<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[Cyber Notes]]></title><description><![CDATA[Cloud Security Projects, Essays & Guides. 

☁️ Free Cloud Security Starter Pack in welcome Email ⬇️]]></description><link>https://www.cybernotes.tech</link><image><url>https://substackcdn.com/image/fetch/$s_!wiuw!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png</url><title>Cyber Notes</title><link>https://www.cybernotes.tech</link></image><generator>Substack</generator><lastBuildDate>Sun, 17 May 2026 04:08:02 GMT</lastBuildDate><atom:link href="https://www.cybernotes.tech/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[W J Pearce]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[gradedinfo@gmail.com]]></webMaster><itunes:owner><itunes:email><![CDATA[gradedinfo@gmail.com]]></itunes:email><itunes:name><![CDATA[W J Pearce]]></itunes:name></itunes:owner><itunes:author><![CDATA[W J Pearce]]></itunes:author><googleplay:owner><![CDATA[gradedinfo@gmail.com]]></googleplay:owner><googleplay:email><![CDATA[gradedinfo@gmail.com]]></googleplay:email><googleplay:author><![CDATA[W J Pearce]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[How to run Gemma4 Locally with Claude Code 🌟]]></title><description><![CDATA[No more hitting those limits!]]></description><link>https://www.cybernotes.tech/p/how-to-run-gemma4-locally-with-claude</link><guid isPermaLink="false">https://www.cybernotes.tech/p/how-to-run-gemma4-locally-with-claude</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 03 May 2026 18:30:54 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!0umK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="http://cybernotes.tech">Agentic AI Hacking Project &#129302;</a></p><p><strong>Next Issue: </strong><a href="http://cybernotes.tech">Claude Code for Cloud Security: What you should know &#127785;&#65039;</a></p><div><hr></div><h3>Quick one this week&#8230; </h3><p>I want to show you how to run Gemma 4, Google&#8217;s free open source model, locally.</p><p><strong>This is cool enough on its own,</strong> and running local AI models is something you should definitely do at least once before you deploy them into the cloud. But for my use case here, it&#8217;s to avoid hitting those pesky Claude code limits every two minutes.</p><p>You don&#8217;t have to use Gemma 4 here, but if you take a look at the recent benchmarks compared to some of the bigger models, it&#8217;s really worth at least trying it out.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0umK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0umK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 424w, https://substackcdn.com/image/fetch/$s_!0umK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 848w, https://substackcdn.com/image/fetch/$s_!0umK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 1272w, https://substackcdn.com/image/fetch/$s_!0umK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0umK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png" width="638" height="528.9401709401709" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:582,&quot;width&quot;:702,&quot;resizeWidth&quot;:638,&quot;bytes&quot;:47168,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!0umK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 424w, https://substackcdn.com/image/fetch/$s_!0umK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 848w, https://substackcdn.com/image/fetch/$s_!0umK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 1272w, https://substackcdn.com/image/fetch/$s_!0umK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a569d43-8e7f-45f5-9809-3ad8041d4e8e_702x582.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.cybernotes.tech/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption"><strong>Cyber Notes</strong> is a reader supported publication. To receive new posts and access to all projects considering becoming a subscriber &#128640;</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p><strong>Step One: </strong>Install<strong> </strong>Claude Code</p><p>You&#8217;ll of course need to have Claude Code installed, follow this guide if you haven&#8217;t:</p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;b1227149-e68f-4ddf-8fdc-016d9d24dd1b&quot;,&quot;caption&quot;:&quot;Last Week: The Ultimate Docker Project: Part One &#128011;&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;size&quot;:&quot;lg&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;How to Install And Use Claude Code&quot;,&quot;publishedBylines&quot;:[{&quot;id&quot;:100797762,&quot;name&quot;:&quot;W J Pearce&quot;,&quot;bio&quot;:&quot;Cyber Security Engineer / YouTuber&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/31d30c5a-0775-4efa-8cac-b6b9dfda9c05_361x361.jpeg&quot;,&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:100}],&quot;post_date&quot;:&quot;2025-07-20T18:30:11.894Z&quot;,&quot;cover_image&quot;:&quot;https://substackcdn.com/image/fetch/$s_!erJ3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0546d1a2-666e-4ade-aa32-97bdc3804aa7_793x411.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.cybernotes.tech/p/how-to-install-and-use-claude-code&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:168449843,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:13,&quot;comment_count&quot;:1,&quot;publication_id&quot;:2139894,&quot;publication_name&quot;:&quot;Cyber Notes&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!wiuw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><div><hr></div><p><strong>Step Two: </strong>Install Ollama</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!8GsW!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!8GsW!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 424w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 848w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 1272w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!8GsW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png" width="435" height="448.5191956124314" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:564,&quot;width&quot;:547,&quot;resizeWidth&quot;:435,&quot;bytes&quot;:56008,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!8GsW!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 424w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 848w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 1272w, https://substackcdn.com/image/fetch/$s_!8GsW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff8145e98-0ae6-47cc-a0a1-558a18f0cb21_547x564.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>You can do this with the single command, here: <a href="https://ollama.com/">https://ollama.com/</a></p><p>Once installed you should see a blank chat terminal with the model selector the bottom right </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Etei!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Etei!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 424w, https://substackcdn.com/image/fetch/$s_!Etei!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 848w, https://substackcdn.com/image/fetch/$s_!Etei!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 1272w, https://substackcdn.com/image/fetch/$s_!Etei!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Etei!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png" width="1135" height="620" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:620,&quot;width&quot;:1135,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:62776,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Etei!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 424w, https://substackcdn.com/image/fetch/$s_!Etei!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 848w, https://substackcdn.com/image/fetch/$s_!Etei!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 1272w, https://substackcdn.com/image/fetch/$s_!Etei!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7ef79289-74f2-468f-9b85-2f118ed1be69_1135x620.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div><hr></div><p><strong>Step Three: </strong>Download Gemma 4</p><p>Now, the Gemma 4 model comes in quite a few sizes, and we want to get the right one for our machine. This will obviously depend on what hardware you&#8217;re running.</p><p>I have a Mac mini M4 Pro here, so I pasted my system specs into Claude and asked it to recommend the best model for my setup.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!OTBc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!OTBc!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 424w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 848w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 1272w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!OTBc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png" width="668" height="179" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:179,&quot;width&quot;:668,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:51077,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!OTBc!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 424w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 848w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 1272w, https://substackcdn.com/image/fetch/$s_!OTBc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5e021e3a-4efb-4369-ac90-0d450e045add_668x179.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>So all we need to run now is:</p><div class="highlighted_code_block" data-attrs="{&quot;language&quot;:&quot;plaintext&quot;,&quot;nodeId&quot;:&quot;adad2a10-e614-42aa-8a77-ac33bda61884&quot;}" data-component-name="HighlightedCodeBlockToDOM"><pre class="shiki"><code class="language-plaintext">ollama run gemma4:26b</code></pre></div><div><hr></div><p><strong>Step Four: </strong>Validation</p><p>You can now navigate back to Ollama and you should see the Gemma4 model we downloaded in the bottom right:"</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!XDZq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!XDZq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 424w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 848w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 1272w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!XDZq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png" width="581" height="420.14159292035396" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:572,&quot;width&quot;:791,&quot;resizeWidth&quot;:581,&quot;bytes&quot;:29380,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!XDZq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 424w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 848w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 1272w, https://substackcdn.com/image/fetch/$s_!XDZq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ed5da3d-1ecb-4a60-a953-3df09e39ea76_791x572.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div><hr></div><p><strong>Step Five: </strong>Running with Claude Code</p><p>We now want to configure this to be the default model with Claude Code. So open a new terminal and run:</p><div class="highlighted_code_block" data-attrs="{&quot;language&quot;:&quot;plaintext&quot;,&quot;nodeId&quot;:&quot;0440e500-f9b5-49e2-bdd8-6bc35f62a1ea&quot;}" data-component-name="HighlightedCodeBlockToDOM"><pre class="shiki"><code class="language-plaintext">ollama run gemma4:26b</code></pre></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tp2f!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tp2f!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 424w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 848w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 1272w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tp2f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png" width="609" height="261" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:261,&quot;width&quot;:609,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:44101,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!tp2f!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 424w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 848w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 1272w, https://substackcdn.com/image/fetch/$s_!tp2f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F645c32e5-cf4c-4b0c-9085-2e78346a89ce_609x261.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Select the model from more and then start claude code and run <code>/model </code>selecting Gemma4</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3K5t!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3K5t!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 424w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 848w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 1272w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3K5t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png" width="924" height="245" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e08bede4-d4ff-4060-a442-484ae1948587_924x245.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:245,&quot;width&quot;:924,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:35682,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194597431?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!3K5t!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 424w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 848w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 1272w, https://substackcdn.com/image/fetch/$s_!3K5t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe08bede4-d4ff-4060-a442-484ae1948587_924x245.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Congratulations &#127881; </p><p>You are now running a local AI Model and you&#8217;ve got Claude Code using it as the default.</p><div><hr></div><p><strong>W J Pearce - Cyber Notes</strong></p><p><em>Calm, practical &amp; self paced training to help you break into Cloud Security &amp; DevSecOps</em></p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rKhC!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rKhC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 424w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 848w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1272w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png" width="1456" height="772" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/df391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:772,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:555834,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff0f4ee27-789b-45a5-bdff-eddb2af3398c_2614x1148.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!rKhC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 424w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 848w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1272w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[Agentic AI Hacking Project 🤖]]></title><description><![CDATA[The bar keeps getting lower...You need to go higher...]]></description><link>https://www.cybernotes.tech/p/agentic-ai-hacking-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/agentic-ai-hacking-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 19 Apr 2026 18:30:55 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!AE0g!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://wjpearce.substack.com/p/deploy-faster-on-aws-ec2-vs-lightsail">Deploy Faster on AWS: EC2 vs Lightsail (Hands On Guide)</a></p><p><strong>Next Issue: </strong><a href="http://cybernotes.tech">How to run Gemma 4 Locally with Claude Code &#127775;</a></p><div><hr></div><p>I&#8217;ve recently covered two methods of AI hacking. <strong>Let&#8217;s go one step further today.</strong></p><p>The first one was great but effectively a gpt wrapper. </p><p>The second got a little more complex: We set up an MCP server with Kali, but still pretty simple. </p><div class="embedded-post-wrap" data-attrs="{&quot;id&quot;:186625801,&quot;url&quot;:&quot;https://www.cybernotes.tech/p/ai-pentesting-project&quot;,&quot;publication_id&quot;:2139894,&quot;publication_name&quot;:&quot;Cyber Notes&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!wiuw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png&quot;,&quot;title&quot;:&quot;Easy AI Pentesting Project &#128137;&quot;,&quot;truncated_body_text&quot;:&quot;Last Issue: DevSecOps Course: 2026 &#128739;&#65039;&quot;,&quot;date&quot;:&quot;2026-02-08T19:30:37.006Z&quot;,&quot;like_count&quot;:10,&quot;comment_count&quot;:1,&quot;bylines&quot;:[{&quot;id&quot;:100797762,&quot;name&quot;:&quot;W J Pearce&quot;,&quot;handle&quot;:&quot;wjpearce&quot;,&quot;previous_name&quot;:&quot;Will&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/31d30c5a-0775-4efa-8cac-b6b9dfda9c05_361x361.jpeg&quot;,&quot;bio&quot;:&quot;Cyber Security Engineer / YouTuber&quot;,&quot;profile_set_up_at&quot;:&quot;2022-08-07T11:22:17.818Z&quot;,&quot;reader_installed_at&quot;:&quot;2024-05-02T20:52:18.368Z&quot;,&quot;publicationUsers&quot;:[{&quot;id&quot;:2145719,&quot;user_id&quot;:100797762,&quot;publication_id&quot;:2139894,&quot;role&quot;:&quot;admin&quot;,&quot;public&quot;:true,&quot;is_primary&quot;:true,&quot;publication&quot;:{&quot;id&quot;:2139894,&quot;name&quot;:&quot;Cyber Notes&quot;,&quot;subdomain&quot;:&quot;wjpearce&quot;,&quot;custom_domain&quot;:&quot;www.cybernotes.tech&quot;,&quot;custom_domain_optional&quot;:false,&quot;hero_text&quot;:&quot;Cloud Security Projects, Essays &amp; Guides. \n\n&#9729;&#65039; Free Cloud Security Starter Pack in welcome Email &#11015;&#65039;&quot;,&quot;logo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png&quot;,&quot;author_id&quot;:100797762,&quot;primary_user_id&quot;:100797762,&quot;theme_var_background_pop&quot;:&quot;#D10000&quot;,&quot;created_at&quot;:&quot;2023-11-29T08:54:05.799Z&quot;,&quot;email_from_name&quot;:null,&quot;copyright&quot;:&quot;W J Pearce&quot;,&quot;founding_plan_name&quot;:&quot;Founding Member&quot;,&quot;community_enabled&quot;:true,&quot;invite_only&quot;:false,&quot;payments_state&quot;:&quot;enabled&quot;,&quot;language&quot;:null,&quot;explicit&quot;:false,&quot;homepage_type&quot;:&quot;newspaper&quot;,&quot;is_personal_mode&quot;:false,&quot;logo_url_wide&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2f6186f5-5a97-4636-be78-5a078969b018_4200x800.png&quot;}}],&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:100,&quot;status&quot;:{&quot;bestsellerTier&quot;:100,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:{&quot;type&quot;:&quot;bestseller&quot;,&quot;tier&quot;:100},&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null}}],&quot;utm_campaign&quot;:null,&quot;belowTheFold&quot;:false,&quot;type&quot;:&quot;newsletter&quot;,&quot;language&quot;:&quot;en&quot;,&quot;source&quot;:null}" data-component-name="EmbeddedPostToDOM"><a class="embedded-post" native="true" href="https://www.cybernotes.tech/p/ai-pentesting-project?utm_source=substack&amp;utm_campaign=post_embed&amp;utm_medium=web"><div class="embedded-post-header"><img class="embedded-post-publication-logo" src="https://substackcdn.com/image/fetch/$s_!wiuw!,w_56,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png"><span class="embedded-post-publication-name">Cyber Notes</span></div><div class="embedded-post-title-wrapper"><div class="embedded-post-title">Easy AI Pentesting Project &#128137;</div></div><div class="embedded-post-body">Last Issue: DevSecOps Course: 2026 &#128739;&#65039;&#8230;</div><div class="embedded-post-cta-wrapper"><span class="embedded-post-cta">Read more</span></div><div class="embedded-post-meta">3 months ago &#183; 10 likes &#183; 1 comment &#183; W J Pearce</div></a></div><div class="embedded-post-wrap" data-attrs="{&quot;id&quot;:179038246,&quot;url&quot;:&quot;https://www.cybernotes.tech/p/ai-hacking-cv-project&quot;,&quot;publication_id&quot;:2139894,&quot;publication_name&quot;:&quot;Cyber