Getting started

Welcome to RedSec

What this is, who it's for, and how the learning library is organized.

intro tutorial

Welcome to the RedSec learning platform — a free, open guide to offensive security. No accounts, no paywalls. Read top to bottom, or jump to whatever you need from the sidebar.

How this is organized

The learning library is split into sections you can work through in any order:

  • Getting started — what red teaming is and how to set up.
  • Security foundations — risk, trust boundaries, HTTP, and core concepts.
  • Tools and workflows — notes, proxies, evidence, and repeatable testing.
  • Linux, networking, web, API, cloud, and containers — the systems you will keep meeting in labs and real assessments.
  • CTFs — capture-the-flag formats, tooling, and worked challenges.
  • Bug bounties — finding and reporting real-world vulnerabilities for reward.
  • Finding vulnerabilities — the core bug classes and how to hunt them.

Each section is a stack of short tutorials, labs, and references. Use the sidebar to open a section, then move through lessons in order or jump to the topic you need.

Where to start

If you’re new, continue to your environment to get a working setup, then pick the section that matches your goal.