Exercises

Exercise Avg. Time Difficulty Solved by Tier
CVE-2022-X87X
This challenge covers the review of a CVE in a Golang codebase and its patch
-- hard 109 PRO
CVE-2024-2791X
This challenge covers the review of a CVE in a Golang codebase and its patch
2-4 Hr. hard 98 PRO
ORM LEAK 02
This exercise covers how to exploit an ORM leak vulnerability
< 1 Hr. medium 192 PRO
Puzzle 05
Authentication Bypass using an SQL injection without or 1=1
1-2 Hr. hard 34 PRO
CVE-2024-X3X06
This challenge covers the review of a CVE in a Go codebase and its patch
< 1 Hr. hard 94 PRO
CVE-2023-X5821
This challenge covers the review of a CVE in a Go codebase and its patch
< 1 Hr. hard 88 PRO
CVE-2023-3X4X6
This challenge covers the review of a CVE in a Java codebase and its patch
< 1 Hr. hard 182 PRO
CVE-2022-4x3x5
This challenge covers the review of a CVE in a Java codebase and its patch
< 1 Hr. hard 155 PRO
CVE-2022-2X24X
This challenge covers the review of a CVE in a Java codebase and its patch
< 1 Hr. hard 205 PRO
Puzzle 03
Find and exploit a Golang vulnerability inspired by CVE-2022-31683
1-2 Hr. hard 24 PRO
Java Code Review 15
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 147 PRO
Java Code Review 14
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 147 PRO
Java Code Review 16
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 130 PRO
ORM LEAK 01
This exercise covers how to exploit a simple ORM leak.
1-2 Hr. medium 232 PRO
Java Code Review 12
This challenge covers the review of a simple codebase in Java
-- hard 150 PRO
Java Code Review 13
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 152 PRO
Java Code Review 11
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 153 PRO
Java Code Review 10
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 163 PRO
CVE-2023-4X25X
This challenge covers the review of a CVE in a Java codebase and its patch
< 1 Hr. hard 156 PRO
Puzzle 04
Leverage SQL LIKE to gain access to sensitive information
2-4 Hr. hard 12 PRO
CVE-2023-5X38X
This challenge covers the review of a CVE in a Java codebase and its patch
-- hard 173 PRO
CVE-2024-2X31X
This challenge covers the review of a CVE in a Java codebase and its patch
< 1 Hr. hard 212 PRO
CVE-2024-X875X
This challenge covers the review of a CVE in a Java codebase and its patch
-- hard 193 PRO
CVE-2022-0415
Exploit CVE-2022-0415 to gain code execution in Gogs
2-4 Hr. hard 15 PRO
Java Code Review 07
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 168 PRO
Java Code Review 08
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 171 PRO
Java Code Review 09
This challenge covers the review of a simple codebase in Java
< 1 Hr. hard 146 PRO
Puzzle 02 CSP XSS
Leverage a PHP trick to bypass CSP
< 1 Hr. hard 43 PRO
Puzzle 01
Find the XSS by leveraging backreferences in a regular expression
< 1 Hr. hard 62 PRO
API 13
This exercise covers a complex filter bypass in API.
< 1 Hr. hard 572 PRO
1 2 3 4 5 6 7 24
Showing 91–120 of 692 exercises