Notes&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!wiuw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png&quot;,&quot;title&quot;:&quot;AI Hacking CV Project &#129302;&quot;,&quot;truncated_body_text&quot;:&quot;Last Issue: 10,000 Readers Giveaway: AWS Cert &#128640;&quot;,&quot;date&quot;:&quot;2026-01-11T19:30:31.233Z&quot;,&quot;like_count&quot;:21,&quot;comment_count&quot;:2,&quot;bylines&quot;:[{&quot;id&quot;:100797762,&quot;name&quot;:&quot;W J Pearce&quot;,&quot;handle&quot;:&quot;wjpearce&quot;,&quot;previous_name&quot;:&quot;Will&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/31d30c5a-0775-4efa-8cac-b6b9dfda9c05_361x361.jpeg&quot;,&quot;bio&quot;:&quot;Cyber Security Engineer / YouTuber&quot;,&quot;profile_set_up_at&quot;:&quot;2022-08-07T11:22:17.818Z&quot;,&quot;reader_installed_at&quot;:&quot;2024-05-02T20:52:18.368Z&quot;,&quot;publicationUsers&quot;:[{&quot;id&quot;:2145719,&quot;user_id&quot;:100797762,&quot;publication_id&quot;:2139894,&quot;role&quot;:&quot;admin&quot;,&quot;public&quot;:true,&quot;is_primary&quot;:true,&quot;publication&quot;:{&quot;id&quot;:2139894,&quot;name&quot;:&quot;Cyber Notes&quot;,&quot;subdomain&quot;:&quot;wjpearce&quot;,&quot;custom_domain&quot;:&quot;www.cybernotes.tech&quot;,&quot;custom_domain_optional&quot;:false,&quot;hero_text&quot;:&quot;Cloud Security Projects, Essays &amp; Guides. \n\n&#9729;&#65039; Free Cloud Security Starter Pack in welcome Email &#11015;&#65039;&quot;,&quot;logo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png&quot;,&quot;author_id&quot;:100797762,&quot;primary_user_id&quot;:100797762,&quot;theme_var_background_pop&quot;:&quot;#D10000&quot;,&quot;created_at&quot;:&quot;2023-11-29T08:54:05.799Z&quot;,&quot;email_from_name&quot;:null,&quot;copyright&quot;:&quot;W J Pearce&quot;,&quot;founding_plan_name&quot;:&quot;Founding Member&quot;,&quot;community_enabled&quot;:true,&quot;invite_only&quot;:false,&quot;payments_state&quot;:&quot;enabled&quot;,&quot;language&quot;:null,&quot;explicit&quot;:false,&quot;homepage_type&quot;:&quot;newspaper&quot;,&quot;is_personal_mode&quot;:false,&quot;logo_url_wide&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2f6186f5-5a97-4636-be78-5a078969b018_4200x800.png&quot;}}],&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:100,&quot;status&quot;:{&quot;bestsellerTier&quot;:100,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:{&quot;type&quot;:&quot;bestseller&quot;,&quot;tier&quot;:100},&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null}}],&quot;utm_campaign&quot;:null,&quot;belowTheFold&quot;:false,&quot;type&quot;:&quot;newsletter&quot;,&quot;language&quot;:&quot;en&quot;,&quot;source&quot;:null}" data-component-name="EmbeddedPostToDOM"><a class="embedded-post" native="true" href="https://www.cybernotes.tech/p/ai-hacking-cv-project?utm_source=substack&amp;utm_campaign=post_embed&amp;utm_medium=web"><div class="embedded-post-header"><img class="embedded-post-publication-logo" src="https://substackcdn.com/image/fetch/$s_!wiuw!,w_56,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F96e971cf-35a8-446e-90a7-27e9f627abbb_256x256.png"><span class="embedded-post-publication-name">Cyber Notes</span></div><div class="embedded-post-title-wrapper"><div class="embedded-post-title">AI Hacking CV Project &#129302;</div></div><div class="embedded-post-body">Last Issue: 10,000 Readers Giveaway: AWS Cert &#128640;&#8230;</div><div class="embedded-post-cta-wrapper"><span class="embedded-post-cta">Read more</span></div><div class="embedded-post-meta">4 months ago &#183; 21 likes &#183; 2 comments &#183; W J Pearce</div></a></div><p>This time I want to take it up a notch. </p><p>AI is moving fast, and we&#8217;re slowly transitioning into agentic workflows. It&#8217;s no longer <em><strong>&#8220;user queries model, model maybe hits a database.&#8221;</strong></em> We&#8217;ve got a full blown ecosystem now: Agents talking to agents, running tools, chaining actions</p><h3>So&#8230; we need to understand how attackers are going to use this shift against us.</h3><p>Enter <strong>Strix</strong>: An open-source project that&#8217;s already pulled 20k+ stars on GitHub. It&#8217;s not a wrapper and it&#8217;s not just an MCP hookup. Strix is a team of autonomous AI agents that behave like actual hackers: they run your code dynamically, probe for vulnerabilities and validate findings with proof of concepts instead of dumping a pile of false positives on you. </p><p>Out of the box it ships with an HTTP proxy, browser automation, a terminal, a Python runtime for custom exploits and recon tooling. Multiple agents can run in parallel, share discoveries, and coordinate attacks across different pieces of your app.</p><p>Let&#8217;s set this up together and walk through how it works &#128071;</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AE0g!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AE0g!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 424w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 848w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 1272w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AE0g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png" width="610" height="403" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:403,&quot;width&quot;:610,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:24493,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/194305386?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AE0g!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 424w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 848w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 1272w, https://substackcdn.com/image/fetch/$s_!AE0g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3e9e24fe-6ce8-45ac-b347-f0cef00c3fa9_610x403.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Prerequisites</h3><ul><li><p>Docker </p></li><li><p>Docker Compose</p></li><li><p>An LLM <strong>(Running Locally or in the cloud with your API key)</strong> </p></li><li><p>Two running Targets <strong>(I will show you how to set these up)</strong></p></li><li><p>An understanding of Github actions <strong>(Not 100% needed but handy)</strong></p></li></ul><p><strong>Just Quickly&#8230;</strong></p><p>One of the coolest things about Strix is its multi agent architecture. You&#8217;ve got a main agent acting as the coordinator, it does the initial recon, maps the attack surface, and decides what needs testing. From there, it spawns specialised sub agents, each tasked with a specific slice of the attack: one hunting for IDORs in the user endpoints, another fuzzing the search API for injection, another probing the auth and password reset flows. They run in parallel, share discoveries back to the main agent and you can monitor and manage each one individually. </p><p>It&#8217;s less &#8220;AI tool running a scan&#8221; and more &#8220;a small pentest team working your app at the same time&#8221; which is exactly why agentic workflows are such a step up from the wrapper and MCP approaches we looked at previously.</p><h3><strong>As usual, I reserve the Projects for community members&#8230;Come join the fun! &#127757;</strong></h3>
      <p>
          <a href="https://www.cybernotes.tech/p/agentic-ai-hacking-project">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Deploy Faster on AWS: EC2 vs Lightsail (Hands On Guide)]]></title><description><![CDATA[Deploy OpenClaw...]]></description><link>https://www.cybernotes.tech/p/deploy-faster-on-aws-ec2-vs-lightsail</link><guid isPermaLink="false">https://www.cybernotes.tech/p/deploy-faster-on-aws-ec2-vs-lightsail</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 12 Apr 2026 18:30:43 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!U2BI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://www.cybernotes.tech/p/become-cloud-security-engineer-faster">Become Cloud Security Engineer FASTER</a></p><p><strong>Next Issue:</strong> Project:<strong> </strong>Claude Code Will 10x Your Cloud Security Career (Three Ways)</p><div><hr></div><h3><strong>Both useful but one will give you the skills&#8230; </strong></h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!U2BI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!U2BI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 424w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 848w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 1272w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!U2BI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png" width="1456" height="1055" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/aa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1055,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:388952,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!U2BI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 424w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 848w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 1272w, https://substackcdn.com/image/fetch/$s_!U2BI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faa776992-cd85-4b27-a0df-9f44cc1c088f_1640x1188.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>If you&#8217;re just starting out in cloud, this question comes up a lot. </h3><p>Both run on AWS infrastructure. Both give you a Linux box in the cloud. So what&#8217;s the actual difference, and which one should you touch first?</p><p><strong>Short version: it depends on why you&#8217;re here&#8230; &#128064;</strong></p><div><hr></div><p><strong>If you&#8217;re here to learn Cloud Security or DevSecOps</strong></p><p>Use EC2. </p><p>Every enterprise environment you&#8217;ll encounter, in a job, a lab, a CTF, or a pentest scope runs EC2 or something that behaves like it. Security groups, IAM roles, VPCs, instance metadata endpoints... these aren&#8217;t optional extras. They&#8217;re the attack surface. Lightsail hides most of that from you. Great for shipping a side project; bad for building the skills needed in this field.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!O2Qq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!O2Qq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 424w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 848w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 1272w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!O2Qq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png" width="1456" height="1456" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1456,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:284116,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!O2Qq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 424w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 848w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 1272w, https://substackcdn.com/image/fetch/$s_!O2Qq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99ed1e33-037f-45e9-8a55-3c0e23a560a8_1474x1474.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The EC2 free tier gives you 750 hours/month of a t2.micro. Spin one up, SSH in, break it, rebuild it. </p><div><hr></div><p><strong>If you have an app idea and want it live this weekend&#8230;You&#8217;ve been messing about with Claude Code right?? </strong></p><p>Lightsail is super useful here. Pick a $5/month bundle, choose a one click stack (WordPress, LAMP, Node), and you&#8217;ll have something running in under ten minutes. The networking is pre-wired. The firewall has a simple UI. You get a fixed monthly bill with no surprise line items.</p><ol><li><p>Navigate to the Lightsail Service </p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!TtOl!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!TtOl!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 424w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 848w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 1272w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!TtOl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png" width="1456" height="772" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:772,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:135070,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!TtOl!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 424w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 848w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 1272w, https://substackcdn.com/image/fetch/$s_!TtOl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0429e129-1867-4940-a075-fc0d51ea5dc6_2136x1132.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ol start="2"><li><p>Choose an existing Blueprint APP Stack</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2ABv!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2ABv!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 424w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 848w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 1272w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2ABv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png" width="1456" height="958" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/db011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:958,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:348429,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2ABv!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 424w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 848w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 1272w, https://substackcdn.com/image/fetch/$s_!2ABv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdb011b63-9d41-4033-bf23-4c69ee91d83c_2142x1410.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>or if it&#8217;s a custom app choose OS only</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!K2qS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!K2qS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 424w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 848w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 1272w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!K2qS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png" width="1456" height="529" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:529,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:183064,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!K2qS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 424w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 848w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 1272w, https://substackcdn.com/image/fetch/$s_!K2qS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b7b6f49-8a9b-426c-9ed3-da3f83a32788_2136x776.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div></li><li><p>Stick with General purpose here and upload an SSH Key (Or make one)</p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Nizv!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Nizv!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 424w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 848w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 1272w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Nizv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png" width="1456" height="1197" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/faf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1197,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:353749,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Nizv!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 424w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 848w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 1272w, https://substackcdn.com/image/fetch/$s_!Nizv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffaf4482f-1aa0-4f39-a59b-cb17ad1ead58_1948x1602.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ol start="4"><li><p> Connect using the Cloud Shell </p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!G914!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!G914!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 424w, https://substackcdn.com/image/fetch/$s_!G914!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 848w, https://substackcdn.com/image/fetch/$s_!G914!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 1272w, https://substackcdn.com/image/fetch/$s_!G914!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!G914!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png" width="1456" height="1271" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1271,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:537324,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!G914!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 424w, https://substackcdn.com/image/fetch/$s_!G914!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 848w, https://substackcdn.com/image/fetch/$s_!G914!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 1272w, https://substackcdn.com/image/fetch/$s_!G914!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8dc836c-6a2e-45b7-9546-7d288e5c94c2_2036x1778.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ol start="5"><li><p>Or locally with </p></li></ol><div class="highlighted_code_block" data-attrs="{&quot;language&quot;:&quot;plaintext&quot;,&quot;nodeId&quot;:&quot;114aa279-a161-403b-85c3-4b137abdd46c&quot;}" data-component-name="HighlightedCodeBlockToDOM"><pre class="shiki"><code class="language-plaintext"> chmod 400 /Users/williampearce/Downloads/LightsailDefaultKey-eu-west-2.pem

ssh -i /Users/williampearce/Downloads/LightsailDefaultKey-eu-west-2.pem
