay with gems.
Each course is a self-contained module: read, watch, practice, quiz. Take them one by one, or chain them into a learning path. Tier 0 is always free, higher tiers cost gems, our in-platform currency you earn by completing labs and challenges.
In-platform currency, not real money. You start with 50 gems on signup, earn more by completing labs (5, 10, 20) and CTF challenges (up to 100). Spend them to unlock paid courses. Tier 0 courses are always free, no gems required.
Foundations
Start here if you're new. Free, no gems required, ever.
Cybersecurity 101
What cyber actually means, the CIA triad, threat modelling, and the basic vocabulary you'll see everywhere.
Linux for cyber
Shell, file system, permissions, processes, networking commands. The bedrock for every other course.
Networking primer
TCP/IP, DNS, HTTP, TLS. Just enough plumbing to understand what the labs are actually doing.
Python for hackers
Scripts, requests, sockets, parsing. The minimum to be dangerous (in your own lab).
Practitioner basics
The core skills any junior cyber needs. 5 gems each.
Web exploitation basics
OWASP top 10 in plain English, with one lab per vuln class. SQLi, XSS, IDOR, the regulars.
Recon & OSINT
Footprinting a target without touching it. Search operators, leak databases, public APIs.
Crypto fundamentals
Symmetric, asymmetric, hashes, MACs, signatures. The mental model behind every TLS handshake.
SOC analyst onboarding
Reading logs, building basic detections, knowing when to escalate. From scratch.
Operator
Applied courses, one technique per module, all hands-on. 15 gems each.
SQLi deep dive
Union, blind, time-based, second-order. Real-world databases, real-world WAF bypasses.
Network pivoting
SSH tunnels, chisel, Ligolo, sliding sideways through three subnets without alarms.
SIEM & detection
Write rules that fire when bad things happen, and shut up when they don't.
SSRF, XXE & friends
The forgotten-but-deadly server-side bugs. Including cloud metadata exploitation.
Specialist
Deep-dive courses on a single area. Long, dense, worth it. 30 gems each.
Active Directory attack
Kerberoasting, AS-REP, ACL abuse, DCSync. Full kill chain on a real-feeling AD lab.
Reverse engineering with Ghidra
From a stripped ELF to identifying the algorithm. Symbols, structures, decompiler tricks.
AWS security audit
IAM, S3, metadata, lateral in AWS. With scripts you'll keep using after the course.
Memory forensics with Volatility
Acquire, profile, hunt. From "what's a dump" to spotting injected code in 30 minutes.
Master
Elite material. Long, expensive, by-invitation challenges inside. 60 gems each.
Advanced binary exploitation
ROP, heap, format string, modern mitigations and how to bypass them.
Custom C2 from scratch
Build a tiny Command & Control framework in Go. Comms, beaconing, OPSEC.
ICS & OT security
Modbus, S7, Profinet. Attack a simulated factory floor, then write the detections.
Start with the free tier. Earn your way up.
Sign in, get your 50 starter gems, and pick your first course.
Open the catalog