Profile Avatar

captainB

✦ Legend ✦
Israel Joined June 2025

Live Ranking

#6

Best: #2

Total Points

880

Total Earned

Labs Completed

105

107 User • 15 Root

Modules

36

Validated

First Bloods

0

First to Complete

Best Streak

2

Days

Skills Acquired

Technical skills practiced through completed labs

GitVersion ControlSource Code AnalysisReconnaissanceWeb SecurityPHPType JugglingAuthentication BypassHash AnalysisCryptographyHash CrackingPassword AnalysisSecurity ToolsSQL InjectionDatabase SecurityInput ValidationPenetration TestingJavaScriptDeobfuscationClient-Side SecurityBrowser DevToolsCode AnalysisHTTP ProtocolRequest SmugglingNetwork ForensicsTraffic AnalysisPacket AnalysisEmail ForensicsHeader AnalysisPhishing DetectionBase64 DecodingOSINTDigital InvestigationSSRFURL ManipulationInternal Network AccessProtocol BypassWeb Application SecuritySSTIFlask SecuritySSH Brute ForceDatabase EnumerationPrivilege EscalationSteganographyClassical CiphersImage AnalysisPolyalphabetic CiphersDirectory TraversalPath InjectionFile System SecurityPath ManipulationFile AccessWebDAV ExploitationFile UploadRemote File AccessHTTP MethodsWeb Server SecurityFile System EnumerationYAML DeserializationPyYAML ExploitationConfiguration InjectionPython SecurityUnsafe DeserializationRemote Code ExecutionFile Processing SecurityRace ConditionsTiming AttacksConcurrent ExploitationPrototype PollutionNode.js SecurityAPI SecurityJavaScript ExploitationObject ManipulationInput Validation BypassModern Web VulnerabilitiesIDORParameter ManipulationAuthorization BypassHTTP HeadersSecurity BypassClient-Side ManipulationDirectory EnumerationWeb ReconnaissanceAdministrative Panel DiscoverySecurity AssessmentLocal File InclusionFilter BypassApache AuthenticationPassword CrackingNetwork AnalysisPacket CaptureWiresharkProtocol AnalysisCommand InjectionShell CommandsSystem AdministrationHTTP Parameter ManipulationUser-Agent Log PoisoningApache SecurityLog AnalysisBypass TechniquesWeb ShellsSocial EngineeringPost ExploitationJWTToken AuthenticationLogic FlawFlaskDebug ModePythonMemory AnalysisCryptanalysisClassical CryptoPattern RecognitionData EncodingJenkinsCI/CDDevOpsPentestAutomationMemory ForensicsBinary AnalysisDigital ForensicsIncident ResponseTool UsageData RecoveryROT13 EncodingNetwork ReconnaissanceService DiscoveryDatabase ForensicsCLI UsageBase64Hex EncodingRedisQR Code AnalysisData ExtractionWeb InspectionHTML AnalysisHex EditorsData StructuresReverse EngineeringFile AnalysisMD5Rainbow TablesWeb DevelopmentWebCTF BasicsHexadecimalDOM ManipulationCookie ManipulationGraphQLSchema IntrospectionInjectionDNS AnalysisData ExfiltrationFrequency AnalysisDocker Registry APIContainer SecurityAPI ManipulationRegistry ExploitationJWT ManipulationSSH ExploitationLog InjectionLinux SecuritySUID BinariesBinary ExploitationNoSQL InjectionMongoDBDocument DatabasesCRLF InjectionRedis Command InjectionCache PoisoningProtocol ManipulationLDAP InjectionDirectory ServicesEnterprise SecurityServer-Side Template InjectionJinja2 ExploitationFilter EvasionWiFi SecurityWPA CrackingDictionary AttacksWireless Penetration TestingNetwork SecurityIP SpoofingAccess Control BypassInformation GatheringWireless SecurityWEP CrackingRC4 AnalysisCryptographic AttacksLegacy Protocol ExploitationWindows RegistryPersistence AnalysisMalware AnalysisHistorical CryptanalysisMD5 CrackingPassword AttacksGit ForensicsVersion Control SecurityRepository AnalysisSecret RecoveryPython PickleEnterprise DeserializationCorporate Backup SystemsDisaster Recovery ExploitationConfiguration Import AttacksKeePass 4.x SecurityDirect Brute ForcePassword Manager AssessmentModern CryptographySecurity Tool LimitationsZIP Password CrackingJohn the RipperfcrackzipBrute ForceArchive SecurityJinja2Web Application TestingCode InjectionPath TraversalCGIPDF SecurityDocument SecurityBrute Force AttacksVisibility ControlsSecurity TestingOperator ExploitationServer-Side Request ForgeryAWS MetadataCloud SecurityIAM CredentialsAWS EC2CSRFCross-Site Request ForgerySession SecurityForm SecurityHTTP SecurityState ManagementSSHLinux Privilege EscalationFile PermissionsXSSCross-Site ScriptingStored XSSSession HijackingClaims ManipulationTime-Based AttacksSignature CrackingBlind SQLiTime-based SQLiBoolean-based SQLiVulnerability AssessmentXXEXML SecurityFile DisclosureExternal EntityAlgorithm ConfusionRS256HS256Token ForgeryWeb ExploitationFile DiscoveryCommand Line ToolsForensicsAttack DetectionTransposition CipherRail FenceAudio AnalysisLSBPDF ForensicsMetadataHidden DataForensic ToolsBlockchain AnalysisBitcoinOP_RETURNHex DecodingForensic AnalysisLFIFile InclusionDNSMYSQLIRCESession ManagementAuthenticationLinux CapabilitiesReverse ShellSystem EnumerationIDOR ExploitationZip Slip VulnerabilityInternal Service DiscoveryBackup Service ExploitationSudo Vim ExploitationWPAdvanced ReconnaissanceAndroid Reverse EngineeringSCADA ExploitationCVE ExploitationLinuxSudoFile Upload BypassPHP SecurityWeb Shell ExploitationJSLearning PathWeb HackingLogic FlawsToken ManipulationBase64 EncodingGITIP SPOOFINGApache TomcatWAR DeploymentDefault CredentialsWEBFTP ExploitationBackdoor DetectionNetwork ServicesRemote ShellSystem ExploitationFTPTELNETNetworkingCommand LineWeb ServicesHTML