      ubuntu@13.135.173.184</code></pre></div><p>I&#8217;m not going to configure OpenClaw here, that&#8217;s not what this is about. I wanted to show you how blazingly quick you can set up a VPS and get stuck into new technology to run a quick test or learn.</p><p><strong>It&#8217;s a good way to validate an idea before you care about infrastructure. Just don&#8217;t expect to learn much about how AWS actually works under the hood.</strong></p><div><hr></div><p><strong>It&#8217;s a question I got last month&#8230;</strong></p><p>Lightsail and EC2 live in separate AWS worlds. A Lightsail instance doesn&#8217;t automatically talk to your EC2 resources, RDS databases, or most other AWS services. If your app grows and you need to bring in Lambda, S3 permissions, or VPC peering, you&#8217;ll hit a wall and probably end up migrating anyway.</p><p>EC2 also has a steeper learning curve on billing. Data transfer costs, EBS volume charges, Elastic IP fees, they can catch you off guard if you&#8217;re not watching the cost</p><div><hr></div><p><strong>Calm, practical &amp; self paced training to help you break into Cloud Security &amp; DevSecOps</strong></p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rKhC!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rKhC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 424w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 848w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1272w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png" width="1456" height="772" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/df391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:772,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:555834,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180790089?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff0f4ee27-789b-45a5-bdff-eddb2af3398c_2614x1148.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!rKhC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 424w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 848w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1272w, https://substackcdn.com/image/fetch/$s_!rKhC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdf391724-a3fb-477e-9e07-a196a1b008f6_1575x835.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[Become Cloud Security Engineer FASTER]]></title><description><![CDATA[A podcast with UnixGuy]]></description><link>https://www.cybernotes.tech/p/become-cloud-security-engineer-faster</link><guid isPermaLink="false">https://www.cybernotes.tech/p/become-cloud-security-engineer-faster</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 05 Apr 2026 18:30:49 GMT</pubDate><enclosure url="https://substackcdn.com/image/youtube/w_728,c_limit/Mzik9veQiiU" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://www.cybernotes.tech/p/get-started-with-docker-mcp-project">Project: Get Started With Docker MCP &#128230;</a></p><p><strong>Next Issue: </strong><a href="http://cybernotes.tech">AWS EC2 vs Lightsail - Which one to start with?</a></p><p><strong>This Issue: </strong><a href="http://cybernotes.tech">Become Cloud Security Engineer FASTER</a></p><div><hr></div><p>I&#8217;ve always looked up to <strong><a href="https://www.linkedin.com/in/abedhamdan/">Abed Hamdan</a></strong> (Unix Guy) and what he does in this space. Having the opportunity to sit down with him last week for a chat all things Cloud Security was a real honour!</p><p>Fare warning, I ramble a little. As a new Dad this year, sleep isn&#8217;t always guaranteed, I&#8217;d had a solid 4 the night before this! </p><h3>- Will AI Steal Cloud Security Jobs?</h3><h3>- What is the most underserved area in Cloud Security Right Now?</h3><h3>- Where should Cloud Security Projects go on your resume? </h3><h3>- What&#8217;s the biggest mistake Cybersecurity Beginners make? </h3><p><br>The <em><strong>&#8220;Yassified&#8220;</strong></em> picture of me on the left here made me chuckle, totally my bad as I forgot to send Unix Guy a photo he could use. </p><div id="youtube2-Mzik9veQiiU" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;Mzik9veQiiU&quot;,&quot;startTime&quot;:&quot;&quot;,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/Mzik9veQiiU?start=&amp;rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><div><hr></div><p><strong>Calm, practical &amp; self paced training to help you break into Cloud Security &amp; DevSecOps</strong></p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!kcJP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!kcJP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 424w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 848w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1272w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png" width="1456" height="1042" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1042,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!kcJP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 424w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 848w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1272w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><strong>W J Pearce - Cyber Notes</strong></h2><p></p><p></p><p></p><p></p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[Project: Get Started With Docker MCP 📦]]></title><description><![CDATA[If you do one project this month, let it be this one.]]></description><link>https://www.cybernotes.tech/p/get-started-with-docker-mcp-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/get-started-with-docker-mcp-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 22 Mar 2026 19:30:40 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!YZOF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://www.cybernotes.tech/p/the-first-devsecops-project">DevSecOps Project Video Walkthrough &#128679;</a></p><p><strong>Next Issue: </strong>AWS EC2 vs Lightsail - Which one to start with? </p><p><strong>This Issue: </strong><a href="http://cybernotes.tech">Get Started With Docker MCP Project &#128230;</a></p><div><hr></div><h4>By the End of This Post, You:</h4><p>&#9989; Understand what MCP is and why it exists<br>&#9989; Have Docker MCP Toolkit running locally<br>&#9989; Connected Claude to an Obsidian MCP server<br>&#9989; Ran your first natural language tool calls<br>&#9989; Know where to go next</p><div><hr></div><h3>This is important to understand&#8230;.</h3><p>Talking to an LLM is easy. Getting an LLM to <em>do something useful</em> in the wild? </p><p>That&#8217;s where it&#8217;s a little more complicated and you need an &#8220;AI Agent.&#8221;</p><p>In cloud security, when you want one service or tool to communicate with another, you usually use an API. For example, a Lambda function might query NIST data and store the results in an S3 bucket.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!YZOF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!YZOF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 424w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 848w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 1272w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!YZOF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png" width="984" height="595" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/22d69239-681b-4f74-a23b-712b60397f37_984x595.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:595,&quot;width&quot;:984,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:63237,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/188953648?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!YZOF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 424w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 848w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 1272w, https://substackcdn.com/image/fetch/$s_!YZOF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F22d69239-681b-4f74-a23b-712b60397f37_984x595.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>However, as systems scale and every tool &#8220;speaks&#8221; a different API, integrating them with an AI becomes tangled. You end up writing custom code for each service, handling different authentication flows, and digging through inconsistent documentation every time. That approach doesn&#8217;t scale and is extremely difficult to maintain in an LLM driven setup.</p><p>That&#8217;s exactly the problem MCP is designed to solve.</p><div><hr></div><h2>Very Quickly, What is MCP?</h2><p><strong>MCP or Model Context Protocol</strong> is a standardised way to connect tools to LLMs.</p><p>Instead of writing code to call a tool&#8217;s API directly, you spin up an MCP server that sits in the middle. The server handles all the API calls, authentication and endpoint logic, so your LLM doesn&#8217;t need to know any of it.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!fo6O!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!fo6O!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 424w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 848w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 1272w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!fo6O!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png" width="817" height="614" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:614,&quot;width&quot;:817,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:55650,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/188953648?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!fo6O!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 424w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 848w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 1272w, https://substackcdn.com/image/fetch/$s_!fo6O!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6708ee95-0f99-48e7-9c70-21c41e69b7f2_817x614.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>All the LLM needs to do is ask the MCP server to perform a task. The server has the tools, the credentials and the knowledge of how to talk to the endpoint. The LLM stays clean.</p><p>This is why it matters: <strong>most major company is now exposing their tools via MCP</strong>, alongside their traditional API endpoints. It&#8217;s becoming the standard layer between AI and software.</p><div><hr></div><h2>The best way to learn is through projects</h2><p>Here&#8217;s what you&#8217;ll need to set up your first MCP server locally with Docker</p><ul><li><p><strong>Docker Desktop</strong> (latest version)</p></li><li><p><strong>An LLM app</strong> Claude Desktop, LM Studio or Cursor all work</p></li><li><p><strong>Claude Code</strong> (optional but recommended)</p></li></ul><div><hr></div><h1><strong>Project Time &#128640;</strong></h1><h3><strong>I reserve the Projects for community members&#8230;Come join the fun! &#127757;</strong></h3>
      <p>
          <a href="https://www.cybernotes.tech/p/get-started-with-docker-mcp-project">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[DevSecOps Project Video Walkthrough 🚧]]></title><description><![CDATA[Video Walkthrough...]]></description><link>https://www.cybernotes.tech/p/the-first-devsecops-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/the-first-devsecops-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 15 Mar 2026 19:30:51 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!kcJP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Quick heads Up: </strong><em>The Pre Order pricing on my <strong>Cloud Security &amp; DevSecOps Beginners Academy</strong>, is coming to an end soon&#8230;.</em></p><p><strong>&#127891; The Full Course</strong></p><p><strong>&#129517; Career Path Template</strong></p><p><strong>&#128196; CV / Portfolio Template (Built for Technical Roles)</strong></p><p><strong>&#128188; Portfolio Projects That Help Get You Hire</strong>d</p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!kcJP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!kcJP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 424w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 848w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1272w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png" width="1456" height="1042" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1042,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:760697,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/190847658?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!kcJP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 424w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 848w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1272w, https://substackcdn.com/image/fetch/$s_!kcJP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd519ef04-4cb2-4f0d-a0d2-b058a29ecd9d_1792x1282.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div><hr></div><h3>Simple starter DevSecOps project&#8230;</h3><p>I want to give you a complete walkthrough here and the kind of the content and teaching style that will be in <strong>Tech Two Forty. </strong></p><div id="youtube2-6HNetAnewCA" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;6HNetAnewCA&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/6HNetAnewCA?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p><strong>Let me know what you think</strong></p><div><hr></div><p><strong>Calm, practical &amp; self paced training to help you break into Cloud Security &amp; DevSecOps</strong></p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><h2><strong>W J Pearce - Cyber Notes</strong></h2>]]></content:encoded></item><item><title><![CDATA[AWS Project: Security Agent🕵️]]></title><description><![CDATA[New AWS Security Service: AI / Security Project you could do over the weekend.]]></description><link>https://www.cybernotes.tech/p/aws-project-security-agent</link><guid isPermaLink="false">https://www.cybernotes.tech/p/aws-project-security-agent</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 01 Mar 2026 19:30:28 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!PgG0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcfe2009f-bc55-4fd1-881c-17c5875915ae_2531x734.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Quick heads Up: </strong><em>The Pre Order pricing on Tech Two Forty: <strong>Cloud Security &amp; DevSecOps Beginners Academy</strong>, is coming to an end soon&#8230;.</em></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!w1gd!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!w1gd!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 424w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 848w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 1272w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!w1gd!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png" width="772" height="280" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:280,&quot;width&quot;:772,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:65189,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185824827?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!w1gd!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 424w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 848w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 1272w, https://substackcdn.com/image/fetch/$s_!w1gd!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F477ccdc7-99fa-479c-a2c9-4ddbcf0f2423_772x280.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>&#10004; Build real Cloud Security &amp; DevSecOps skills from scratch</p><p>&#10004; Follow a clear career roadmap (so you&#8217;re not guessing what to learn next)</p><p>&#10004; Create starter portfolio projects recruiters actually care about</p><p>&#10004; Use CV + portfolio templates built for technical roles</p><p>&#10004; Learn Linux, AWS, Containers, CI/CD security, Scripting, AI security and more</p><p><em><strong>Designed for beginners and busy professionals who want a calmer, clearer way into Cloud Security &amp; DevSecOps.</strong></em></p><p>&#128073; Pre-order here: <strong><a href="https://stan.store/wjpearce/p/pre-order-tech-two-forty-zqrk3784">techtwoforty.com</a></strong></p><div><hr></div><h1>What is AWS Security Agent?</h1><p>At a high level, it does three things:</p><ol><li><p><strong>Architecture design reviews</strong></p></li><li><p><strong>Code review in pull requests</strong></p></li><li><p><strong>On demand penetration testing</strong></p></li></ol><p>The promise is simple: security feedback early, contextual and inside the workflow engineers already use.</p><p>It&#8217;s currently in public preview, and it&#8217;s AWS attempt at bringing AI assisted security across your entire SDLC.</p><p>This weekend I tested the <strong>Code Review</strong> capability.</p><p>Pen testing is powerful too, but that requires verified domains and a bit more setup, so i&#8217;ll cover that in a separate project</p><h1>Project Time &#128640;</h1><h3><strong>I reserve the Projects for community members&#8230;Come join the fun! &#127757;</strong></h3><p></p>
      <p>
          <a href="https://www.cybernotes.tech/p/aws-project-security-agent">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Cloud Security & DevSecOps Beginners Academy]]></title><description><![CDATA[The wait is over...]]></description><link>https://www.cybernotes.tech/p/cloud-security-and-devsecops-beginners</link><guid isPermaLink="false">https://www.cybernotes.tech/p/cloud-security-and-devsecops-beginners</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 15 Feb 2026 19:30:22 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!qFue!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1a29cf1c-7cf8-400a-bb98-1931d14d9448_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>After the overwhelming feedback and requests from <strong>TechOneTwenty</strong> I&#8217;m finally building a <strong>DevSecOps &amp; Cloud Security Beginners Academy.</strong></p><h3><strong>Early bird pre-order is live (discounted)</strong> &#11015;&#65039;</h3><p><em>The people who understand <strong>Cloud Security</strong> &amp; <strong>DevSecOps</strong> are more needed than ever. Reboot and start in Cloud Security &amp; DevSecOps with projects you can do at home, through self paced visual learning.</em></p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div><hr></div><h1><strong>Cloud Security &amp; DevSecOps for Beginners</strong></h1><p><strong>Practical &amp; self paced to help you:</strong></p><p>&#127891; Learn Linux, AWS, Containers, AI Security Workflows, Scripting, CI/CD Security and more.</p><p>&#129517; Follow a clear Cloud Security &amp; DevSecOps career roadmap</p><p>&#128188; Build starter portfolio projects</p><p>&#128196; Use CV + portfolio templates built for technical roles</p><p>Designed for beginners and busy professionals who want a calmer, clearer way into Cloud Security &amp; DevSecOps.</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!UopF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!UopF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 424w, https://substackcdn.com/image/fetch/$s_!UopF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 848w, https://substackcdn.com/image/fetch/$s_!UopF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 1272w, https://substackcdn.com/image/fetch/$s_!UopF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!UopF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png" width="1456" height="510" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:510,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:377499,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/187498691?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!UopF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 424w, https://substackcdn.com/image/fetch/$s_!UopF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 848w, https://substackcdn.com/image/fetch/$s_!UopF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 1272w, https://substackcdn.com/image/fetch/$s_!UopF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6840f35a-4c72-401f-a552-30286d469fbb_1472x516.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h1><strong>What&#8217;s Included &#128640;</strong></h1><h2><strong>&#127891; The Full Course</strong></h2><p><strong>Step by step Cloud Security &amp; DevSecOps training covering:</strong></p><p>&#128421;&#65039; Linux &#8211; system administration &amp; hardening</p><p>&#128013; Automation &#8211; Bash and Python scripting</p><p>&#9729;&#65039; Cloud &#8211; AWS security architecture</p><p>&#128230; IaC &#8211; Terraform / Ansible</p><p>&#128051; Containers &#8211; Docker security</p><p>&#128257; CI/CD &#8211; GitHub Actions with SAST/SCA</p><p>&#128272; Secrets &#8211; production secrets management</p><p>&#128203; Compliance &#8211; CIS benchmarks</p><p>&#129302; AI &#8211; securing AI in production</p><p>All taught through practical examples and projects. </p><div><hr></div><h2><strong>&#129517; Career Path Template</strong></h2><p><strong>A clear roadmap showing:</strong></p><ul><li><p>Which skills to build first</p></li><li><p>How to sequence your projects</p></li><li><p>What roles you&#8217;re realistically targeting at each stage</p></li></ul><p>So you&#8217;re not guessing what comes next.</p><div><hr></div><h2><strong>&#128196; CV / Portfolio Template (Built for Technical Roles)</strong></h2><p><strong>Learn exactly how to present your work:</strong></p><ul><li><p>How to document projects properly</p></li><li><p>What to put on your CV (and what to cut)</p></li><li><p>How to explain architecture decisions, security controls, and tooling</p></li><li><p>Example write ups you can reuse for GitHub, LinkedIn, and applications</p></li></ul><div><hr></div><h2><strong>&#128188; Portfolio Projects That Help You Get Hired</strong></h2><p><strong>You&#8217;ll build projects recruiters actually care about:</strong></p><ul><li><p>Secure automated environments using IaC</p></li><li><p>CI/CD pipelines with security gates</p></li><li><p>End to end deployments that show you can hit the ground running</p></li></ul><p><strong>I&#8217;ll show you:</strong></p><ul><li><p>What hiring managers look for</p></li><li><p>How to structure projects</p></li><li><p>How to communicate impact clearly</p></li></ul><div><hr></div><h3>&#11015;&#65039; <strong>Early bird pre-order is live (discounted)</strong> &#11015;&#65039;</h3><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div><hr></div><h2><strong>Meet the Lecturer &#128104;&#8205;&#127979;</strong></h2><p><strong>I built Tech Two Forty because I&#8217;m done with &#8220;cyber gurus&#8221; shouting about the hustle.