Your Progress

%
Overall Progress
0 / 30
Badges Earned
0
Exercises Completed
1
Not started

Complete all exercises to earn the Introduction Badge badge and certificate.

This course is only available for PRO members. Upgrade now
2
Not started

View the Unix Badge badge and complete the exercises to earn the certificate.

Complete all exercises to earn the Unix Badge badge and certificate.

This course is only available for PRO members. Upgrade now
4
Not started

View the PCAP badge badge and complete the exercises to earn the certificate.

Complete all exercises to earn the PCAP badge badge and certificate.

This course is only available for PRO members. Upgrade now
6
Not started

Complete all exercises to earn the White Badge badge and certificate.

This course is only available for PRO members. Upgrade now
7
Not started

Complete all exercises to earn the Serialize Badge badge and certificate.

This course is only available for PRO members. Upgrade now
8
Not started

Complete all exercises to earn the Yellow Badge badge and certificate.

This course is only available for PRO members. Upgrade now
9
Not started

Complete all exercises to earn the Blue Badge badge and certificate.

This course is only available for PRO members. Upgrade now
12
Not started

Complete all exercises to earn the Intercept Badge badge and certificate.

This course is only available for PRO members. Upgrade now
14
Not started

Complete all exercises to earn the Android Badge badge and certificate.

This course is only available for PRO members. Upgrade now
15
Not started

Complete all exercises to earn the Capture-The-Flag Badge badge and certificate.

This course is only available for PRO members. Upgrade now
17
Not started

Complete all exercises to earn the Media Badge badge and certificate.

This course is only available for PRO members. Upgrade now
20
Not started

View the Code Review Badge badge and complete the exercises to earn the certificate.

Complete all exercises to earn the Code Review Badge badge and certificate.

This course is only available for PRO members. Upgrade now
21
Not started
  • Secure Design: Control Placement
  • Secure Design: Framework Security Evaluation Coming soon
  • Secure Design: Error Proofing (Poka-yoke) Coming soon
  • Secure Design: Fail Closed Coming soon
  • Secure Design: CI/CD Pipeline Coming soon
  • Secure Design: Password Storage & Hashing Coming soon
  • Secure Design: Session Management Coming soon
  • Secure Design: Password Reset Flow Coming soon
  • Secure Design: OAuth / SSO Integration Coming soon
  • Secure Design: File Upload & Storage Coming soon
  • Secure Design: Search & Indexing Coming soon
  • Secure Design: Payment & Checkout Coming soon
  • Secure Design: Admin Panel & Role Management Coming soon
  • Secure Design: API Authentication & Keys Coming soon
  • Secure Design: Rate Limiting & Abuse Prevention Coming soon
  • Secure Design: Real-time Messaging (WebSocket) Coming soon
  • Secure Design: Data Export & Reporting Coming soon
  • Secure Design: Webhook Delivery Coming soon
  • Secure Design: Email Notifications & Templates Coming soon
  • Secure Design: Multi-factor Authentication Coming soon
  • Secure Design: Content Rendering & Sanitization Coming soon
  • Secure Design: Invitation & Sharing Tokens Coming soon
  • Secure Design: Logging & Sensitive Data Coming soon
  • Secure Design: Third-party Plugin Sandboxing Coming soon
  • Secure Design: Database Tenant Isolation Coming soon
  • Secure Design: Secret & Credential Management
  • Secure Design: CSRF Protection Coming soon
  • Secure Design: Backend Authentication Proxy
  • Secure Design: Event Publishing & Data Boundaries Coming soon
  • Secure Design: Write-only API Keys Coming soon
  • Secure Design: Idempotency Keys Coming soon
  • Secure Design: Rendering Untrusted Content on a Throwaway Origin Coming soon
  • Secure Design: Sandboxing Code Execution Coming soon
  • Secure Design: Safe Serialization

Complete all exercises to earn the Secure Design badge and certificate.

This course is only available for PRO members. Upgrade now
22
Not started

Complete all exercises to earn the Java Deserialization Badge badge and certificate.

This course is only available for PRO members. Upgrade now
27
Not started
  • Open Door
  • System Prompt Extraction
  • Polite Refusal
  • Encoding Request
  • Instruction Hierarchy
  • Few-Shot Armor Coming soon
  • Multi-Turn Persistence Coming soon
  • Input Blocklist Coming soon
  • Output Blocklist Coming soon
  • Output Canary Coming soon
  • LLM-as-Judge Coming soon
  • Gateway Guardrail Bypass Coming soon
  • Safety Classifier Evasion Coming soon
  • Gateway PII Masking Bypass Coming soon
  • Delimiter Defense Coming soon
  • Email Summarizer Coming soon
  • Document Q&A Coming soon
  • Web Fetch Injection Coming soon
  • Multi-Source Confusion Coming soon
  • PDF Injection Coming soon
  • Audio Metadata Injection Coming soon
  • OCR Pipeline Injection Coming soon
  • KB Injection Coming soon
  • Query Crafting Coming soon
  • RAG Exfiltration Chain Coming soon
  • Cross-Tenant Retrieval Leakage Coming soon
  • Vector Metadata Filter Injection Coming soon
  • Persistent Vector-Store Poisoning Coming soon
  • Thought Injection Coming soon
  • Tool Routing Coming soon
  • Excessive Agency Coming soon
  • Exfiltration via Tool Coming soon
  • Permission Escalation Coming soon
  • Path Traversal via Document Tool Coming soon
  • Secret Leak via Verbose Error Coming soon
  • SSRF via URL-Fetch Tool Coming soon
  • Text-to-SQL Injection Coming soon
  • Prompt-Template SSTI Coming soon
  • Agent Tool Command Injection Coming soon
  • Sanitizer-Bypass XSS Coming soon
  • Markdown Image Coming soon
  • Structured Output Coming soon
  • HTML Output XSS Coming soon
  • Trust Remote Code (auto_map RCE) Coming soon
  • Malicious Model (Pickle RCE) Coming soon
  • Model Output Command Execution Coming soon
  • MCP Rug Pull Coming soon
  • MCP Poisoned Tool Results Coming soon
  • MCP Tool Shadowing Coming soon
  • MCP Credential Theft Coming soon
  • MCP Sampling Abuse Coming soon
  • Code Review Bypass Coming soon
  • Sub-Agent Delegation Confusion Coming soon
  • Prompt-Injection Worm Coming soon
  • Persistent Memory Implant Coming soon
  • Reasoning Trace Leakage Coming soon
  • Reasoning Trace Forgery Coming soon
  • Reasoning Block Padding Oracle Coming soon