Completed Modules

Educational modules successfully validated

Nmap Mastery: Dominate Network Scanning

4 modules
Installing Nmap
1 pts Completed: Sep 20, 2025
Advanced Techniques
1 pts Completed: Sep 20, 2025
Introduction to Nmap
1 pts Completed: Jun 25, 2025
Essential Nmap Scanning
1 pts Completed: Sep 20, 2025

HTTP Header Manipulation: IP Spoofing

3 modules
Remediate
1 pts Completed: Sep 20, 2025
Techniques for IP Spoofing in HTTP Headers
1 pts Completed: Sep 20, 2025
Manipulating Headers
1 pts Completed: Jun 24, 2025

Password Cracking: Advanced Techniques for Security Assessment

5 modules
Rainbow Tables and Precomputed Attacks
1 pts Completed: Sep 02, 2025
PDF Password Cracking and Document Security
1 pts Completed: Sep 21, 2025
Brute Force and Hybrid Attack Techniques
1 pts Completed: Aug 28, 2025
Password Security Fundamentals
1 pts Completed: Aug 22, 2025
Dictionary Attacks and Wordlist Optimization
1 pts Completed: Aug 22, 2025

HDNA Ethical Hacking Course

5 modules
1. Legal & Compliance
1 pts Completed: Sep 20, 2025
2. Network Protocols and Security
1 pts Completed: Sep 20, 2025
4. Network Scanning
1 pts Completed: Sep 20, 2025
3. Reconnaissance
1 pts Completed: Sep 20, 2025
Course Summary
1 pts Completed: Jun 26, 2025

Web Application Security: Exploitation and Defense

12 modules
Cross-Site Request Forgery
1 pts Completed: Aug 19, 2025
XML External Entity Injection
1 pts Completed: Aug 19, 2025
Server-Side Request Forgery
1 pts Completed: Aug 19, 2025
Local and Remote File Inclusion
1 pts Completed: Aug 19, 2025
Course Introduction
1 pts Completed: Aug 19, 2025
Server-Side Template Injection
1 pts Completed: Aug 19, 2025
Deserialization Attacks
1 pts Completed: Aug 19, 2025
File Upload Exploitation
1 pts Completed: Aug 19, 2025
Cross-Site Scripting
1 pts Completed: Aug 19, 2025
Authentication Bypass
1 pts Completed: Aug 19, 2025
SQL Injection
1 pts Completed: Aug 19, 2025
Command Injection
1 pts Completed: Aug 19, 2025