</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BqQE!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BqQE!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 424w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 848w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 1272w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BqQE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png" width="1170" height="1448" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1448,&quot;width&quot;:1170,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!BqQE!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 424w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 848w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 1272w, https://substackcdn.com/image/fetch/$s_!BqQE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe725a075-57f2-42bb-9243-20ee75f59449_1170x1448.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Eight years ago, I began my security journey, and it changed my life. It took me from feeling lost to becoming a Senior Cloud Security Engineer, but the road there was unnecessarily lonely and tough.</p><p>I&#8217;m dyslexic, and growing up I really struggled with traditional academic learning. Most tech education just didn&#8217;t work for how my brain works. Things only clicked once I found a clearer, more practical way to learn.</p><p>That&#8217;s exactly why I built Tech Two Forty. I&#8217;ve worked with neurodivergent experienced teachers to make it neurodivergent friendly, especially for ADHD and dyslexia, but it&#8217;s designed for anyone who wants learning to feel simpler, calmer and more human.</p><p>A content creator (still pondering that title), and the author behind TechOneTwenty and Cyber Notes, dedicated to being the guide I once needed. No gatekeeping.</p><p>Just a clear, practical path into Cloud Security &amp; DevSecOps.</p><p><strong>You&#8217;ve got this. Let&#8217;s go.</strong></p><h2><strong>Frequently Asked Questions&#10067;</strong></h2><h3>How can you charge so little?</h3><p>Education should be accessible to everyone. Charging &#163;500+ for bootcamps is <strong>bs</strong> and simply not fair.</p><p>My passion is teaching, and I&#8217;ve chosen to keep this affordable so more people can break into cloud security without financial pressure.</p><div><hr></div><h3>Is this beginner friendly?</h3><p>Yes. No prior experience required just commitment.</p><div><hr></div><h3>Will this help me get hired?</h3><p>Yes. This course is built around portfolio projects recruiters actually care about. You&#8217;ll learn how to document your work, explain architectural decisions, and present projects professionally on your CV and LinkedIn. </p><p><strong>Any influencer saying they will get you a job is lying to you</strong>, but will this course really really help? Yes, 100% it will.</p><div><hr></div><h3>Can I do this alongside a full time job?</h3><p>Absolutely. The course is self paced and designed for evenings and weekends.</p><div><hr></div><h2><strong>&#8220;No Stress&#8221; Guarantee &#128524;</strong></h2><p>I understand you have options. If you decide this isn&#8217;t the right fit for you within the first 72 hours, I&#8217;ll refund you in full, no questions asked.</p><p>I&#8217;m here to help you succeed, and that starts with making sure you feel confident in your purchase. Any questions, just ask.</p><h3>&#11015;&#65039; <strong>Early bird pre-order is live (discounted)</strong> &#11015;&#65039;</h3><p>Build real Cloud Security projects at home</p><p>&#128073; Pre-order here: <strong><a href="https://techtwoforty.com/">techtwoforty.com</a></strong></p><div><hr></div><h2>W J Pearce - Cyber Notes</h2>]]></content:encoded></item><item><title><![CDATA[Easy AI Pentesting Project 💉]]></title><description><![CDATA[PentestGPT is CRAZY Good...]]></description><link>https://www.cybernotes.tech/p/ai-pentesting-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/ai-pentesting-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 08 Feb 2026 19:30:37 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!bqeS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://wjpearce.substack.com/p/free-devsecops-course-2026">DevSecOps Course: 2026 &#128739;&#65039;</a></p><p><strong>Next Issue:</strong> I&#8217;m launching a world first project&#8230;</p><p><strong>This Issue:<a href="http://cybernotes.tech"> </a></strong><a href="http://cybernotes.tech">AI Pentesting Project</a></p><div><hr></div><p>This week we are setting up and testing PentestGPT, i&#8217;m going to assume you can guess what this one does already. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bqeS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bqeS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 424w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 848w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 1272w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bqeS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png" width="871" height="501" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:501,&quot;width&quot;:871,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:580966,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/186625801?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bqeS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 424w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 848w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 1272w, https://substackcdn.com/image/fetch/$s_!bqeS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3dd69a44-59c5-42e2-b72d-50e40ebf663b_871x501.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>PentestGPT can</h3><ul><li><p>&#65279;&#65279;Perform end to end automatic penetration testing without<br>human expert knowledge</p></li><li><p>&#65279;&#65279;Exploit the vulnerabilities and generate PoCs </p></li><li><p>Automatically generate reports</p></li></ul><p>To be clear: this is a <strong>fun project</strong> for the weekend, not necessarily something that&#8217;s going to redefine your CV. However, it is a pretty cool case study in how AI can <strong>speed up, not replace, the penetration testing process.</strong> It handles the "grunt work" of parsing scan results and suggesting the next logical command. </p><p>While tools like this are 100% going to be (and already are) being used in workflows, it still lacks adversarial intuition. It struggles with the contextual nuance. It might find a vulnerability but miss the &#8220;business logic&#8221; flaw that makes it critical.</p><h3>The approach</h3><p>As you probably know from using ChatGPT, LLMs tend to prioritise the most recent instruction you gave them, often losing sight of the broader objective. In a penetration test, where you might be juggling three different open ports while trying to maintain your initial foothold it&#8217;s not ideal. The AI literally &#8220;forgets the mission&#8221; while focusing on a single terminal error.</p><p>To combat this, the research team (who presented this at <strong>USENIX Security</strong>) split the process into three distinct modules to keep the &#8220;brain&#8221; on track:</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!v4Co!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!v4Co!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 424w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 848w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 1272w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!v4Co!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png" width="833" height="218" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:218,&quot;width&quot;:833,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:136239,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/186625801?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!v4Co!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 424w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 848w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 1272w, https://substackcdn.com/image/fetch/$s_!v4Co!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F181455fc-1d0c-44b1-8f2a-dde0ce4cd71e_833x218.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>You can read more here: <a href="https://pentestgpt.com/paper.html">https://pentestgpt.com/paper.html </a></p><h3><strong>Project Time&#8230;. &#128640;</strong></h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!WdA0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!WdA0!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 424w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 848w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 1272w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!WdA0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png" width="889" height="446" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:446,&quot;width&quot;:889,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:28531,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/186625801?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!WdA0!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 424w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 848w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 1272w, https://substackcdn.com/image/fetch/$s_!WdA0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c03792b-4bb8-4339-9d3c-04040084cadf_889x446.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>As usual, I reserve the Projects for community members&#8230;Come join the fun! &#127757;</strong></h3>
      <p>
          <a href="https://www.cybernotes.tech/p/ai-pentesting-project">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Free DevSecOps Course: 2026 🛣️]]></title><description><![CDATA[Build your own road...]]></description><link>https://www.cybernotes.tech/p/free-devsecops-course-2026</link><guid isPermaLink="false">https://www.cybernotes.tech/p/free-devsecops-course-2026</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 25 Jan 2026 19:30:26 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!zZ3M!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://wjpearce.substack.com/p/ai-hacking-cv-project">AI Hacking CV Project &#129302;</a></p><p><strong>Next Issue:</strong> &#128679; Secret Project &#128679;</p><p><strong>This Issue: </strong><a href="http://cybernotes.tech">DevSecOps Course: 2026</a>  &#128739;&#65039;</p><div><hr></div><h3>Buying a course can make you feel like you&#8217;ve done the work, without actually putting in the work. </h3><p>I understand the psychology of paying for a course, you are paying for <strong>curation</strong> and <strong>accountability</strong>. I&#8217;ve bought courses thinking, <em>&#8220;I&#8217;ve paid for this, so I&#8217;ll do it.&#8221;</em> And I still think buying courses is a great way to support your favourite creators. If you like the a particular teaching style, then that&#8217;s a great reason. </p><p>I imagine that, like most of my readers, you&#8217;re right at the start of your career. The best thing you can do right now is <strong>pick a lane and study it properly.</strong> However, since you aren&#8217;t paying money, you must pay with <strong>discipline</strong>.</p><p>So here is my free, custom DevSecOps course, pieced together from tools, resources, and free courses you can put together yourself.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!zZ3M!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!zZ3M!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!zZ3M!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1170798,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!zZ3M!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!zZ3M!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F233118be-ad9f-4439-bd5b-62cfff70200c_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><ul><li><p><strong><a href="https://skillbuilder.aws/">AWS Skill Builder (Free Tier)</a></strong> - Filter by &#8220;Free&#8221; and &#8220;Fundamentals&#8221;. The &#8220;AWS Cloud Quest: Cloud Practitioner&#8221; is a role playing game that actually teaches you the platform.</p></li><li><p><strong><a href="https://learn.microsoft.com/en-us/training/paths/azure-fundamentals/">Microsoft Learn: Azure Fundamentals</a></strong> - The official text based learning path. It is better than most paid Udemy courses.</p></li></ul><p><strong>Repos:</strong></p><p><code>jassics/awesome-aws-security</code> - A massive curated list of resources specifically for AWS security.</p><p><strong>Certs:</strong> </p><ul><li><p><strong><a href="https://www.google.com/search?q=https://education.oracle.com/oracle-cloud-infrastructure-foundations-associate/pexam_1Z0-1085-23">Oracle Cloud Infrastructure Foundations Associate</a></strong> - Oracle frequently offers this certification exam for free (check their &#8220;Race to Certification&#8221; challenges). It covers the same core cloud concepts as AWS/Azure.</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!oHbu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!oHbu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!oHbu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1183185,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!oHbu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!oHbu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c125325-c576-4fd1-96e0-a14592f95338_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><p><strong><a href="https://www.edx.org/learn/linux/the-linux-foundation-introduction-to-linux">Linux Foundation: Intro to Linux (LFS101x)</a></strong> - Hosted on edX. It is the gold standard for beginners. Audit the course for free.</p><p><strong>Repos:</strong></p><p><code>jlevy/the-art-of-command-line</code> - A single README file that will teach you more practical Linux than a 4 year degree.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.hackerrank.com/domains/shell">HackerRank Linux Shell Badge</a></strong> - Complete their challenges and earn a skill badge to display on your profile.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Abdo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Abdo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Abdo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1208962,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Abdo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!Abdo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8066e590-07c7-4213-bc77-43b7daa095d7_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><ul><li><p><strong><a href="https://www.google.com/search?q=https://university.gitlab.com/plans/gitlab-ci-cd-hands-on-guide-lab">GitLab Academy (CI/CD Fundamentals)</a></strong> - GitLab offers free self paced training on building pipelines.</p></li><li><p><strong><a href="https://github.com/skills/hello-github-actions">GitHub Actions: Hello World</a></strong> - An interactive bot guided course inside a real GitHub repo.</p></li></ul><p><strong>Repos:</strong></p><p><code>cicdops/awesome-ciandcd</code> - A collection of tools, best practices, and pipeline examples.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.google.com/search?q=https://learn.microsoft.com/en-us/collections/n5p4a5z7qz5j">GitHub Foundations Learning Path Badge</a></strong> - Finish the MS Learn path for GitHub and you get a digital badge of completion (The actual exam is paid, the badge for the <em>course</em> is free).</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!yhGI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!yhGI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!yhGI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1182321,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!yhGI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!yhGI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31919753-7b16-4b25-9ac5-fd0383ddac8d_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><p><strong><a href="https://exercism.org/tracks/bash">Exercism: Bash Track</a></strong> - Mentored learning. You write a script, and automated tests (and sometimes humans) check your work.</p><p><strong>Repos:</strong></p><p><code>awesome-lists/awesome-bash</code> - Scripts, tutorials, and snippets to steal for your own work.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.freecodecamp.org/learn/relational-database/">freeCodeCamp: Relational Database Certification</a></strong> - Don't let the name fool you; the first half is an intense, interactive Bash scripting bootcamp.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!jWGn!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!jWGn!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!jWGn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/106521fd-f883-4c49-a573-6695df79d587_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1166891,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!jWGn!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!jWGn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F106521fd-f883-4c49-a573-6695df79d587_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><ul><li><p><strong><a href="https://developer.hashicorp.com/vault/tutorials/getting-started">HashiCorp Vault: Getting Started</a></strong> - Interactive browser based labs. You don&#8217;t even need to install Vault to learn it.</p></li><li><p><strong><a href="https://www.google.com/search?q=https://gh.io/securing-the-supply-chain">GitHub Security Lab: Secrets Scanning</a></strong> - Learn how to prevent credential leaks directly from the source.</p></li></ul><p><strong>Repos:</strong></p><ul><li><p><code>OWASP/CheatSheetSeries</code> - Specifically the &#8220;Secrets Management Cheat Sheet&#8221;.</p></li></ul><p><strong>Certs:</strong> </p><p><strong><a href="https://www.google.com/search?q=https://learn.snyk.io/path/secrets-management/">Snyk: Secrets Management Badge</a></strong> - Snyk offers free "lessons" that grant badges upon completion.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!o47r!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!o47r!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!o47r!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!o47r!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!o47r!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!o47r!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1198670,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!o47r!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!o47r!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!o47r!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!o47r!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc850eca-78ba-4ed2-8c9e-1269a15a9dda_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><ul><li><p><strong><a href="https://www.wiz.io/academy">Wiz Academy: Container Security</a></strong> - High production value video courses on container vulnerabilities.</p></li></ul><p><strong>Repos:</strong></p><p><code>aquasecurity/trivy</code> - Go straight to the docs. Trivy is the industry standard open source scanner. The best way to learn is to read their "Getting Started".</p><p><strong>Certs:</strong> </p><ul><li><p><strong>None.</strong> (I can&#8217;t find any reputable &#8220;Free&#8221; cert for just image scanning. Build the <em>Capstone Project</em> I mentioned earlier instead; that is your proof.)