Complete all exercises to earn the AI Security badge and certificate.

This course is only available for PRO members. Upgrade now
28
Not started

Complete all exercises to earn the JavaScript Code Review badge and certificate.

This course is only available for PRO members. Upgrade now
29
Not started

Complete all exercises to earn the JavaScript Sandbox Escaping badge and certificate.

This course is only available for PRO members. Upgrade now

All the online free labs you have access to.

Offline free labs you can run on your own computer using virtualisation software.

Easy
pentesterlab logo
Web for Pentester

Web for Pentester

This exercise is a set of the most common web vulnerabilities.

  • 1 video
  • PHP/Apache/MySQL
  • CWE-80,CWE-89,CWE-35,CWE-94,CWE-78,cwe-98
Easy
pentesterlab logo
Web for Pentester II

Web for Pentester II

This exercise is a set of the most common web vulnerabilities.

  • Ruby/Rack
Medium
pentesterlab logo
From SQL Injection to Shell

From SQL Injection to Shell

This exercise demonstrates how to leverage a SQL injection to gain access to the admin console, and from there, how to execute commands on the underlying system

  • 2 videos
  • Completed by 8367 students
  • Takes < 1 Hr. on average
  • PHP/Apache/Mysql
  • SQL Injection
  • CWE-89
Medium
pentesterlab logo
PHP Include And Post Exploitation

PHP Include And Post Exploitation

This exercise describes the exploitation of a local file include with limited access. Once code execution is gained, you will see some post exploitation tricks.

  • Completed by 1 student
  • PHP/Apache/Mysql
Medium
pentesterlab logo
CVE-2012-1823: PHP CGI

CVE-2012-1823: PHP CGI

This exercise explains how you can exploit CVE-2012-1823 to retrieve the source code of an application and gain code execution.

  • Completed by 1 student
  • PHP/Apache
  • CWE-20
Hard
pentesterlab logo
Linux Host Review

Linux Host Review

This exercise explains how to perform a Linux host review, what and how you can check the configuration of a Linux server to ensure it is securely configured. The reviewed system is a traditional Linux-Apache-Mysql-PHP (LAMP) server used to host a blog.

  • Completed by 1 student
  • Linux
Medium
pentesterlab logo
CVE-2008-1930: WordPress Cookie Integrity Flaw

CVE-2008-1930: WordPress Cookie Integrity Flaw

This exercise explains how you can exploit CVE-2008-1930 to gain access to the administration interface of a Wordpress installation.

  • 1 video
  • Completed by 34 students
  • Takes < 1 Hr. on average
  • PHP/Apache/Mysql
  • CWE-287
Medium
pentesterlab logo
Axis2 Web service and Tomcat Manager

Axis2 Web service and Tomcat Manager

This exercise explains the interactions between Tomcat and Apache, then it shows how to call and attack an Axis2 Web service. Using information retrieved from this attack, you will be able to gain access to the Tomcat Manager and deploy a WebShell to gain command execution.

  • Tomcat/Axis2
Medium
pentesterlab logo
From SQL Injection to Shell II

From SQL Injection to Shell II

This exercise explains how you can, from a blind SQL injection, gain access to the administration console. Then once in the administration console, how you can run commands on the system.

  • Completed by 55 students
  • Takes 1-2 Hrs. on average
  • PHP/Apache/Mysql
  • SQL Injection
  • CWE-89
Medium
pentesterlab logo
Electronic Code Book

Electronic Code Book

This exercise explains how you can tamper with encrypted cookies to access another user's account

  • 2 videos
  • Completed by 5982 students
  • Takes < 1 Hr. on average
  • PHP/Apache
  • Crypto
Medium
pentesterlab logo
CVE-2007-1860: mod_jk double-decoding

CVE-2007-1860: mod_jk double-decoding

This exercise covers the exploitation of CVE-2007-1860. This vulnerability allows an attacker to gain access to inaccessible pages using crafted requests. This is a common trick that a lot of testers miss.

  • 4 videos
  • Completed by 6228 students
  • Takes < 1 Hr. on average
  • Tomcat/Apache
  • CWE-22
Easy
pentesterlab logo
Introduction to code review

Introduction to code review

This exercise covers the different ways to perform code review. It also contains a simple application to review to help you get started.

  • PHP