
Courses

Injection Attacks
In this hands-on lab, you will learn the basics of injection attacks. You will practice performing SQL injection, command injection, and XSS attacks against a vulnerable web application.

Deserialization Attacks
In this hands-on lab, you will learn the basics of deserialization attacks. You will practice performing deserialization attacks using Python scripts and Burp Suite.

SSRF Attacks
In this hands-on lab, you will learn the basics of Server-Side Request Forgery (SSRF) Attacks. You will practice performing live SSRF attacks against a vulnerable web application.

Burping Sauce
In this hands-on challenge, you will practice using Burp Suite to exploit a vulnerable web application.

Encoder Switch
In this hands-on challenge, you will practice exploiting SSRF vulnerablities and converting binary output.

In-N-Out
In this hands-on challenge, you will practice identifying potential egress points through intermediate devices and creating tunnels out of a network.

The Defense Rests
In this hands-on challenge, you will practice making changes to a malware sample in order to evade Microsoft Defender.

Spray Paint
In this hands-on challenge, you will exercise your password cracking and password spraying skills.

Crackception
In this hands-on challenge, you will exercise your password cracking skills to defeat the security of an encrypted file.

Tunnel Cake
In this hands-on challenge, you will practice identifying and exploiting vulnerabilities on a target host, then using tunneling and pivoting to broker access to internal services