</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!JDAJ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!JDAJ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!JDAJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1253175,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!JDAJ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!JDAJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa9caebb3-9d1b-4f07-923f-38fd0211d11a_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><ul><li><p><strong><a href="https://codeql.github.com/docs/codeql-for-visual-studio-code/">CodeQL U-Drive</a></strong> - Learn to query code like a database to find security errors.</p></li><li><p><strong><a href="https://www.securecodewarrior.com/">Secure Code Warrior (Public Tournaments)</a></strong> - Join their free public tournaments to learn secure coding patterns gamified.</p></li></ul><p><strong>Repos:</strong></p><p><code>analysis-tools-dev/static-analysis</code> - A giant list of static analysis tools for every programming language.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.google.com/search?q=https://www.veracode.com/security-labs">Veracode Security Labs Community Edition</a></strong> - Free hands on labs that offer completion tracking.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gh4c!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gh4c!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gh4c!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1259193,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!gh4c!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!gh4c!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f6dfa33-9267-470c-8e2b-807a980b0833_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><p><strong><a href="https://www.google.com/search?q=https://learn.snyk.io/path/open-source-security/">Snyk Learn: Open Source Security</a></strong> - Bite sized lessons on how supply chain attacks work and how SCA prevents them.</p><p><strong>Repos:</strong></p><p><code>google/osv-scanner</code> - A free vulnerability scanner by Google for open source developers.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.synopsys.com/software-integrity/training.html">Synopsys Academy</a></strong> - They often have free "community" training paths for Black Duck/SCA concepts.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bZyF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bZyF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bZyF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1133860,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bZyF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!bZyF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56a4191-69af-4f3c-8d3f-51db24c2427b_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>Courses:</strong></p><p><strong><a href="https://www.qualys.com/training/">Qualys Training &amp; Certification</a></strong> - <strong>This is the holy grail of free training.</strong> Qualys offers their full "Vulnerability Management Detection and Response (VMDR)" course AND certification exam for free.</p><p><strong>Repos:</strong></p><p><code>DefectDojo/django-DefectDojo</code> - The industry standard open source tool for managing vulnerability data. Spin it up in Docker and learn it.</p><p><strong>Certs:</strong> </p><p><strong><a href="https://www.google.com/search?q=https://www.qualys.com/training/vmdr/">Qualys Certified Specialist (VMDR)</a></strong> - Real industry certification. 100% Free. This is the highest value item on this entire list.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!v4y6!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!v4y6!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!v4y6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1238131,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/185193423?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!v4y6!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!v4y6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d7262e2-e45a-4fe3-9b2c-5686b353272c_1584x396.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h4><strong><a href="https://wjpearce.substack.com/p/ai-hacking-cv-project">AI Hacking CV Project &#129302;</a></strong></h4><h4><strong><a href="https://www.cybernotes.tech/p/hacking-project-101-reverse-shells">Hacking Project 101: Reverse Shells with AWS &amp; Ncat</a></strong></h4><h4><strong><a href="https://www.cybernotes.tech/p/aws-security-project-sts">AWS Security Project: STS &#128273;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4><p><br>I haven&#8217;t included the literal 1000s of free YouTube resources on this list because you don&#8217;t need me to tell you YouTube is a good resource in 2026</p><p><strong>Have fun!</strong> &#128521;</p><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p></p>]]></content:encoded></item><item><title><![CDATA[AI Hacking CV Project 🤖]]></title><description><![CDATA[Metasploit MCP + Claude]]></description><link>https://www.cybernotes.tech/p/ai-hacking-cv-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/ai-hacking-cv-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 11 Jan 2026 19:30:31 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!NSHe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b373a88-9639-48b5-bae2-e5ced050dea5_1542x972.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://wjpearce.substack.com/p/10000-readers-giveaway-aws-cert">10,000 Readers Giveaway: AWS Cert &#128640;</a></p><p><strong>Next Issue:</strong> <a href="https://www.cybernotes.tech/">DevSecOps Course 2026</a></p><p><strong>This Issue: </strong><a href="https://www.cybernotes.tech/">AI Hacking Project: Metasploit MCP + Claude</a> &#129302;</p><div><hr></div><h2><strong>Project Prerequisites</strong></h2><p>Before starting this project, ensure you have the following in place. This walkthrough assumes a local, authorised lab environment that you fully control. </p><p><strong>Required environment and tools:</strong></p><ul><li><p><strong>Kali Linux:</strong> VM</p></li><li><p><strong>Claude Code:</strong> Account</p></li><li><p><strong>Python 3.10 or higher</strong></p></li><li><p><strong>Network isolated vulnerable target</strong>: For example, Metasploitable 2 running locally.</p></li><li><p><strong>A Basic understanding of Metasploit</strong>: A penetration testing tool/framework that allows you to write, do testing, and execute exploit payloads/code</p></li><li><p><strong>Let me know in the comments if you need help with the above</strong> &#11014;&#65039;</p></li></ul><p><em>This project is intended strictly for <strong>educational and lab based security testing</strong>. Do not apply these techniques to systems you do not own or explicitly have permission to test</em></p><h3><strong>Project Time&#8230;. &#128640;</strong></h3><h3><strong>As usual, I reserve the Projects for community members&#8230;Come join the fun! &#127757;</strong></h3>
      <p>
          <a href="https://www.cybernotes.tech/p/ai-hacking-cv-project">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[10,000 Readers Giveaway: AWS Cert 🚀]]></title><description><![CDATA[AWS CCP]]></description><link>https://www.cybernotes.tech/p/10000-readers-giveaway-aws-cert</link><guid isPermaLink="false">https://www.cybernotes.tech/p/10000-readers-giveaway-aws-cert</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 04 Jan 2026 19:30:30 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!cIdm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>I can&#8217;t quite believe I&#8217;ve scaled this to <strong>10,000 weekly readers &#127881;</strong></p><p>I&#8217;ll keep this short and sweet, I&#8217;d like to give something back.</p><p>I&#8217;m giving away a free AWS Certified Cloud Practitioner exam voucher. It was the first exam I took, and it&#8217;s the one that really set me on my cloud security journey.</p><p>To enter, just reply to this post and share what your goals for this year are.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!cIdm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!cIdm!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 424w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 848w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 1272w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!cIdm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png" width="461" height="461" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:461,&quot;width&quot;:461,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:48019,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/182845503?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!cIdm!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 424w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 848w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 1272w, https://substackcdn.com/image/fetch/$s_!cIdm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff24a5a2d-3ac3-44e3-a523-bb67b22daa58_461x461.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Thanks again to all of you!  for signing up, and to the community members who trusted me with their money. Especially in times like these, it&#8217;s hard to ascertain real value in the landscape, and I hope that&#8217;s something I can continue to provide.</p><p>I have more giveaways and some great projects planned for this year, so keep your eyes peeled  &#128064; &#128640;</p><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://www.cybernotes.tech/p/hacking-project-101-reverse-shells">Hacking Project 101: Reverse Shells with AWS &amp; Ncat</a></strong></h4><h4><strong><a href="https://www.cybernotes.tech/p/aws-security-project-sts">AWS Security Project: STS &#128273;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item><item><title><![CDATA[Learn this Container Security Tool… 📦⚔️ ]]></title><description><![CDATA[A Project YOU can do...]]></description><link>https://www.cybernotes.tech/p/learn-this-container-security-tool</link><guid isPermaLink="false">https://www.cybernotes.tech/p/learn-this-container-security-tool</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 28 Dec 2025 19:30:31 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!hJBr!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong>Hacking Project 101: Reverse Shells with Netcat</p><p><strong>Next Issue:</strong> <a href="http://cybernotes.tech">AI Hacking Project: Atomic Red Team MCP </a></p><p><strong>This Issue: </strong><a href="http://cybernotes.tech">Learn this Container Security Tool&#8230; &#128230;&#9876;&#65039;</a> </p><div><hr></div><p><em><strong>&#8220;Two projects in one month. Not bad!</strong></em><strong> Cyber Notes is my favourite newsletter!&#8221;<br></strong>I can hear you all now say &#128227;</p><p>Jokes aside, I wanted to squeeze this one in before New Year. It will be slightly less &#8220;handholdy&#8221; than usual, but it sets you up with a practical understanding of Docker Scout and modern container security. Keep an eye out for the January project, <em><strong>AI Hacking Project: Atomic Red Team MCP</strong></em>. That one is going to be a standout.</p><p>There is no grand end goal today other than learning the tool and internalising the core concepts. By the end of this walkthrough, you will be able to:</p><p>&#8226; Understand how Docker Scout fits into a secure container pipeline</p><p>&#8226; Evaluate base image vulnerabilities and compare images effectively</p><p>&#8226; Integrate Scout into a GitHub Actions workflow for automated scanning</p><p>&#8226; Use gating policies to block releases</p><p>&#8226; Apply container security principles across your own projects</p><div><hr></div><h4>Docker Scout </h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!w-j3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!w-j3!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 424w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 848w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 1272w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!w-j3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png" width="1110" height="583" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/da17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:583,&quot;width&quot;:1110,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Software Supply Chain Management for Developers | Docker Scout&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Software Supply Chain Management for Developers | Docker Scout" title="Software Supply Chain Management for Developers | Docker Scout" srcset="https://substackcdn.com/image/fetch/$s_!w-j3!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 424w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 848w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 1272w, https://substackcdn.com/image/fetch/$s_!w-j3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fda17ac4b-66b8-41db-bd60-d53d5a711c33_1110x583.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>At its core, Docker Scout is a container security solution that focuses on the software supply chain. Unlike other tools that simply grep a manifest file for versions, Scout digs into the SBOM<strong> (<a href="https://wjpearce.substack.com/p/supply-chain-security-project">More on that here)</a></strong> to identify packages and match them against CVE databases.</p><p>It operates in two main modes:</p><ol><li><p><strong>Agentless Registry Scanning (Basically, they handle the compute and you don&#8217;t need to deploy anything into your registry):</strong> It hooks into your registries like Docker Hub, AWS ECR, etc. and analyses images &#8220;at rest.&#8221; It pulls metadata (not the full image) to monitor for new vulnerabilities in old images.</p></li><li><p><strong>CI/CD &amp; CLI (Active):</strong> A lightweight CLI tool that developers run locally or inside a pipeline to block builds before an image is ever pushed.</p></li></ol><div><hr></div><h4><strong>Features (Why You Should Give a Shit)</strong></h4><p>Chances are, if you read <em>Cyber Notes</em>, you either want to work in Cloud Security or already do. Below are the main ways I personally use Docker Scout at work, and I recommend you learn to employ it in the same way.</p><p><strong>1. Managed Environments</strong> This is one of the standout features for organising policy. Instead of treating every image equally, you can assign images to specific &#8220;Environments&#8221; (<code>Dev</code>, <code>Staging</code>, <code>Prod</code>) - trust me, learn this.</p><ul><li><p><strong>Why it matters:</strong> It mirrors the label/tagging systems you might see in tools like Prisma Cloud or Port IO. It allows you to align vulnerability policies with your application lifecycle. You can be lenient in <code>Dev</code> but strict in <code>Prod</code>.</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!hJBr!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!hJBr!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 424w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 848w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 1272w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!hJBr!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png" width="532" height="471.82519280205656" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a245812b-440b-4817-b90a-644e74b6a547_778x690.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:690,&quot;width&quot;:778,&quot;resizeWidth&quot;:532,&quot;bytes&quot;:349765,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!hJBr!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 424w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 848w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 1272w, https://substackcdn.com/image/fetch/$s_!hJBr!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa245812b-440b-4817-b90a-644e74b6a547_778x690.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>2. Comparison &amp; Diffing</strong> Scout includes an experimental <code>compare</code> command. This allows you to diff two images to see exactly what changed, not just in terms of layers, but in terms of vulnerability posture.</p><ul><li><p><em>Use case:</em> &#8220;My build failed today but passed yesterday. What changed?&#8221;</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!32gN!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!32gN!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 424w, https://substackcdn.com/image/fetch/$s_!32gN!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 848w, https://substackcdn.com/image/fetch/$s_!32gN!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 1272w, https://substackcdn.com/image/fetch/$s_!32gN!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!32gN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png" width="552" height="494.4696569920844" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:679,&quot;width&quot;:758,&quot;resizeWidth&quot;:552,&quot;bytes&quot;:368065,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!32gN!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 424w, https://substackcdn.com/image/fetch/$s_!32gN!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 848w, https://substackcdn.com/image/fetch/$s_!32gN!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 1272w, https://substackcdn.com/image/fetch/$s_!32gN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4376de16-ebfa-4d6f-aaae-ec5b89e847b0_758x679.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>3. Vulnerability Management &amp; Exceptions </strong>Scout uses a pretty cool exception system (VEX) to handle false positives or accepted risks.</p><ul><li><p><strong>Scopes:</strong> You can scope exceptions to a specific image, a whole repository, or the entire organisation.</p></li><li><p><strong>The Catch:</strong> From my testing, exceptions are metadata-heavy. If you scope an exception to a specific image digest, it won&#8217;t automatically propagate to a new tag of that image unless you scope it to the <em>Repository</em> or <em>Organisation</em>. It requires a deliberate strategy to ensure you aren&#8217;t re-ignoring the same CVE every week.</p></li></ul><p><strong><br>4. Developer Ecosystem Integration</strong></p><ul><li><p><strong>SARIF Support:</strong> It outputs results in <code>.sarif</code> format, making it easy to upload findings directly into GitHub Advanced Security or other dashboards.</p></li><li><p><strong>Policy Gating:</strong> You can define thresholds (&#8220;Block on Critical&#8221;) to break the build if criteria aren&#8217;t met.</p></li></ul><div><hr></div><h4>How To</h4><p>There is no grand end goal today other than internalising the core concepts. Below is the practical workflow I used to get up and running.</p><h4>1. Authenticate &amp; Setup</h4><ul><li><p>First, you need to authenticate your local Docker CLI with your Scout organisation. </p></li></ul><ul><li><p>Open the Docker Dashboard locally and navigate to the Scout tab &gt; Sign in.</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qZhA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qZhA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 424w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 848w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 1272w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qZhA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png" width="1262" height="714" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:714,&quot;width&quot;:1262,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:159591,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!qZhA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 424w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 848w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 1272w, https://substackcdn.com/image/fetch/$s_!qZhA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff6d54721-7084-4204-a220-697fa3dfd48e_1262x714.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ul><li><p>You&#8217;ll be taken to the Scout onboarding page. </p></li><li><p>Go through it all, or open the demo version if you don&#8217;t have your own registry yet</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Ckxf!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Ckxf!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 424w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 848w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 1272w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Ckxf!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png" width="1456" height="401" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:401,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:175867,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Ckxf!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 424w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 848w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 1272w, https://substackcdn.com/image/fetch/$s_!Ckxf!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff27191ca-1229-4974-b9cd-b87fc820b91d_1862x513.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div></li></ul><p>From the account settings page you can now create a personal access token which you should use to auth from the CLI, like so: </p><pre><code>docker login -u &lt;YOUR_ORG_USER&gt;
