Exercises
| Exercise | Avg. Time | Difficulty | Solved by | Tier | |
|---|---|---|---|---|---|
|
|
CVE-2022-X87X
This challenge covers the review of a CVE in a Golang codebase and its patch
|
-- | 109 | PRO | |
|
|
CVE-2024-2791X
This challenge covers the review of a CVE in a Golang codebase and its patch
|
2-4 Hr. | 98 | PRO | |
|
|
ORM LEAK 02
This exercise covers how to exploit an ORM leak vulnerability
|
< 1 Hr. | 192 | PRO | |
|
|
Puzzle 05
Authentication Bypass using an SQL injection without or 1=1
|
1-2 Hr. | 34 | PRO | |
|
|
CVE-2024-X3X06
This challenge covers the review of a CVE in a Go codebase and its patch
|
< 1 Hr. | 94 | PRO | |
|
|
CVE-2023-X5821
This challenge covers the review of a CVE in a Go codebase and its patch
|
< 1 Hr. | 88 | PRO | |
|
|
CVE-2023-3X4X6
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 182 | PRO | |
|
|
CVE-2022-4x3x5
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 155 | PRO | |
|
|
CVE-2022-2X24X
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 205 | PRO | |
|
|
Puzzle 03
Find and exploit a Golang vulnerability inspired by CVE-2022-31683
|
1-2 Hr. | 24 | PRO | |
|
|
Java Code Review 15
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 147 | PRO | |
|
|
Java Code Review 14
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 147 | PRO | |
|
|
Java Code Review 16
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 130 | PRO | |
|
|
ORM LEAK 01
This exercise covers how to exploit a simple ORM leak.
|
1-2 Hr. | 232 | PRO | |
|
|
Java Code Review 12
This challenge covers the review of a simple codebase in Java
|
-- | 150 | PRO | |
|
|
Java Code Review 13
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 152 | PRO | |
|
|
Java Code Review 11
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 153 | PRO | |
|
|
Java Code Review 10
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 163 | PRO | |
|
|
CVE-2023-4X25X
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 156 | PRO | |
|
|
Puzzle 04
Leverage SQL LIKE to gain access to sensitive information
|
2-4 Hr. | 12 | PRO | |
|
|
CVE-2023-5X38X
This challenge covers the review of a CVE in a Java codebase and its patch
|
-- | 173 | PRO | |
|
|
CVE-2024-2X31X
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 212 | PRO | |
|
|
CVE-2024-X875X
This challenge covers the review of a CVE in a Java codebase and its patch
|
-- | 193 | PRO | |
|
|
CVE-2022-0415
Exploit CVE-2022-0415 to gain code execution in Gogs
|
2-4 Hr. | 15 | PRO | |
|
|
Java Code Review 07
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 168 | PRO | |
|
|
Java Code Review 08
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 171 | PRO | |
|
|
Java Code Review 09
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 146 | PRO | |
|
|
Puzzle 02
CSP
XSS
Leverage a PHP trick to bypass CSP
|
< 1 Hr. | 43 | PRO | |
|
|
Puzzle 01
Find the XSS by leveraging backreferences in a regular expression
|
< 1 Hr. | 62 | PRO | |
|
|
API 13
This exercise covers a complex filter bypass in API.
|
< 1 Hr. | 572 | PRO |
Showing 91–120 of 692 exercises
Free Labs of the Month