Join live online training in web security code review and advanced web hacking, led by the team behind PentesterLab. These sessions are built for practitioners who want hands-on depth, not high-level overviews.
Looking for private training tailored to your team's needs? PentesterLab offers hands-on sessions for AppSec, pentest, and engineering teams, delivered online or in person when needed.
We'll tailor a session to your team's stack and skill level.
Contact usFeedback from past training cohorts.
Your course is pure gold! Worth every cent. This is something I'll be practicing and applying for a long time after all the live sessions.
Andrii Lyho, Product Security Lead, Growe
The PentesterLab Code Review class is fantastic. I came away with a much improved methodology and numerous ideas for new research. The class really manages to teach code analysis in a fun and engaging way.
Henno van Arkel, Penetration Tester / Security Consultant
This course was amazing and helped me to understand how I can push my security engineers to look at code manually rather than rely on SAST. Louis was so knowledgeable and passionate, and made it really fun to learn.
Andy McKenzie, Head of Cyber Security
Before doing the training, I had absolutely zero confidence in auditing code. Now, I can say I know where to start and have learned a ton about where to look, what questions to ask and how to go about finding vulnerabilities.
Anonymous
I took this course and found it was tremendously well organized, helping to distill hard-learned lessons into a format that helped improve my code review process. I promptly sent the rest of my pentest team to the course.
Anonymous
This is the number one code review course your team should be doing this year! The course covers methodology, detailed root causes of source code vulnerabilities, and examples of secure patterns to look up to.
Dr. Pamela O'Shea, Director of Shea Security
Everything you need to know before joining a public cohort or booking a private session for your team.
PentesterLab live trainings are aimed at pentesters, AppSec engineers, security-minded developers, and reviewers who want deeper hands-on practice in web exploitation and security code review. They are best suited to people who want technical depth rather than introductory awareness training.
Yes. Public cohorts are delivered live online, with scheduled sessions you attend in real time. Private training can be delivered online or onsite for teams.
Yes. We offer private training for organisations that want team-specific delivery. This works well for AppSec, pentest, and engineering teams that want focused sessions on security code review, web exploitation, or secure coding.
Yes. All live sessions are recorded and made available to attendees, so you can revisit the material at your own pace.
You need Zoom, Docker, and a text editor for the code review training.
Still have questions? Reach out at private-training@pentesterlab.com