Zero knowledge → degree → professional → expert

Cybersecurity

Threats, defence, ethical hacking and secure design

64 structured topics, each reinforced with plain-language teaching, memory hooks, hands-on practice, retrieval, teach-back, speed recall, professional transfer and spaced review.

Start learning

How mastery works

1. Five-year-old simple

Every new term is explained without assumed knowledge and linked to a familiar picture.

2. Do it

Guided labs, typing, diagrams, configurations, queries or professional artefacts turn words into usable skill.

3. Retrieve it

No-peeking recall, teach-back and 60-second checks force the brain to retrieve instead of recognise.

4. Use it professionally

Failure modes, security, evidence, capstones and spaced repetition build degree and workplace fluency.

Course topics

  1. What is Cybersecurity? — Overview and importance
  2. CIA Triad — Confidentiality, integrity, availability
  3. Threat Landscape — Common cyber threats
  4. Types of Attacks — Malware, phishing, DoS
  5. Social Engineering — Manipulation techniques
  6. Malware Classification — Viruses, worms, trojans, ransomware
  7. Phishing Attacks — Email and web phishing
  8. DoS & DDoS Attacks — Denial of service
  9. Network Security Basics — Firewalls and segmentation
  10. Firewalls — Types and configuration
  11. IDS & IPS — Detection and prevention
  12. VPN Technology — Virtual private networks
  13. Network Monitoring — Traffic analysis tools
  14. Wireless Security — WPA, WPA2, WPA3
  15. Cryptography Basics — Encryption fundamentals
  16. Symmetric Encryption — AES, DES, shared keys
  17. Asymmetric Encryption — RSA, public/private keys
  18. Hashing Algorithms — MD5, SHA, integrity
  19. Digital Signatures — Authentication and non-repudiation
  20. PKI & Certificates — Certificate authorities
  21. TLS/SSL — Secure communications
  22. Web Security Vulnerabilities — OWASP Top 10
  23. Cross-Site Scripting (XSS) — Script injection attacks
  24. SQL Injection — Database attacks
  25. CSRF Attacks — Cross-site request forgery
  26. Secure Coding Practices — Input validation, output encoding
  27. Authentication Security — MFA, OAuth, passwords
  28. Password Security — Hashing, salting, policies
  29. Access Control — RBAC, ABAC, DAC, MAC
  30. Identity Management — IAM, SSO, directory services
  31. Incident Response — IR process and procedures
  32. IR Lifecycle — Prepare, detect, contain, recover
  33. Digital Forensics — Evidence collection and analysis
  34. Security Policies — Creating and enforcing policies
  35. Compliance Frameworks — ISO 27001, NIST, GDPR
  36. Risk Analysis — Threat modeling and assessment
  37. Security Awareness — Training and culture
  38. Cloud Security — Shared responsibility model
  39. Container Security — Docker and Kubernetes security
  40. DevSecOps — Security in CI/CD
  41. Penetration Testing Intro — Ethical hacking methodology
  42. Reconnaissance — Information gathering (OSINT)
  43. Scanning & Enumeration — Nmap, port scanning
  44. Exploitation — Gaining access to systems
  45. Post-Exploitation — Privilege escalation, pivoting
  46. Reporting — Writing pentest reports
  47. Kali Linux Tools — Metasploit, Burp Suite, Wireshark
  48. CompTIA Security+ Domains — Exam overview and domains
  49. Threats & Attacks (SY0-701) — Attack types and indicators
  50. Security Architecture — Enterprise security design
  51. Security Implementation — Controls and protocols
  52. Security Operations — Monitoring and response
  53. Governance & Compliance — Risk and policy management
  54. SOC Introduction — Security Operations Center
  55. SIEM Systems — Security information & event management
  56. Log Analysis — Analyzing security logs
  57. Threat Intelligence — CTI feeds and analysis
  58. Vulnerability Management — Scanning and remediation lifecycle
  59. Endpoint Security — EDR, antivirus, host hardening
  60. Zero Trust Architecture — Never trust, always verify
  61. Advanced Cloud Security — AWS/Azure/GCP security controls
  62. Mobile Security — iOS/Android app security, MDM
  63. Red Team vs Blue Team — Offensive and defensive exercises
  64. Security Automation — SOAR, scripting, automated response

← View the complete AIblty curriculum