Skip to content

Comptia Security Plus Sy0 Textbook

A free, self-paced textbook in 7 chapters. Read a chapter, then drill it with the 120 companion flashcards using spaced repetition.

7 chapters · 120 cards · Updated

Chapters

  1. 1Security Principles and Risk Management

    The foundation of information security rests on several core principles that every practitioner must understand. The CIA triad—Confidentiality, Integrity, and Availability—defines...

  2. 2Social Engineering and Password Attacks

    People are often the weakest link in any security system, and attackers exploit this through social engineering—the manipulation of human psychology to trick individuals into revea...

  3. 3Cryptography and PKI

    Modern cryptography provides the technical backbone for protecting data at rest and in transit, and it comes in two main flavors. Symmetric encryption uses a single shared key to b...

  4. 4Network Security and Secure Communications

    Secure communication over untrusted networks relies on cryptographic tunnels and well-understood protocols. A Virtual Private Network (VPN) creates an encrypted tunnel across a pub...

  5. 5Identity, Authentication, and Access Control

    Authentication and access control in modern environments rely on a handful of well-established protocols. In Windows and Active Directory environments, Kerberos is the dominant aut...

  6. 6Wireless Security and Denial of Service

    Wireless networks introduce their own set of threats that don't exist on wired infrastructure. An evil twin attack sets up a rogue Wi-Fi access point that mimics a legitimate one i...

  7. 7Security Monitoring and Operations

    Effective security operations depend on continuous monitoring and rapid response. A SIEM (Security Information and Event Management) system collects, correlates, and analyzes log d...

← Back to the Comptia Security Plus Sy0 deck