The security knowledge base

How attacks work.
How defenses hold.

About Hacking explains security the way engineers need it explained: mechanism first, mitigation second, sources always. No fear, no folklore — and nothing here requires breaking the law to learn.

Five pillars, one map

Every article lives in exactly one cluster

  1. 01

    Security Fundamentals

    The mental models everything else is built on.

    63 articles

  2. 02

    Web Security

    How the web gets attacked — and how it holds.

    56 articles

  3. 03

    Network Security

    What actually moves across the wire, and who can touch it.

    51 articles

  4. 04

    Defense & Hardening

    The blue-team playbook: detect, harden, respond.

    53 articles

  5. 05

    Careers & Practice

    Learn legally, prove your skills, get hired.

    50 articles

New to security? Start here

A deliberate path, not a firehose

  1. 01

    Learn the mental models

    Threat models, attack surface, defense in depth — the vocabulary of the field.

    Security Fundamentals
  2. 02

    Understand one attack deeply

    Work through how cross-site scripting actually executes, then how it is stopped.

    Web Security
  3. 03

    Practice legally, prove it

    CTFs, labs you are allowed to attack, and the credentials that count.

    Careers & Practice

Latest articles

Web Security intermediate

The browser padlock does not mean a website is safe

The padlock icon in a web browser shows that encryption is active, but it does not prove a site is secure from attacks or flawed setups like mixed content.

3 min read

Every article names its author, shows its dates, and cites primary sources. That is the whole trick.

Read the editorial policy