Welcome to RedSec
What this is, who it's for, and how the learning library is organized.
Welcome to the RedSec learning platform — a free, open guide to offensive security. No accounts, no paywalls. Read top to bottom, or jump to whatever you need from the sidebar.
How this is organized
The learning library is split into sections you can work through in any order:
- Getting started — what red teaming is and how to set up.
- Security foundations — risk, trust boundaries, HTTP, and core concepts.
- Tools and workflows — notes, proxies, evidence, and repeatable testing.
- Linux, networking, web, API, cloud, and containers — the systems you will keep meeting in labs and real assessments.
- CTFs — capture-the-flag formats, tooling, and worked challenges.
- Bug bounties — finding and reporting real-world vulnerabilities for reward.
- Finding vulnerabilities — the core bug classes and how to hunt them.
Each section is a stack of short tutorials, labs, and references. Use the sidebar to open a section, then move through lessons in order or jump to the topic you need.
Where to start
If you’re new, continue to your environment to get a working setup, then pick the section that matches your goal.