
You will learn what the meaning of Cybersecurity is and this course is about.
What's inside, how the labs work, and what you need to get started.
What the field actually protects, beyond the Hollywood image.
Threat, vulnerability, exploit, risk: the words used precisely.
AI-assisted attacks, ransomware and identity abuse, without the hype.
Blue Team, Red Team, GRC: who does what, and how they fit together.
Hands-on: build the free VirtualBox and Linux lab used all course.
CIDR, subnets, private vs public ranges, and what IPv6 changes.
CIDR, subnets, private vs public ranges, and what IPv6 changes.
Resolvers, records and caching - and why DNS is a favorite target.
Ports, their protocols, and a guided look inside a real packet.
How firewalls decide what passes, what NAT hides, layered defense.
Encryption standards, rogue access points and the usual weak spots.
Hands-on: capture live traffic and follow one conversation through it.
Hands-on: find hosts, open ports and services on your own lab network.
Structure, permissions and logging - and why you'll meet both systems.
The small set of commands analysts actually use every day.
Accounts, groups, file permissions, and why least privilege wins.
How authentication works, and which MFA methods resist real attacks.
Provisioning, roles, single sign-on and the joiner-mover-leaver cycle.
Where the important logs live, and how to read one without drowning.
Hands-on: navigate, search and inspect a Linux system from the shell.
Hands-on: set up a password manager and turn on MFA for real.
Secrecy, integrity, identity - and what encryption cannot save you from.
Shared-key encryption, AES in plain terms, and the key problem it makes.
Two keys instead of one, and where you already rely on them daily.
What a hash is, why it isn't encryption, and how it proves integrity.
How signatures prove sender and integrity, and how certificates carry it.
The handshake, the certificate chain, and what the padlock promises.
Hands-on: hash a file, change one character, inspect a real certificate.
How attackers work in stages, from reconnaissance through to impact.
The malware families, how infections arrive, and what each one wants.
The pressure tactics behind phishing, and the red flags that hold.
Flawless lures, cloned voices, deepfakes - and why verification wins.
Ransomware as a business, and why one supplier opens thousands of doors.
Hands-on: read an email's headers and trace where it really came from.
How SQL injection and XSS work, and what the fix looks like.
Denial of service, interception and spoofing, built on Module 2.
How credentials are stolen, cracked and reused at scale.
Tactics, techniques, and how to use the matrix without getting lost.
Hands-on: watch a guided attack play out in a legal browser sandbox.
Tiers, shifts and alert queues: the real daily rhythm of a SOC.
Turning scattered log lines into what happened, and in what order.
What a SIEM collects, how rules fire, and where false alarms start.
Known patterns vs unusual behavior - strengths and blind spots of each.
What endpoint tooling does beyond antivirus, and what XDR adds.
Discovery, scanning, severity and priority - the scan is the easy part.
Containment, evidence and communication while the clock is running.
Hands-on: find the intrusion hiding in a real log file and write it up.
Hands-on: scan your lab machine and read the report like an analyst.
Why the perimeter dissolved, and what Zero Trust means in practice.
Where the provider's job ends and yours begins in the cloud.
Containers for beginners, plus the misconfigurations that keep recurring.
Prompt injection, data leakage, model misuse - and the controls that help.
Policies, risk registers, controls and audits - and why they matter.
What NIST CSF, ISO 27001 and GDPR cover, and how they're used together.
Authorization, scope and disclosure: where learning becomes trespass.
The capstone: trace one incident end to end using all eight modules.
Most cybersecurity courses for beginners explain things. This one has you do them.
Across 58 short lessons and 17 hands-on labs, you build the practical foundation the whole field rests on - and you build it on your own machine, with free tools, in a safe lab you set up in the first module.
You will capture live network traffic in Wireshark and follow a single conversation packet by packet. You will map a network with Nmap. You will work on the Linux command line, dissect a phishing email's headers to find where it really came from, hash a file and watch the hash change when you alter one character, run a vulnerability scan and read the report the way an analyst reads it, and find an intrusion hiding inside an ordinary-looking log file.
The course covers eight areas: an honest map of the field and its core principles; networking foundations; systems, identity and the command line; cryptography in plain English; the 2026 threat landscape including AI-powered attacks and supply-chain compromise; how attacks actually work, from SQL injection to credential theft; defending and responding as a blue-team analyst; and the modern domains driving the field now - Zero Trust, cloud and container security, securing AI systems, governance and ethics.
It ends with a capstone that ties everything together: you trace a single incident from first intrusion through to response, using what you learned in all eight modules, and write it up.
WHAT THIS COURSE IS NOT
It is not a careers course. There is no CV advice, no interview preparation and no certification exam prep here - that is a different course, and mixing the two produces something that does neither well. This one stays on technical fundamentals and hands-on practice.
It also makes no promises about jobs or income. What it offers is the ability to do things you could not do before, and a capstone write-up that shows it.
WHAT YOU NEED
No prior experience with security, networking or programming. A computer that can run a free virtual machine, and the willingness to actually do the labs rather than watch them.
Every tool used is free or a community edition. Nothing in this course requires a purchase.