Cybersecurity guides for beginners
Clear explanations with concrete examples, always including the part that matters most: how to defend. Each guide points to the PurpleDuel labs and cards where you can try the same ideas in a simulated environment.
- What is phishing and how to spot it
What phishing is, the warning signs of a scam message, a worked example, how to defend yourself and what to do if you already clicked.
- What is a CTF and how to get started
What a CTF (Capture The Flag) is, the formats and challenge categories, how to start from zero with a practical example and why it helps defenders too.
- Red team, blue team and purple team: what is the difference?
The difference between red team, blue team and purple team in cybersecurity: roles, typical activities, an example exercise and the idea behind PurpleDuel.
- SQL injection explained: what it is and how to prevent it
What SQL injection is at a conceptual level, why it happens, vulnerable code and the defences: parameterised queries, least privilege, generic errors.
- Brute force and strong passwords: how they work and how to defend
How brute-force, dictionary and credential-stuffing attacks work, why password length matters most and how to protect accounts and systems.
- MFA and passkeys: what they are and how to use them to protect your accounts
Multi-factor authentication and passkeys explained: the factor types, SMS vs app vs hardware keys, how a passkey works and how to switch them on.