Skip to content

Learning

A curated list of learning platforms, courses, and documentation within cybersecurity.

Hands-on Platforms

C

CampFire Security

featured

Danish cybersecurity learning platform with courses and workshops aimed at both beginners and experienced security professionals.

danishcoursesworkshopsbeginneradvanced
Hack The Box

Hack The Box

featured

Advanced pentesting platform with machines, challenges and a structured Academy with courses from beginner to expert.

advancedctfpentestingred-teamacademy
PentesterLab

PentesterLab

featured

Hands-on platform focused on web application security. Exercises built around real vulnerabilities such as SQL injection, XSS, XXE and deserialisation.

webappseclabshands-on
S

SagaLabs

featured

Danish cybersecurity platform with hands-on labs and exercises. Focuses on practical learning in network security and hacking.

danishhands-onlabsnetworkbeginner
TryHackMe

TryHackMe

featured

Beginner-friendly platform with guided learning rooms covering hacking, networking and defence. Perfect for starting from scratch.

beginnerctfhands-onlinuxweb
C

CloudGoat

Rhino Security Labs' deliberately vulnerable AWS environment, deployed into your own account with Terraform. Scenario-based attack paths covering privilege escalation, exposed services and IAM abuse.

cloudawshands-onopen-sourceprivilege-escalationfree
c

crackmes.one

Large community archive of reverse engineering challenges graded by difficulty and platform. The most direct way to build practical RE skill with Ghidra, IDA or radare2.

reverse-engineeringmalwarehands-onfree
C

CryptoHack

Cryptography learned by breaking it. Progressive challenges on block ciphers, RSA, elliptic curves and real-world protocol flaws, with a friendly on-ramp for people without a maths background.

cryptographyctfhands-onfree
C

Cryptopals Crypto Challenges

Eight sets of exercises that walk you through implementing and then breaking real cryptographic constructions. Demanding, self-paced, and still the best way to understand why crypto fails in practice.

cryptographyhands-onprogrammingfree
f

flAWS.cloud

Scott Piper's classic AWS security challenge. Work through a series of realistic S3, IAM and metadata-service misconfigurations in a live AWS account, one hint at a time.

cloudawshands-onmisconfigurationfree
OffSec PEN-200 (OSCP)

OffSec PEN-200 (OSCP)

The world's most recognised penetration testing course from Offensive Security. Hands-on lab environment focused on practical exploitation, privilege escalation and report writing.

pentestoscpcertificationhands-on
TCM Security

TCM Security

Practically focused courses in ethical hacking and pentesting. Known for the Practical Ethical Hacking course and affordable pricing.

pentestingcoursesethical-hackingcertifications

Application Security

Offensive Security

Defence & Threat Intelligence

C

Center for Cybersikkerhed (CFCS)

featured

Denmark's national cyber security authority. Publishes the annual "Cybertruslen mod Danmark" threat assessment, sector-specific assessments and practical guidance on NIS2, crisis management and technical hardening. Now part of Styrelsen for Samfundssikkerhed.

danishthreat-intelgovernmentnis2guidancefree
C

CyberDefenders

featured

Blue team labs built on real forensic artefacts — packet captures, memory images and disk images from genuine intrusions. Strongest option for moving toward a DFIR or incident response role.

blue-teamdfirforensicsthreat-huntinghands-on
L

LetsDefend

featured

Blue team training platform that simulates a real SOC. Work actual alerts in a mock SIEM, triage incidents and practise the analyst workflow rather than just reading about it.

blue-teamsocincident-responsehands-on
M

MITRE ATT&CK

featured

Globally recognised knowledge base of attack techniques and tactics used by threat actors. An indispensable reference for threat modelling and SOC work.

documentationthreat-inteltacticsblue-teamsoc
S

SektorCERT

featured

The CERT for Denmark's critical infrastructure sectors, operating a sensor network across member organisations. Publishes threat assessments and incident reports — including the 2023 report on the attacks against the Danish energy sector.

danishcritical-infrastructurethreat-intelotfree
A

ANY.RUN

Interactive malware sandbox you can click around in while the sample detonates. Free tier gives access to a large public archive of analysed samples and their behaviour.

malwaresandboxanalysisthreat-intel
A

Atomic Red Team

Red Canary's library of small, portable tests mapped to MITRE ATT&CK techniques. Run them to verify your detections actually fire — the practical bridge between ATT&CK as a reference and ATT&CK as coverage you can prove.

detection-engineeringmitre-attckpurple-teamopen-sourcefree
B

Blue Team Labs Online

Gamified defensive challenges covering incident response, digital forensics, threat hunting and reverse engineering. Purely blue team — no red team content mixed in.

blue-teamdfirthreat-huntinghands-onctf
D

DKCERT

The Danish research and education network CERT, run by DeiC. Publishes advisories, the annual trend report on Danish cyber security incidents, and accessible write-ups of current vulnerabilities.

danishcertadvisoriesthreat-intelfree
M

Malware-Traffic-Analysis.net

Brad Duncan's long-running archive of real malware packet captures with guided exercises. The standard free resource for learning to read malicious network traffic in Wireshark.

networkpcapwiresharkmalwareblue-teamfree
S

Sigma

Vendor-neutral signature format for SIEM detection rules, with a large open rule repository. Write a detection once and convert it to Splunk, Sentinel, Elastic or whatever you actually run.

detection-engineeringsiemblue-teamopen-sourcefree
T

The DFIR Report

In-depth threat intelligence reports and real-world incident response case studies covering malware, ransomware, and adversary techniques.

dfirforensicsincident-responsemalwareblue-teamthreat-intel

Standards & Documentation

Governance, Risk and Compliance

CTF

Videos & Blogs

Security Podcasts

Know a resource that's missing?

Create a new markdown file in src/content/learning/ and open a pull request.

Contribute on GitHub