# Enter PAT Token as password</code></pre><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!1lP-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!1lP-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 424w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 848w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 1272w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!1lP-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png" width="571" height="89" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:89,&quot;width&quot;:571,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:18005,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!1lP-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 424w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 848w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 1272w, https://substackcdn.com/image/fetch/$s_!1lP-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9d6e4772-0d5b-4ef3-a4d5-1dd48f0e169f_571x89.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h4>2. Local Scanning</h4><p>Before you even push your image, you can run a quick scan. This is great for &#8220;shifting left&#8221; without leaving the terminal.</p><p><strong>Basic CVE Scan: I will use the Juice Shop image here</strong></p><pre><code>docker scout cves bkimminich/juice-shop:latest</code></pre><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!wS3N!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!wS3N!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 424w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 848w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 1272w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!wS3N!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png" width="794" height="454" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:454,&quot;width&quot;:794,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:58139,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!wS3N!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 424w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 848w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 1272w, https://substackcdn.com/image/fetch/$s_!wS3N!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5fba7b4f-3167-4b34-92d7-14687de65a18_794x454.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Pretty easy right?</p><p><strong>Simulate a Gate:</strong> You can run the command with arguments that mirror your build pipeline gates to see if you would pass or fail.</p><pre><code>docker scout cves bkimminich/juice-shop:latest --only-severity critical,high</code></pre><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Nljp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Nljp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 424w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 848w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 1272w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Nljp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png" width="837" height="186" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:186,&quot;width&quot;:837,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:23852,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179439136?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Nljp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 424w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 848w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 1272w, https://substackcdn.com/image/fetch/$s_!Nljp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F765ea131-8bf8-458c-84cf-614e5bc2640d_837x186.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h4>3. Working with Managed Environments</h4><p>This was the most interesting part of the basics. You don&#8217;t just push images, you assign them to a stage in your lifecycle.</p><p><strong>Assigning an image to &#8216;Dev&#8217;:</strong></p><pre><code>docker scout environment dev cybernotes-org/bkimminich/juice-shop:latest --platform linux/arm64</code></pre><p>Remember, this ^ is what we would expect when using these tools in an actual company.</p><h4>3. Next Steps for You</h4><ul><li><p><strong>Fix the easy stuff:</strong> Run <code>docker scout recommendations &lt;image&gt;</code> . It will tell you if simply swapping the base image (from <code>node:16</code> to <code>node:16-alpine</code>) will instantly kill 50% of your CVEs.</p></li><li><p><strong>Spot the Difference Challenge:</strong> Push a new version of an image and use the experimental comparison command: <code>docker scout compare &lt;new-image&gt; --to &lt;old-image&gt;</code> This is the fastest way to answer your dev teams question question: <em>&#8220;We didn&#8217;t change the code, so why is security flagging it now?&#8221;</em></p></li><li><p><strong>Add it to GitHub:</strong> If you have a test repository, add the <code>docker/scout-action</code> to your workflow yaml. Seeing the security report appear automatically in your Pull Request comments is usually the moment the tool &#8220;clicks&#8221; for developers.</p></li></ul><p>Hopefully you&#8217;ve seen how simple it is to get up and running with image security and Docker Scout &#128011; </p><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://www.cybernotes.tech/p/hacking-project-101-reverse-shells">Hacking Project 101: Reverse Shells with AWS &amp; Ncat</a></strong></h4><h4><strong><a href="https://www.cybernotes.tech/p/aws-security-project-sts">AWS Security Project: STS &#128273;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item><item><title><![CDATA[Hacking Project 101: Reverse Shells with AWS & Ncat]]></title><description><![CDATA[10/10 Staring Point]]></description><link>https://www.cybernotes.tech/p/hacking-project-101-reverse-shells</link><guid isPermaLink="false">https://www.cybernotes.tech/p/hacking-project-101-reverse-shells</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 14 Dec 2025 19:30:34 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Gxpf!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://www.cybernotes.tech/p/5-x-entry-level-cloud-security-interview">5 x Entry Level Cloud Security Interview Questions</a></p><p><strong>Next Issue:</strong> <a href="http://cybernotes.tech">Learn this Container Security Tool&#8230; &#128230;&#9876;&#65039;</a></p><p><strong>This Issue: </strong><a href="https://www.cybernotes.tech/">Hacking Project 101: Reverse Shells with Netcat</a></p><div><hr></div><p><strong>I recently had a Cyber Notes reader reach out to share that they had landed an entry level cloud role in a FinTech company and they used some of the projects here as inspiration for their interview prep!!!! </strong></p><p><strong>This is incredible &#128165;  So, a huge shout out to them! And thank you for reading.</strong></p><p><strong>As promised, the projects are now bigger and better, and I&#8217;m spending a lot more time explaining the fundamentals &#129309; </strong></p><p><strong>Let&#8217;s begin.</strong></p><div><hr></div><h3>Read This &gt; Then do the project&#8230; </h3><p><em>Cloud fundamentals?</em> <strong>Check</strong>. <em>DevOps Skills?</em> <strong>Check</strong>. <em>AWS Certs?</em> <strong>Check</strong>.</p><p><em>Hacking demo?</em> <strong>That&#8217;s where things get interesting.</strong></p><p>I keep seeing the same pattern in the cloud security beginner space: there&#8217;s almost no real showcase of what attackers actually do.</p><p>That&#8217;s exactly where I want to take <strong>Cyber Notes</strong> in the months ahead. Understanding the processes threat actors follow, the steps they take, and how they think is absolutely something you should know if you want to secure the cloud. To be honest, it is also way more interesting than configuring yet another Cloud Service. </p><div><hr></div><h3>This is where you are going to learn the fundamentals.</h3><p><strong>What&#8217;s a shell?</strong> In simple terms, it is the user interface that allows you to &#8220;talk&#8221; to the computer&#8217;s operating system. When you open your terminal and type commands, that&#8217;s you interacting with the shell. I&#8217;m guessing you&#8217;ve used one of these:</p><p><strong>Bash (Linux / macOS):</strong> The industry standard for decades. Most Linux servers run this.</p><p><strong>Zsh (macOS / Linux):</strong> Similar to Bash but with more user friendly features (themes, better autocomplete). It is now the default on Macs.</p><p><strong>PowerShell (Windows):</strong> A powerful shell designed for system administration, treating outputs as objects rather than just text <em>(a distinction I actually just learnt while researching this project).</em></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!nMJt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!nMJt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 424w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 848w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 1272w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!nMJt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png" width="786" height="607" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:607,&quot;width&quot;:786,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:35805,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180439792?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!nMJt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 424w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 848w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 1272w, https://substackcdn.com/image/fetch/$s_!nMJt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2dbbe383-d86a-4cb0-a413-31683a69a698_786x607.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>If you&#8217;re really interested in learning more here, I recommend taking a basic Computer Architecture course, specifically one that covers the Kernel, how the shell wraps around it, and how the user interacts with the hardware through the OS.</p><p><strong>So, why does this matter for hacking?</strong> We know that opening a &#8220;Shell&#8221; on a user&#8217;s device acts as a gateway, letting us run commands to do whatever we want (so long as we have the authorisation)</p><p>If you&#8217;re an attacker, this sounds ideal, right? You are rarely going to get physical access to a target&#8217;s device, but what if you could open a shell over a network?</p><p>Congrats! That&#8217;s the basis of every attacker&#8217;s end goal.</p><h3>What are the two ways they do this?</h3><p><strong>What&#8217;s a Bind Shell?</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Gxpf!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Gxpf!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 424w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 848w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 1272w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Gxpf!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png" width="1456" height="632" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b815f629-311b-4006-9fc7-60dde42d0881_1860x808.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:632,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2780796,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180439792?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Gxpf!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 424w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 848w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 1272w, https://substackcdn.com/image/fetch/$s_!Gxpf!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb815f629-311b-4006-9fc7-60dde42d0881_1860x808.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This is where the target machine is made or forced, however you want to word it to open a specific port and listen for an incoming connection from the attacker.</p><p>Basically, thinking like a hacker, we want to turn the target device into a server that <strong>we</strong> connect to.</p><p>We can do this with a number of tools (like Netcat), and we will take a proper look at them in the project.</p><p><strong>But wait&#8230; what about Firewalls? </strong>Aren&#8217;t they supposed to block this kind of incoming connection?</p><p><strong>Correct.</strong></p><p>Most corporate environments and even home routers have strict Inbound firewall rules. They are designed to stop random people on the internet (you) from initiating a connection to their internal computers (the target).</p><p>If you try to connect to that open port from the outside, the firewall will see an unsolicited incoming request and simply drop it. </p><p><strong>Which is why&#8230;..We should learn&#8230;.</strong></p><p><strong>What&#8217;s a Reverse Shell?</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!fWhe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!fWhe!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 424w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 848w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 1272w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!fWhe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png" width="1456" height="737" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:737,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3066568,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/180439792?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!fWhe!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 424w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 848w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 1272w, https://substackcdn.com/image/fetch/$s_!fWhe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F755f6b76-1f29-4c23-ba91-b1ba83aa23d4_1862x942.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>If the Bind Shell is us trying to push our way in, the Reverse Shell is us convincing the target to &#8220;phone home.&#8221;</p><p>Instead of the attacker trying to connect to the target (which the firewall blocks), we execute a payload on the target machine that tells it to connect back to us.</p><p><strong>Why does this work?</strong></p><p>Firewalls are strict on what traffic they let in (Inbound traffic), they are usually much more relaxed about what they let out (Outbound traffic). After all, the employees inside the network need to visit websites, send emails, and download updates. The firewall assumes that traffic leaving the building is generally safe.</p><p>So, in a Reverse Shell scenario:</p><ol><li><p><strong>The Attacker</strong> sets up a &#8220;Listener&#8221; on their own machine (waiting for a call).</p></li><li><p><strong>The Target</strong> (victim) initiates the connection outbound to the attacker.</p></li><li><p><strong>The Firewall</strong> sees an employee trying to connect to the internet and lets them through.</p></li></ol><p>Sweet. We have a shell.</p><h4><strong>Let&#8217;s build.</strong> </h4><h4>As usual, I reserve the Projects for community members&#8230; come join the fun! </h4>
      <p>
          <a href="https://www.cybernotes.tech/p/hacking-project-101-reverse-shells">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[5 x Entry Level Cloud Security Interview Questions]]></title><description><![CDATA[Unixguy Special]]></description><link>https://www.cybernotes.tech/p/5-x-entry-level-cloud-security-interview</link><guid isPermaLink="false">https://www.cybernotes.tech/p/5-x-entry-level-cloud-security-interview</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 30 Nov 2025 19:30:38 GMT</pubDate><enclosure url="https://substackcdn.com/image/youtube/w_728,c_limit/5bX81rSaho8" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="https://www.cybernotes.tech/p/cyber-notes-is-changing">Cyber Notes is Changing&#8230;</a></p><p><strong>Next Issue:</strong> <a href="https://www.cybernotes.tech/">Hacking Project 101: Reverse Shells with Netcat</a></p><p><strong>This Issue: </strong><a href="https://www.cybernotes.tech/p/aws-security-project-sts">AWS Project: Security Token Service  &#128273; </a></p><div><hr></div><p>I recently did a collab with Abed Hamdanm or as you might know him&#8230;<strong>UnixGuy!</strong></p><div id="youtube2-5bX81rSaho8" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;5bX81rSaho8&quot;,&quot;startTime&quot;:&quot;1700s&quot;,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/5bX81rSaho8?start=1700s&amp;rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>Each challenge presents a key question, a common misconception (the wrong answer), and the correct, detailed explanation. Test yourself and see how well you know the fundamentals!</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!aUeB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!aUeB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 424w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 848w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 1272w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!aUeB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png" width="628" height="351.0934065934066" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:814,&quot;width&quot;:1456,&quot;resizeWidth&quot;:628,&quot;bytes&quot;:1696168,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/179005230?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!aUeB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 424w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 848w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 1272w, https://substackcdn.com/image/fetch/$s_!aUeB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F67663d1d-8603-4419-a733-0c2ed3fab995_1875x1048.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Skip to <em><strong><a href="https://www.youtube.com/watch?v=5bX81rSaho8&amp;t=1700s">29:00</a></strong></em> for my section on <em><strong>5 x Common Entry Level Cloud Security Interview Questions</strong></em></p><div><hr></div><h3><strong>Question #1: Role-Based Access Control (RBAC)</strong></h3><ul><li><p><strong>Question:</strong> &#8220;What is role-based access control and how is it implemented in a cloud platform?&#8221;</p></li><li><p>&#10060; <strong>Wrong Answer (Misconception):</strong> &#8220;RBAC means each user has their own custom role with specific permissions. That&#8217;s incorrect because RBAC is about shared, standardised roles based on job functions, not user customisation, and direct user permissions don&#8217;t scale well.