# Hardware, a Hard Cert, and Going Deeper

Part 5 of an ongoing series. [Start with Part 1 here.](https://braindump.0x8r41nr07.xyz/day-zero)

January 2026 opened with a delivery.

I'd preordered the **WiFi Pineapple Pager** back in August 2025 — a compact wireless auditing device from Hak5, the same people behind the Rubber Ducky. Small enough to pocket. Capable enough to simulate the kinds of wireless attacks that happen in the real world: evil twin access points, deauthentication attacks, SSID spoofing. The things that make your phone connect to a network it absolutely shouldn't.

The difference between reading about wireless vulnerabilities and having the tool in your hand is the difference between knowing something and understanding it. I'd been on the theoretical side for six months. The Pineapple pushed me to the practical side, hard.

* * *

The main event for this stretch, though, was **CompTIA Security+**.

If you've been following this series, you know I dropped CompTIA A+ back in August because it wasn't worth the effort it would take for me. Security+ was a completely different calculation. Security+ is the industry baseline for cybersecurity roles — not because it proves you can do the job, but because it proves you've built the vocabulary to start. Threat intelligence, access controls, cryptography fundamentals, incident response frameworks, risk management. The common language of the domain.

I studied from January through April. This was the hardest stretch of the journey so far.

Not because the material was incomprehensible — it wasn't. But it was broad. Security+ tests you on the width of the domain in ways that reward genuine internalization, not just familiarity. The plateau periods were longer here. The imposter syndrome made its strongest argument yet.

I passed in April 2026.

* * *

Three certifications in nine months. I want to be careful about how I frame that, because I know how certification culture can go sideways: certs aren't the goal. They're the receipts. Evidence of learning, with a timestamp. The goal is knowledge and capability — the cert is proof you did the work, not proof you can do the job.

That said: passing Security+ landed differently. It's vendor-neutral, DoD-recognized, and it shows up in most SOC Analyst L1 job descriptions under "required." When I look at a posting now and see "Security+ required," I don't have to skip it.

That matters.

* * *

Masterschool kept deepening through this period. The TryHackMe SOC Level 1 path was getting harder in the right ways — less "what is a network" and more "here's a suspicious log, tell me what happened and why it matters." Real alert triage. SIEM investigation. The delta between academic understanding and operational thinking was narrowing.

And in June 2026, I added one more piece to the setup: the **ZeroTrace OSINT** — a hardened, privacy-focused device built specifically for open-source intelligence work. Learning to find things people think they've hidden. More on what I'm actually doing with it in a future post.

* * *

Eleven months in from where I started.

The gear on the desk was getting serious. The knowledge behind it was getting serious. The gap between who I was in July 2025 and who I was in June 2026 had become measurable in a way that made the imposter syndrome slightly less convincing.

Slightly.
