curriculum

Learning paths

A guided progression from networking fundamentals to specialized offensive and defensive tracks. Pick a path or follow them in order.

  1. stage 01

    Foundations

    Build the bedrock every security professional needs: TCP/IP, the Linux command line, and scripting fundamentals in Python.

    BeginnerCompTIA Security+
    TCP/IPBashPythonWireshark
    3 modules · 42hEnter path
  2. stage 02

    Reconnaissance & Scanning

    Learn passive and active reconnaissance — strictly within authorized scope — using Nmap, Amass, and OSINT tooling.

    BeginnereJPT
    OSINTNmapAmassScope rules
    2 modules · 28hEnter path
  3. stage 03

    Web Application Security

    Hands-on exploration of injection, auth, access control, SSRF and more — defending and attacking with permission.

    IntermediatePNPT
    OWASPBurp SuiteSQLiXSSSSRF
    3 modules · 56hEnter path
  4. stage 04

    Network Exploitation

    Internal network attack chains: SMB, Kerberos, Active Directory abuse — performed only in licensed lab environments.

    AdvancedOSCP
    Active DirectoryKerberosPivotingC2
    2 modules · 64hEnter path
  5. stage 05

    Privilege Escalation

    Identify misconfigurations, kernel quirks, and credential reuse leading to elevation — with mitigation guidance.

    AdvancedOSCP
    LinPEASWinPEASToken abuse
    2 modules · 36hEnter path
  6. stage 06

    Reporting & Professional Practice

    Engagement scoping, rules of engagement, executive summaries, CVSS, and remediation guidance.

    IntermediatePNPT
    ReportingCVSSScopingCommunication
    1 modules · 18hEnter path
  7. stage 07

    Specialization: Cloud Security

    IAM misconfig, metadata services, container escapes — and the controls that stop them.

    AdvancedCEH
    AWS IAMK8sContainer security
    1 modules · 40hEnter path
  8. stage 08

    Specialization: Mobile & IoT

    Reverse engineering mobile apps and probing IoT firmware in lab conditions.

    ExpertCEH
    FridaMobSFFirmware
    1 modules · 48hEnter path