&#8221;</p></li><li><p>&#9989; <strong>Correct Answer:</strong> &#8220;RBAC is a security model where permissions are assigned to roles rather than individual users, and users are then added to those roles based on their job function. In cloud platforms like AWS IAM, RBAC is implemented by creating roles such as developer, security auditor, or database administrator, assigning specific permissions to each, and then attaching users or service accounts to those roles.&#8221;</p></li></ul><div><hr></div><h3><strong>Question #2: Encryption</strong></h3><ul><li><p><strong>Question:</strong> &#8220;What&#8217;s the difference between Encryption at Rest and Encryption in Transit?&#8221;</p></li><li><p>&#10060; <strong>Wrong Answer (Misconception):</strong> &#8220;Encryption in transit is only needed for public internet traffic and not internal cloud traffic. That&#8217;s wrong because even traffic inside a cloud environment should be encrypted to prevent interception by attackers.&#8221;</p></li><li><p>&#9989; <strong>Correct Answer:</strong> &#8220;Encryption at rest protects data while it&#8217;s stored on a disk or in a database so that if someone gains access to the storage, they can&#8217;t read the data without encryption keys. Encryption in transit protects data while it&#8217;s moving between two points, such as from a user&#8217;s browser to a server or between two cloud services, preventing eavesdropping during transmission.&#8221;</p></li></ul><div><hr></div><h3><strong>Question #3: Security Groups</strong></h3><ul><li><p><strong>Question:</strong> &#8220;What is a Security Group (or Network Security Group), and how does it work in the cloud?&#8221;</p></li><li><p>&#10060; <strong>Wrong Answer (Misconception):</strong> &#8220;A security group encrypts traffic that passes through it. That&#8217;s wrong because security groups only control whether traffic is allowed or denied; they do not encrypt, decrypt, or inspect the contents of the traffic.&#8221;</p></li><li><p>&#9989; <strong>Correct Answer:</strong> &#8220;A security group is a virtual firewall that controls inbound and outbound traffic to cloud resources such as virtual machines or containers. It works by defining rules that specify which traffic is allowed based on protocol, port, and source or destination IP addresses. Security groups are stateful, meaning if inbound traffic is allowed, the return traffic is automatically allowed without needing a separate outbound rule.&#8221;</p></li></ul><div><hr></div><h3><strong>Question #4: Infrastructure as Code (IaC)</strong></h3><ul><li><p><strong>Question:</strong> &#8220;What is Infrastructure as Code (IaC) and what are the security benefits?&#8221;</p></li><li><p>&#10060; <strong>Wrong Answer (Misconception):</strong> &#8220;IaC is mainly for automation and faster deployment; it doesn&#8217;t improve security.&#8221;</p></li><li><p>&#9989; <strong>Correct Answer:</strong> &#8220;Infrastructure as Code (IaC) is the practice of managing and provisioning infrastructure through code instead of manual setup. It improves security by ensuring consistency across environments, minimising human error, enabling version control to track and review changes, and supporting automated security scanning to detect misconfigurations before deployment.&#8221;</p></li></ul><div><hr></div><h3><strong>Question #5: Secrets Management</strong></h3><ul><li><p><strong>Question:</strong> &#8220;What is the purpose of Secrets Management in a cloud-based environment?&#8221;</p></li><li><p>&#10060; <strong>Wrong Answer (Misconception):</strong> &#8220;Secrets management is just about encrypting passwords in a database.&#8221;</p></li><li><p>&#9989; <strong>Correct Answer:</strong> &#8220;Secrets management is the practice of securely storing, accessing, and managing sensitive information such as passwords, API keys, database credentials, and tokens. Its purpose is to prevent secrets from being hardcoded into application code or configuration files and instead store them in a centralised, secure location that allows automatic rotation of credentials.&#8221;</p></li></ul><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item><item><title><![CDATA[AWS Security Project: STS 🔑 ]]></title><description><![CDATA[The most important cloud security concept...]]></description><link>https://www.cybernotes.tech/p/aws-security-project-sts</link><guid isPermaLink="false">https://www.cybernotes.tech/p/aws-security-project-sts</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 16 Nov 2025 19:30:38 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!i5At!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bJ33!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:112345,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/177867920?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bJ33!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!bJ33!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e482ad2-4881-4ef8-8254-51c2efc38600_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Issue: </strong><a href="http://cybernotes.tech">Cyber Notes is Changing&#8230;</a></p><p><strong>Next Issue:</strong> <a href="http://cybernotes.tech">5 x Common Entry Level Cyber Security Interview Questions</a></p><p><strong>This Issue: </strong><a href="https://wjpearce.substack.com/">AWS Project: Security Token Service  &#128273; </a> </p><div><hr></div><h4>House Keeping: </h4><p>Hopefully you&#8217;ll enjoy this week&#8217;s project, I feel it&#8217;s a really fundamental Cloud skill to know about from a security point of view. Let me know if you get stuck.</p><p>I wanted to drop a quick note to say Cyber Notes now has its own domain&#8230;<em><strong><a href="https://cybernotes.tech/">cybernotes.tech</a></strong> <strong>&#127881;</strong></em></p><div><hr></div><p><strong>AWS STS</strong></p><p>What is it and why is it so important? Okay, basically at a high level, AWS STS lets you request temporary credentials so a service in one account can safely take action another account.</p><p>Cross account access gets messy fast if you don&#8217;t structure it properly, so here&#8217;s the secure version of how it should work and what we are going to build today.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!i5At!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!i5At!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 424w, https://substackcdn.com/image/fetch/$s_!i5At!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 848w, https://substackcdn.com/image/fetch/$s_!i5At!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 1272w, https://substackcdn.com/image/fetch/$s_!i5At!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!i5At!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png" width="1456" height="1382" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1382,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:414346,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/177867920?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!i5At!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 424w, https://substackcdn.com/image/fetch/$s_!i5At!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 848w, https://substackcdn.com/image/fetch/$s_!i5At!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 1272w, https://substackcdn.com/image/fetch/$s_!i5At!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa605d864-b6b1-4932-b36e-6f77a9af2803_1881x1785.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>Account A</strong><br>Runs something like:</p><ul><li><p>Lambda </p></li><li><p>ECS task</p></li></ul><p><strong>It has a single IAM policy that says:</strong> <em>I am allowed to call sts:AssumeRole on a role in </em></p><p><strong>Account B</strong><em><br></em>Contains the actual IAM role. This role has two things:</p><p><strong>A trust policy that says:</strong> <em>I trust Account A to assume me.</em></p><p><strong>A permission policy that says:</strong> <em>Here&#8217;s what I can do in Account B (example: write to S3, deploy to ECS, read Secrets Manager etc ).</em></p><p>Done.</p><p><strong>Account B exposes a role.<br>Account A gets permission to assume it.<br><br></strong>This is cool because, it means no permanent credentials and no giant list of access keys floating around.</p><div><hr></div><h4>Project Time</h4><p>Okay, now you understand what&#8217;s going on here. Let&#8217;s build it out in action!</p><p>As usual, I reserve the Projects for community members&#8230; come join the fun!</p>
      <p>
          <a href="https://www.cybernotes.tech/p/aws-security-project-sts">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Cyber Notes is Changing…]]></title><description><![CDATA[Less BS, More Projects...]]></description><link>https://www.cybernotes.tech/p/cyber-notes-is-changing</link><guid isPermaLink="false">https://www.cybernotes.tech/p/cyber-notes-is-changing</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 09 Nov 2025 19:30:10 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!jOzN!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!KNPs!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!KNPs!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!KNPs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/81075352-8547-4dcb-b010-38b05933e16a_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:112345,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/177867612?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!KNPs!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!KNPs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F81075352-8547-4dcb-b010-38b05933e16a_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Week: </strong><a href="https://wjpearce.substack.com/">Cloud Security Cheat Code &#9000;&#65039;</a> </p><p><strong>Next Week:</strong> <a href="https://wjpearce.substack.com/">AWS Project: Security Token Service  &#128273; </a></p><p><strong>This Week: </strong><a href="https://wjpearce.substack.com/">Cyber Notes is Changing&#8230;</a></p><div><hr></div><p><strong>Housekeeping:</strong> I made a small mistake last week with <strong> </strong><a href="https://wjpearce.substack.com/">Cloud Security Cheat Code &#9000;&#65039;</a> I had the introduction in twice, one draft version and one final version. Apologies for that; it was a long week!</p><div><hr></div><h4>I have written this newsletter once a week&#8230; for 87 weeks in a row.</h4><p>We are nearly at <strong>10,000</strong> subscribers.</p><p>Thank you, you have shown me the work I do in making Cloud Security clear, visual and practical is extremely valued &#10084;&#65039;</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!jOzN!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!jOzN!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 424w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 848w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 1272w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!jOzN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png" width="1456" height="637" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:637,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:214056,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/177867612?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!jOzN!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 424w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 848w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 1272w, https://substackcdn.com/image/fetch/$s_!jOzN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F85577789-bc79-4ed9-b941-2edd4cae9506_3024x1323.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h4>Change is coming&#8230;</h4><p><strong>Fewer emails, more value.</strong></p><p>Over the next month, you&#8217;ll start seeing fewer Cyber Notes in your inbox, but each one will pack a lot more punch.</p><p>Here&#8217;s what&#8217;s changing:<br>Right now, you get four reads a month, three focused on news, thoughts, guides, and roadmaps, plus one project (exclusive to paid readers).</p><p>Lately, I&#8217;ve felt like I&#8217;m rushing to publish <em>something</em> instead of putting that time into creating better, more meaningful projects. So going forward, Cyber Notes will go out <strong>twice a month</strong> instead of four times.</p><p>You&#8217;ll still get:</p><ul><li><p><strong>1 project per month</strong> (for paid readers - no change here, with access to all previous projects)</p></li><li><p><strong>1 deep guide, roadmap, or opinion piece etc</strong></p></li></ul><p><strong>Why this is better:</strong><br>This shift means I can spend more time building <strong>bigger, better projects</strong>. You&#8217;ll get more value from each issue instead of quick updates.</p><p><strong>To summarise:</strong><br><strong>Old</strong> &gt; 4 issues/month<br><strong>New</strong> &gt; 2 issues/month (1 project + 1 guide)</p><p>Quality over quantity. I get more time to create better projects. You&#8217;ll get less noise and more substance. Everyone wins.</p><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item><item><title><![CDATA[Cloud Security Cheat Code ⌨️]]></title><description><![CDATA[Here's what you should do...]]></description><link>https://www.cybernotes.tech/p/cloud-security-cheat-code</link><guid isPermaLink="false">https://www.cybernotes.tech/p/cloud-security-cheat-code</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 02 Nov 2025 19:30:20 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!AHdm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!a4hh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!a4hh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!a4hh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:112345,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.cybernotes.tech/i/176263632?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!a4hh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!a4hh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8321fc7e-27c7-430d-b0d2-3f4ade88ca15_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Week: </strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></p><p><strong>Next Week:</strong><a href="https://wjpearce.substack.com/"> Cyber Notes is Changing&#8230;</a></p><p><strong>This Week: </strong><a href="https://wjpearce.substack.com/">Cloud Security Cheat Code &#9000;&#65039;</a></p><div><hr></div><h4>You want to stand out &gt; This is how</h4><p>I get asked constantly a variation of the same question when it comes to Cloud Security:</p><ul><li><p><strong>I am total beginner where can I start?</strong></p></li><li><p><strong>I am Junior Cloud Engineer, how do I transition into Security?</strong></p></li><li><p><strong>What should I study for Cloud Security?</strong></p></li></ul><p>                                 &#11014;&#65039; If the above resonates&#8230;.read on! &#11014;&#65039;</p><p>Here&#8217;s a cheat code for learning Cloud Security and hopefully a blanket answer to the above questions.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AHdm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AHdm!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 424w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 848w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 1272w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AHdm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png" width="1456" height="637" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:637,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:167650,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176263632?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AHdm!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 424w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 848w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 1272w, https://substackcdn.com/image/fetch/$s_!AHdm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3adea62f-7a47-4b57-bc4d-8e6dbd10f4e4_3024x1323.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Nice, what does that even mean. Okay bare with me here, but this is a method I&#8217;ve used in the past and it really works! </p><p>When starting out it&#8217;s impossible to know where to start and what to study buuuuut the news is literally going to tell what areas in Cloud Security need attention right now. </p><h3>Example 1: NPM Supply Chain Attack &#8594; Learn SCA</h3><p>Take for example the news a few weeks ago about the NPM package compromise. The headlines screamed &#8220;WE NEED MORE SCA SKILLS!&#8221;</p><p>Use that as your starting anchor, your north star if you will, then <strong>walk backwards</strong>:</p><ol><li><p><strong>Start with the headline:</strong> NPM packages were compromised</p></li><li><p><strong>Ask yourself:</strong> Cool, I don&#8217;t know what a package is and how it&#8217;s used</p></li><li><p><strong>Learn that first:</strong> Understand package managers, dependencies, and how developers use them</p></li><li><p><strong>Then go deeper:</strong> Okay, how can packages be taken advantage of?</p></li><li><p><strong>Finally:</strong> What tools and processes prevent this? (SCA, SBOM, dependency scanning, version pinning)</p></li></ol><p>By the time you&#8217;ve walked backwards through this chain, you understand:</p><ul><li><p>Package management systems</p></li><li><p>Supply chain vulnerabilities</p></li><li><p>Software Composition Analysis tools</p></li><li><p>Real world mitigation strategies, that Security Engineers are actually using</p></li></ul><h3>Example 2: Salesloft API Keys Exposed &#8594; Learn Secret Scanning</h3><p>Let&#8217;s say you see news about exposed Salesforce credentials causing a breach. The solution? &#8220;WE NEED SECRET SCANNING!&#8221;</p><p>Walk it backwards again:</p><ol><li><p><strong>The incident:</strong> API keys were exposed in public repos</p></li><li><p><strong>Question:</strong> I don&#8217;t know what an API key is</p></li><li><p><strong>Learn:</strong> What are API keys? How do they authenticate systems?</p></li><li><p><strong>Next layer:</strong> How does Git work? Why would secrets end up in repos?</p></li><li><p><strong>Prevention:</strong> What is secret scanning? How do tools like GitGuardian or GitHub Secret Scanning work?</p></li><li><p><strong>Best practices:</strong> What are secrets management solutions? (AWS Secrets Manager, HashiCorp Vault )</p></li></ol><p>Now you understand authentication, version control security, and secrets management, all from one news story.</p><h2>This Works&#8230;</h2><p><strong>It&#8217;s relevant.</strong> You&#8217;re learning what matters <em>right now</em> in the industry.</p><p><strong>It builds context.</strong> Walking backwards forces you to understand the fundamentals without getting lost in theory.</p><p><strong>You&#8217;ll stand out.</strong> When everyone else is grinding through generic courses, you&#8217;re learning from active threats. In interviews, you can discuss current security incidents and demonstrate you understand the <em>why</em> behind the tools.</p><h2>But What About Fundamentals?</h2><p>I&#8217;m not saying don&#8217;t learn the fundamentals. I&#8217;m guessing if you&#8217;re reading this you already know a bit about Linux, networking, the cloud, etc., and you want to get stuck in and stand out.</p><p><strong>You learn the fundamentals in context.</strong> Instead of learning about authentication in a vacuum, you learn it because you need to understand how an API key breach happened. </p><p><strong>I&#8217;d hire someone who had done this 100 times over a generic understanding from a course.</strong> </p><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://wjpearce.substack.com/p/devsecops-aws-project">DevSecOps AWS Project</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/supply-chain-security-project">Supply Chain Security Project &#128230; &#9876;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/you-should-learn-aws-security-hub">You should learn AWS Security Hub CSPM</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item><item><title><![CDATA[DevSecOps AWS Project]]></title><description><![CDATA[Cloud Security in a Nutshell...]]