Avatar

Labs / Snapchat Exposed

  • Daily Challenge
  • Released 02 Jul 2025
The lab needs to be started first.
Need help to start?
Daily Challenge

📸 Snapchat Exposed

The Real-World Security Challenge

🎯 Challenge Overview

Welcome to Snapchat Exposed! You've stumbled upon a mysterious automation environment that's just waiting to be explored. Your mission is to investigate the setup, analyze the available configurations, and uncover a hidden secret that's been cleverly tucked away.

💥 Real-World Impact

Some of you might find this challenge too easy. But here's the mind-blowing truth: This exact scenario happened to Snapchat! 🚀

Security researchers discovered the same type of exposed service vulnerability and earned a $20,000 bug bounty from Snapchat! This wasn't just a theoretical exercise - it was a real-world security flaw that could have led to arbitrary code execution and access to sensitive user data.

Think twice before saying our challenges are too easy. Real-world scenarios (and the massive bounties that come with them) are not that far from what you're practicing here! 💰

🎓 Learning Objectives
  • 🔍 Master the art of network reconnaissance and service discovery
  • ⚙️ Explore automation platform configurations and their security implications
  • 🛡️ Practice real-world pentesting skills in a DevOps context
  • 🎯 Understand how automation can be both a tool and a target