Exercises
| Exercise | Avg. Time | Difficulty | Solved by | Tier | |
|---|---|---|---|---|---|
|
|
API 14
This exercise covers how to exploit a leaked encrypted password with an API.
|
< 1 Hr. | 656 | PRO | |
|
|
API 13
This exercise covers a complex filter bypass in API.
|
< 1 Hr. | 572 | PRO | |
|
|
Java Code Review 05
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 203 | PRO | |
|
|
Java Code Review 06
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 195 | PRO | |
|
|
Java Code Review 04
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 200 | PRO | |
|
|
API 12
This exercise covers a common filter bypass in API.
|
< 1 Hr. | 639 | PRO | |
|
|
API 11
This exercise covers a common filter bypass in API.
|
< 1 Hr. | 675 | PRO | |
|
|
API 10
This exercise covers a common filter bypass in API.
|
< 1 Hr. | 739 | PRO | |
|
|
Java Code Review 03
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 216 | PRO | |
|
|
Java Code Review 01
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 244 | PRO | |
|
|
Java Code Review 02
This challenge covers the review of a simple codebase in Java
|
< 1 Hr. | 245 | PRO | |
|
|
CVE-2024-x730x
This challenge covers the review of a snippet of code written in Golang.
|
< 1 Hr. | 116 | PRO | |
|
|
CVE-2023-28XX9
This challenge covers the review of a CVE in a Golang codebase and its patch
|
1-2 Hr. | 87 | PRO | |
|
|
Python Code Review 06
This challenge covers the review of a simple codebase in Python
|
-- | 91 | PRO | |
|
|
JSON Web Token XV: CVE-2022-39227
JWT
This exercise covers the exploitation of polyglot token against python_jwt (CVE-2022-39227)
|
< 1 Hr. | 35 | PRO | |
|
|
Python Code Review 07
This challenge covers the review of a simple codebase in Python
|
< 1 Hr. | 117 | PRO | |
|
|
CVE-2023-X48X9
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 159 | PRO | |
|
|
CVE-2023-5143X
This challenge covers the review of a CVE in a Java codebase and its patch
|
1-2 Hr. | 236 | PRO | |
|
|
CVE-2009-387X
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 266 | PRO | |
|
|
Python Code Review 04
This challenge covers the review of a simple codebase in Python
|
-- | 146 | PRO | |
|
|
Python Code Review 01
This challenge covers the review of a simple codebase in Python
|
< 1 Hr. | 190 | PRO | |
|
|
Python Code Review 05
This challenge covers the review of a simple codebase in Python
|
-- | 98 | PRO | |
|
|
Python Code Review 02
This challenge covers the review of a simple codebase in Python
|
-- | 161 | PRO | |
|
|
Python Code Review 03
This challenge covers the review of a simple codebase in Python
|
< 1 Hr. | 145 | PRO | |
|
|
Python Code Review 09
This challenge covers the review of a simple codebase in Python
|
-- | 96 | PRO | |
|
|
GHSA-95XX
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 124 | PRO | |
|
|
CVE-2022-4x13x
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 133 | PRO | |
|
|
CVE-2023-46XX2
This challenge covers the review of a CVE in a Java codebase and its patch
|
< 1 Hr. | 152 | PRO | |
|
|
Java Serialize 06
This exercise is one of our challenges to help you learn Java Serialisation exploitation
|
2-4 Hr. | 49 | PRO | |
|
|
API 09
This exercise covers how one can inspect HTTP responses to identify information leaks.
|
< 1 Hr. | 875 | PRO |
Showing 121–150 of 692 exercises
Free Labs of the Month