JWT Ethical Hacking: Token Takeover Tactics

4 modules
Introduction to JWT Tokens
1 pts Completed: Aug 19, 2025
Claims Manipulation and Time-Based Attacks
1 pts Completed: Aug 19, 2025
Secret Key Brute Forcing
1 pts Completed: Aug 19, 2025
Algorithm Confusion Exploits
1 pts Completed: Aug 19, 2025

Remote Code Execution (RCE)

3 modules
Shellshock (CVE-2014-6271)
1 pts Completed: Sep 20, 2025
RCE: Introduction
1 pts Completed: Jun 26, 2025
RCE in PHP
1 pts Completed: Sep 20, 2025

Completed Labs & Challenges

Hands-on cybersecurity challenges successfully completed

Git Exposed
Challenge
1 points Oct 23, 2025 3m
GitVersion ControlSource Code AnalysisReconnaissanceWeb Security
Type Juggling Bypass
Challenge
1 points Oct 15, 2025 1m
Web SecurityPHPType JugglingAuthentication BypassHash Analysis
Crack SHA1 Hash
Challenge
1 points Oct 10, 2025
CryptographyHash CrackingPassword AnalysisSecurity Tools
SQL Injection Test
Challenge
1 points Oct 10, 2025 1m
SQL InjectionWeb SecurityDatabase SecurityAuthentication BypassInput ValidationPenetration Testing
Hack This Site
Challenge
1 points Oct 08, 2025
JavaScriptDeobfuscationClient-Side SecurityBrowser DevToolsCode AnalysisAuthentication Bypass
HTTP Smuggling
Challenge
1 points Oct 08, 2025 1m
HTTP ProtocolRequest SmugglingNetwork ForensicsTraffic AnalysisWeb SecurityPacket Analysis
Email Header Forensics
Challenge
1 points Oct 03, 2025
Email ForensicsHeader AnalysisPhishing DetectionBase64 DecodingOSINTDigital Investigation
SSRF Validator
Challenge
1 points Oct 03, 2025 36m
SSRFWeb SecurityURL ManipulationInternal Network AccessProtocol Bypass
FortiPy
Hard
60 points Oct 02, 2025 3h 27m
Web Application SecuritySSTIFlask SecuritySSH Brute ForceDatabase EnumerationHash CrackingPrivilege Escalation
Vigenere Stego Hunt
Challenge
1 points Oct 01, 2025 8m
CryptographySteganographyClassical CiphersImage AnalysisPolyalphabetic Ciphers
Simple Directory Traversal
Challenge
1 points Sep 30, 2025 2m
Directory TraversalPath InjectionFile System SecurityWeb SecurityInput ValidationPath ManipulationFile Access
WebDAV Explorer
Challenge
1 points Sep 26, 2025 4h 18m
WebDAV ExploitationFile UploadDirectory TraversalRemote File AccessHTTP MethodsWeb Server SecurityFile System Enumeration
YAML Bomb
Challenge
1 points Sep 26, 2025 32m
YAML DeserializationPyYAML ExploitationConfiguration InjectionPython SecurityUnsafe DeserializationRemote Code ExecutionFile Processing Security
Race Condition Hunter
Challenge
1 points Sep 24, 2025 3h 53m
Race ConditionsTiming AttacksConcurrent ExploitationWeb Application Security
Prototype Pollution Hunter
Challenge
1 points Sep 24, 2025 7m
Prototype PollutionNode.js SecurityAPI SecurityJavaScript ExploitationObject ManipulationInput Validation BypassModern Web Vulnerabilities
IDOR Explorer
Challenge
1 points Sep 24, 2025 2m
IDORParameter ManipulationWeb Application SecurityAuthorization Bypass
Header Hijacker
Challenge
1 points Sep 21, 2025 9h 13m
HTTP HeadersSecurity BypassWeb Application SecurityClient-Side Manipulation
Corporate Directory Hunt
Challenge
1 points Sep 21, 2025 13m
Directory EnumerationWeb ReconnaissanceAdministrative Panel DiscoverySecurity Assessment
File Include Bypass
Challenge
1 points Sep 21, 2025 8h 10m
Local File InclusionFilter BypassApache AuthenticationPassword Cracking
Packet Pursuit
Challenge
1 points Sep 20, 2025 1h 24m