></description><link>https://www.cybernotes.tech/p/devsecops-aws-project</link><guid isPermaLink="false">https://www.cybernotes.tech/p/devsecops-aws-project</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 26 Oct 2025 19:30:24 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!oSbH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2t3u!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2t3u!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/840e647f-c391-4cef-af58-0daa255dce21_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!2t3u!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Week: </strong><a href="https://wjpearce.substack.com/">Cloud &amp; Security Courses I recommend for beginners &#128214;</a></p><p><strong>Next Week:</strong> <a href="https://wjpearce.substack.com/">Cloud Security Cheat Code &#9000;&#65039;</a></p><p><strong>This Week: </strong><a href="https://wjpearce.substack.com/">DevSecOps AWS Project </a></p><div><hr></div><p>This project was my first step into Dev<strong>Sec</strong>Ops and it&#8217;s a super easy one to get your head around. </p><p>We are going to use Terraform to deploy some simple AWS Resources using a Github Actions as our Pipeline, with an additional security step to scan for misconfigurations in our IaC. </p><p>I&#8217;ve already build the basic foundations for this which you can find here: <strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">LINK</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!oSbH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!oSbH!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 424w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 848w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 1272w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!oSbH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png" width="1456" height="926" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:926,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!oSbH!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 424w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 848w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 1272w, https://substackcdn.com/image/fetch/$s_!oSbH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1335143e-fe28-4c46-9d2d-5eb7d8f672e0_1596x1015.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>I really recommend following along with the above project before going ahead, it&#8217;s going to walk you through how to get setup with deploying Terraform in your AWS Account  </p><h4><strong>What we are doing here :</strong></h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!skN1!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!skN1!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 424w, https://substackcdn.com/image/fetch/$s_!skN1!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 848w, https://substackcdn.com/image/fetch/$s_!skN1!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 1272w, https://substackcdn.com/image/fetch/$s_!skN1!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!skN1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png" width="1456" height="790" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:790,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:951470,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/168449822?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!skN1!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 424w, https://substackcdn.com/image/fetch/$s_!skN1!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 848w, https://substackcdn.com/image/fetch/$s_!skN1!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 1272w, https://substackcdn.com/image/fetch/$s_!skN1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F45351ca0-7dcf-4781-ab7f-1576dbecf176_1570x852.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h4>Let&#8217;s begin&#8230;. &#11015;&#65039;</h4><p>I spend my evenings and weekends creating these projects to help you launch a career in Cloud Security. It&#8217;s all made possible by your support, and it keeps me caffeinated with flat whites!</p><p>If you&#8217;re searching for the perfect starting point in DevSecOps or cloud security, this is it. Consider becoming a paid subscriber to unlock this project and dozens more.</p>
      <p>
          <a href="https://www.cybernotes.tech/p/devsecops-aws-project">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Cloud & Security Courses I recommend for total beginners 📖]]></title><description><![CDATA[You could start right now...]]></description><link>https://www.cybernotes.tech/p/cloud-and-security-courses-i-recommend</link><guid isPermaLink="false">https://www.cybernotes.tech/p/cloud-and-security-courses-i-recommend</guid><dc:creator><![CDATA[W J Pearce]]></dc:creator><pubDate>Sun, 19 Oct 2025 18:30:22 GMT</pubDate><enclosure url="https://substackcdn.com/image/youtube/w_728,c_limit/5JTBS09e7ew" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2t3u!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2t3u!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png" width="1344" height="256" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/840e647f-c391-4cef-af58-0daa255dce21_1344x256.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:256,&quot;width&quot;:1344,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!2t3u!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 424w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 848w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1272w, https://substackcdn.com/image/fetch/$s_!2t3u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F840e647f-c391-4cef-af58-0daa255dce21_1344x256.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p><strong>Last Week: </strong><a href="https://wjpearce.substack.com/p/best-games-for-learning-cloud-security">The Best Games for learning Cloud Security &#127918;</a></p><p><strong>Next Week:</strong> <a href="https://wjpearce.substack.com/">Weekend Project: Terraform Security</a></p><p><strong>This Week: </strong><a href="https://wjpearce.substack.com/">Cloud &amp; Security Courses I recommend for beginners &#128214;</a></p><div><hr></div><h4><strong>Courses are neat</strong></h4><p>If you&#8217;re just getting started, courses are cool. They offer insight into what a profession might include and a well trodden path of areas you should focus on to get where you need to be.</p><h4>However&#8230;</h4><p>Try not to indulge too much. You&#8217;ve heard the phrase &#8220;tutorial hell&#8221;! Basically, get what you need to know and start doing.</p><p>No self taught engineer got to where they are without getting stuck and breaking things first.</p><p>Here are some courses I would take (and have taken) if I was just starting out in Cloud Security. </p><p><em><strong>Note:</strong> These are <strong>not</strong> affiliate links, I earn <strong>$0</strong> commission from these. Unless it&#8217;s my own resource.</em> </p><div><hr></div><div id="youtube2-5JTBS09e7ew" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;5JTBS09e7ew&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/5JTBS09e7ew?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>A great starting point for anyone wanting to learn AWS and tbh and the only resource, besides a study app I used to pass my AWS SAA</p><div><hr></div><div id="youtube2-7xngnjfIlK4" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;7xngnjfIlK4&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/7xngnjfIlK4?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>A solid walkthrough that goes over everything you need to get started with Terraform. Some say Terraform is on the way out, I disagree, I think it will evolve, regardless the core concepts of IaC are still worth learning. </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.cybernotes.tech/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption"><strong>Cyber Notes is a reader supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</strong></p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!8gnQ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!8gnQ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 424w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 848w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 1272w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!8gnQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png" width="834" height="466" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:466,&quot;width&quot;:834,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:226671,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!8gnQ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 424w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 848w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 1272w, https://substackcdn.com/image/fetch/$s_!8gnQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa65b68e6-d8d7-4e28-bbe6-ce870c5a562d_834x466.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>Kubernetes:</strong> <a href="https://kodekloud.com/courses/kubernetes-for-the-absolute-beginners-hands-on">Link</a></p><p>KodeKloud is a great resource as it has a good mix of videos and hands on labs. This specific course teaches Kubernetes first principles, ideal for beginners.</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Qns7!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Qns7!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 424w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 848w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 1272w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Qns7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png" width="804" height="581" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:581,&quot;width&quot;:804,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:87695,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Qns7!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 424w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 848w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 1272w, https://substackcdn.com/image/fetch/$s_!Qns7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ea215b2-8b14-4bd6-aee4-3162b08dede4_804x581.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>Google Cloud Cyber:</strong> <a href="https://www.cloudskillsboost.google/paths/419">Link</a></p><p>Googles CompTIA Sec+ Rival&#8230;</p><p>&#8220;This is the first of five courses in the Google Cloud Cybersecurity Certificate. In this course, you&#8217;ll explore the essentials of cybersecurity, including the security lifecycle, digital transformation, and key cloud computing concepts. You&#8217;ll identify common tools used by entry-level&#8221;</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6-ax!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6-ax!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 424w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 848w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 1272w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6-ax!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png" width="860" height="570" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:570,&quot;width&quot;:860,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:410941,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!6-ax!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 424w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 848w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 1272w, https://substackcdn.com/image/fetch/$s_!6-ax!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1e8dee16-bf13-42b5-80e6-ad5237c6a45d_860x570.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>HTB:</strong> <a href="https://academy.hackthebox.com/preview/certifications/htb-certified-defensive-security-analyst?irclickid=So8QPuWNJxycWNX3HkReTygOUkpypvSNnTgGzY0&amp;irgwc=1">Link</a></p><p>The Hack The Box CDSA certification path for learning defensive security, threat hunting, SOC operations. It&#8217;s super hands on! Letting you spin up dummy target environment etc so you can get a proper feel for how a role might look. You get a cert also which is nice for LinkedIn, if you&#8217;re into that. </p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!WktD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!WktD!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 424w, https://substackcdn.com/image/fetch/$s_!WktD!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 848w, https://substackcdn.com/image/fetch/$s_!WktD!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 1272w, https://substackcdn.com/image/fetch/$s_!WktD!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!WktD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png" width="1144" height="904" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:904,&quot;width&quot;:1144,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:259621,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!WktD!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 424w, https://substackcdn.com/image/fetch/$s_!WktD!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 848w, https://substackcdn.com/image/fetch/$s_!WktD!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 1272w, https://substackcdn.com/image/fetch/$s_!WktD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad6daf98-2f77-4703-8b54-07c6c15df360_1144x904.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>Udemy:</strong> <a href="https://www.udemy.com/course/aws-certified-cloud-practitioner-new/?srsltid=AfmBOoqjtl8XIfF7L1iQON_ySj7CbawGYZxUAukLMRdLa1ryNEXZB24r">Link</a></p><p>The very first course I completed! The AWS Cloud Practitioner course helps build foundational cloud knowledge. It&#8217;s usually on sale so I wouldn&#8217;t pay full price here. Stepahne Maarek covers absolutely every last thing you would need for the AWS CCP Exam.</p><div><hr></div><div id="youtube2-pg19Z8LL06w" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;pg19Z8LL06w&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/pg19Z8LL06w?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>The single best starting point for learning Docker&#8230;Nana is an amazing teacher and explains things in way I try and emulate with my own stuff. </p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!_U6A!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!_U6A!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 424w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 848w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 1272w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!_U6A!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png" width="901" height="230" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:230,&quot;width&quot;:901,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:30558,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!_U6A!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 424w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 848w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 1272w, https://substackcdn.com/image/fetch/$s_!_U6A!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc0e8b622-9c5d-4793-86ef-08e109106a36_901x230.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><strong>GHAS:</strong> <a href="https://learn.microsoft.com/en-us/training/modules/introduction-github-advanced-security/">Link</a></p><p>One I have completed recently. It will help you become familiar with GitHub&#8217;s Advanced Security features and best practices. As you learn about these features, you&#8217;ll identify critical areas for eliminating security gaps. If you&#8217;re interested in DevSecOps, this is a fantastic starting place. </p><div><hr></div><p><strong><a href="https://stan.store/wjpearce/p/techonetwenty">TechOneTwenty</a>:</strong> My very own resource and a fantastic starting place covering the following:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xyH_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xyH_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 424w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 848w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 1272w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xyH_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png" width="498" height="812.6609589041096" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:953,&quot;width&quot;:584,&quot;resizeWidth&quot;:498,&quot;bytes&quot;:47798,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/176262753?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!xyH_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 424w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 848w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 1272w, https://substackcdn.com/image/fetch/$s_!xyH_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F55fa83f4-6e91-4a5b-8e64-60b944b1a5ef_584x953.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h4><strong>It&#8217;s actually on sale right now &#128184; Click the image to check it out&#128433;&#65039;</strong></h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://stan.store/wjpearce/p/techonetwenty" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!X5YR!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 424w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 848w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 1272w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!X5YR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png" width="534" height="340.40875912408757" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:786,&quot;width&quot;:1233,&quot;resizeWidth&quot;:534,&quot;bytes&quot;:985437,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:&quot;https://stan.store/wjpearce/p/techonetwenty&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://wjpearce.substack.com/i/158126976?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!X5YR!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 424w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 848w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 1272w, https://substackcdn.com/image/fetch/$s_!X5YR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F263020ab-1292-43aa-85f1-93ad8ef8f1b4_1233x786.png 1456w" sizes="100vw" loading="lazy" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div><hr></div><p><em><strong>WJPearce - Cyber Notes</strong></em></p><p><strong>Enjoyed this? </strong>Why not check out my other reads&#8230;</p><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-docker-project">The Ultimate Docker Project&#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/part-two-the-ultimate-docker-project">Part Two: The Ultimate Docker Project &#128011;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-aws-starter-pack">The AWS Starter Pack</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-devops-project">Easy Cloud DevOps Project&#128295;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/new-aws-account-step-by-step-guide">New AWS Account Step-by-Step Guide&#10004;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/beginner-ai-cloud-cv-project">Beginner AI Cloud CV Project&#128221;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/sql-injection-made-simple">SQL Injection: Made Simple &#128137;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/the-ultimate-cloud-project">The Ultimate Cloud Project &#9729;&#65039;</a></strong></h4><h4><strong><a href="https://wjpearce.substack.com/p/easy-cloud-automation-project">Easy Cloud Automation Project &#9881;&#65039;</a></strong></h4>]]></content:encoded></item></channel></rss>