Exercises
| Exercise | Avg. Time | Difficulty | Solved by | Tier | |
|---|---|---|---|---|---|
|
|
Secure Design: Event Publishing & Data Boundaries | 15 | PRO | ||
|
|
Secure Design: Idempotency Keys | 15 | PRO | ||
|
|
Secure Design: Rendering Untrusted Content on a Throwaway Origin | 15 | PRO | ||
|
|
Secure Design: Sandboxing Code Execution | 17 | PRO | ||
|
|
Secure Design: Session Management | 23 | PRO | ||
|
|
Secure Design: Write-only API Keys | 18 | PRO | ||
|
|
Secure Design: Password Reset Flow | 22 | PRO | ||
|
|
Secure Design: OAuth / SSO Integration | 21 | PRO | ||
|
|
Java Serialize 09
This challenge covers exploiting toString() through a wrapper class, the technique behind BadAttributeValueExpException in Commons Collections.
|
10 | PRO | ||
|
|
Java Serialize 07
This challenge covers using readResolve() as a deserialization entry point to trigger a gadget chain after the object is restored.
|
10 | PRO | ||
|
|
Java Serialize 10
This challenge covers chaining multiple classes together into a multi-class gadget chain, bridging single-class exploits to real-world attacks.
|
9 | PRO | ||
|
|
Java Serialize 08
This challenge covers exploiting Object.equals(), triggered during HashSet and HashMap deserialization, as a gadget entry point.
|
10 | PRO | ||
|
|
Secure Design: Error Proofing (Poka-yoke) | 22 | PRO | ||
|
|
Secure Design: Framework Security Evaluation | 22 | PRO | ||
|
|
Secure Design: CI/CD Pipeline | 26 | PRO | ||
|
|
Secure Design: Password Storage & Hashing | 24 | PRO | ||
|
|
Secure Design: Fail Closed | 24 | PRO | ||
|
|
CVE-2026-55415: Schema Import Injection
Gain code execution by injecting Python through a crafted JSON Schema when the generated Pydantic model is imported.
|
13 | PRO | ||
|
|
ODF XXE
This exercise covers the exploitation of an XXE in an ODF Parser
|
13 | PRO | ||
|
|
SOAPBridge: Savon WSDL Code Injection
Gain code execution through an unsafe module_eval call during WSDL import.
|
11 | PRO | ||
|
|
Secure Design: Secret & Credential Management | 26 | PRO | ||
|
|
Secure Design: Control Placement | 35 | PRO | ||
|
|
Secure Design: Backend Authentication Proxy | 21 | PRO | ||
|
|
Secure Design: Safe Serialization | 19 | PRO | ||
|
|
AI Fundamentals: Tool Use & Agents | 39 | PRO | ||
|
|
AI Fundamentals: Retrieval-Augmented Generation | 40 | PRO | ||
|
|
Open Door
No guardrails at all. Simply ask the model for the secret key.
|
99 | PRO | ||
|
|
Polite Refusal
The model is told to refuse key requests. Use social engineering to convince it to share anyway.
|
56 | PRO | ||
|
|
AI Fundamentals: Using Models in Practice | 39 | PRO | ||
|
|
AI Fundamentals: Multimodal Models | 38 | PRO |
Showing 1–30 of 808 exercises
Free Labs of the Month