root@css:~$ ./guides --list --all

Cyber Security Guides

Structured, hands-on tutorials from absolute beginner to advanced defender. Every guide is free, emphasizes ethical and authorized practice, and includes real commands you can follow along with.

FeaturedBeginner → Advanced

Metasploit Learning Center

A structured, multi-level learning path covering Metasploit fundamentals, vulnerability assessment, and defensive security — with progress tracking and achievements.

Open

root@css:~$ msfconsole --learn

Metasploit Learning Guide

Learn the fundamentals of Metasploit, vulnerability management, and defensive cybersecurity practices.

This guide is intended for educational and defensive cybersecurity purposes only. Always perform security testing in authorized environments and training labs.

Overall progress0% (0/23)
First StepsFoundationsAssessorArchitectCompletionist

Glossary

Framework

A structured collection of tools and conventions for organizing security work.

Vulnerability

A weakness in software, configuration, or process that could be misused.

Risk

The combination of how likely a weakness is to be exploited and its potential impact.

CVE

Common Vulnerabilities and Exposures — a public catalog identifier for a known weakness.

Snapshot

A saved VM state you can restore to undo changes instantly.

Scope

The explicitly authorized set of systems and actions for an assessment.

Knowledge checks

  • I can explain what Metasploit is and why defenders study it.
  • I can describe the four risk levels and what changes between them.
  • I can name the common ports for SSH, DNS, HTTP, and HTTPS.
  • I can set up an isolated virtual lab with a safe training target.

Cybersecurity career roadmap

  1. stage 01

    Beginner

    • Linux
    • Networking
    • Security Fundamentals
  2. stage 02

    Intermediate

    • Vulnerability Management
    • Security Operations
  3. stage 03

    Advanced

    • Threat Hunting
    • Detection Engineering
    • Incident Response
  4. stage 04

    Expert

    • Security Leadership
    • Enterprise Risk Management

Conclusion

The goal of learning Metasploit is not offensive activity. The goal is understanding vulnerabilities, improving defenses, validating security controls, and helping organizations become more secure.