Roadmap

What just dropped and what's on the way - fresh labs, daily challenges, and new chapters.

418 XP up for grabs

Just dropped

Daily Hacks 3
Daily Hack
Medium Web & API Security 10 XP Jun 23
Daily Hack
Medium Cryptography 10 XP Jun 22
Daily Hack
Easy Web & API Security 10 XP Jun 21
Labs 1

Pwnify is a full music-streaming app built for web application penetration testing practice. Sign up, build playlists, and upload tracks, then chain real flaws from a first foothold to a user flag and full root. Can you own the whole box?

Hard Free 700 XP 6 Jun 2026, 16:00 UTC
Chapters 4
Red Teaming

MITRE Engenuity ran 29 commercial EDR products against the exact Carbanak playbook, in the open. Pricey tools missed steps a free Sysmon config caught. Learn the purple loop that finds your detection gaps before attackers do. 🛡️

Pro 30 min 1 XP Jun 20
Red Teaming

In advisory AA23-059A, a CISA red team got broad domain access and the org barely detected it. The fix came from the report, not the breach. Learn the structure that turns a compromise into change before your next debrief. 🔎

Pro 30 min 1 XP Jun 19
Red Teaming

DarkSide hit Colonial Pipeline through one VPN account with no MFA and forced a 5,500-mile shutdown. Learn to prove that business impact in a lab: stage crown jewels, exfiltrate over DNS and HTTPS, and read what each leaves in the logs. 💰

Pro 30 min 1 XP Jun 18
Red Teaming

NotPetya cost the world about $10 billion, and it spread with stolen hashes, PsExec, and WMIC, not a fancy exploit. Learn pass-the-hash, Kerberoasting, and BloodHound to map a domain to Domain Admin before the defenders see you.

Pro 30 min 1 XP Jun 17

Coming up

Daily Hacks 1
Daily Hack

Forge the admin role

Medium Privilege Escalation & Post-Exploitation 10 XP Jun 24
Labs 1

Reverse Engineering: License Key Crackme

Reverse engineer a Linux license binary, recover a hidden flag, and write a keygen to forge the admin key. Read the ARM64 disassembly with objdump and GDB to beat the activation check. A hands-on crackme: can you own it?

Medium Free 400 XP 1 Jul 2026, 16:00 UTC
Chapters 8
Linux Terminal Basics

Your first terminal session

Most people think hackers use fancy GUIs. In reality, whoami and hostname are the first two commands typed after every shell drop. You'll run them yourself and understand why attackers need them. 🎯

Pro 20 min 1 XP Jul 01
Linux Terminal Basics

Filesystem navigation

Most people think /tmp is harmless. Attackers use it to stage tools on every single engagement. You'll map the Linux filesystem and learn which directories leak secrets before your next audit. 🗂️

Pro 25 min 1 XP Jul 02
Linux Terminal Basics

Reading and manipulating files

Attackers don't write exploits first. They cat config files, grep for passwords, and check .bash_history. You'll use cat, head, tail, and file to investigate a system the way real operators do. 🔍

Pro 25 min 1 XP Jul 03
Linux Terminal Basics

Searching for what matters

Most people scroll through directories manually. Attackers use find and grep to locate SSH keys, passwords, and SUID binaries in seconds. You'll search a filesystem the way operators do before your next audit. 🎯

Pro 30 min 1 XP Jul 04
Linux Terminal Basics

Users, groups, and permissions

chmod 777 is how sysadmins create privilege escalation paths without realizing it. You'll read permission bits like an attacker, audit SUID binaries, and understand why /etc/shadow needs 640 before your next pentest. 🛡️

Pro 30 min 1 XP Jul 05
Linux Terminal Basics

Pipes and data pipelines

SOC analysts don't open logs in text editors. They pipe grep into cut into sort | uniq -c to find top offending IPs in seconds. You'll build those one-liners and redirect output like a real incident responder. 🔍

Pro 30 min 1 XP Jul 06
Linux Terminal Basics

Process management

Attackers don't always install backdoors. Sometimes they just run a process and hope nobody checks. You'll use ps, top, and kill to hunt suspicious processes and stop them before they drain your system. 🔎

Pro 25 min 1 XP Jul 07
Linux Terminal Basics

Network commands

Attackers don't install GUIs. They run ss to check listening ports, curl to pull payloads, and dig to map internal DNS. You'll use these same commands to hunt suspicious network activity before your next incident. 🎯

Pro 30 min 1 XP Jul 08
13,000+ Hackers 100+ Labs & Courses Free
Start Hacking Free