Network AnalysisPacket CaptureWiresharkProtocol Analysis
Shell Command Scanner
Challenge
1 points Sep 19, 2025 1h 4m
Command InjectionWeb SecurityShell CommandsSystem AdministrationHTTP Parameter ManipulationSecurity Assessment
LFI Log Poison
Challenge
1 points Sep 19, 2025 1h 1m
Local File InclusionUser-Agent Log PoisoningRemote Code ExecutionDirectory TraversalWeb SecurityApache SecuritySystem AdministrationLog Analysis
File Upload Bypass
Challenge
1 points Sep 19, 2025 1m
File UploadWeb SecurityBypass TechniquesPHPWeb ShellsInput ValidationSocial EngineeringPost Exploitation
JWT Bypass
Challenge
1 points Sep 19, 2025 1h 1m
JWTWeb SecurityToken AuthenticationCryptography
API Logic Flaw
Challenge
1 points Sep 19, 2025 1h 45m
API SecurityLogic FlawAuthentication BypassParameter ManipulationPHPWeb Security
Flask Error
Challenge
1 points Sep 19, 2025 1m
FlaskDebug ModePythonWeb SecurityMemory Analysis
Crypto Cipher
Challenge
1 points Sep 19, 2025 7m
CryptanalysisClassical CryptoPattern RecognitionData Encoding
Snapchat Exposed
Challenge
1 points Sep 19, 2025 1h 4m
JenkinsCI/CDDevOpsWeb SecurityPentestAutomation
Memory Forensics
Challenge
1 points Sep 19, 2025 1h 3m
Memory ForensicsBinary AnalysisDigital ForensicsPattern RecognitionIncident ResponseTool UsageData RecoveryROT13 Encoding
Red is Dead
Challenge
1 points Sep 19, 2025 4h 27m
Network ReconnaissanceService DiscoveryDatabase ForensicsData EncodingCLI UsageData RecoveryIncident ResponseBase64Hex EncodingRedis
QR Code Quest
Challenge
1 points Sep 19, 2025 1m
QR Code AnalysisImage AnalysisData ExtractionSteganographyDigital Forensics
Base64 Detective
Challenge
1 points Sep 19, 2025 59m
Base64Web InspectionBrowser DevToolsData EncodingHTML Analysis
Binary Secrets
Challenge
1 points Sep 19, 2025 1m
Binary AnalysisHex EditorsData StructuresReverse EngineeringFile Analysis
Get the Password
Challenge
1 points Sep 19, 2025 1m
JavaScriptMD5Rainbow TablesWeb DevelopmentBrowser DevTools
Stego Hunt
Challenge
1 points Sep 19, 2025
SteganographyImage AnalysisWebCTF Basics
Hex Hunt
Challenge
1 points Sep 19, 2025 2m
JavaScriptWeb DevelopmentHexadecimalBrowser DevTools
Button Activator
Challenge
1 points Sep 16, 2025 1m
JavaScriptBrowser DevToolsDOM ManipulationClient-Side Security
Cookie Forge
Challenge
1 points Sep 16, 2025 5m
JWTCookie ManipulationAuthentication BypassPrivilege Escalation
GraphQL Gateway
Challenge
1 points Sep 13, 2025 2h 59m
GraphQLAPI SecuritySchema IntrospectionAuthorization BypassInjection
DNS Tunneling Detective
Challenge
1 points Sep 13, 2025 3m
Network ForensicsDNS AnalysisData ExfiltrationTraffic Analysis
Caesar Shift Decoder
Challenge
1 points Sep 10, 2025 1m
CryptographyClassical CiphersFrequency AnalysisPattern Recognition
Registry Hijacker
Challenge
1 points Sep 09, 2025 2m
Docker Registry APIAuthentication BypassContainer SecurityAPI ManipulationRegistry Exploitation
Infiltrator
Easy
20 points Sep 08, 2025 9h 8m
JWT ManipulationSSH ExploitationLog InjectionPrivilege EscalationWeb SecurityLinux Security
SUID Privilege Hunter
Challenge
1 points Sep 08, 2025 4m
SUID BinariesPrivilege EscalationCommand InjectionLinux SecurityBinary Exploitation
MongoDB Injector
Challenge
1 points Sep 07, 2025 4m
NoSQL InjectionMongoDBAuthentication BypassDocument DatabasesWeb Security
Redis Cache Poisoner
Challenge
1 points Sep 07, 2025 33m
CRLF InjectionRedis Command InjectionCache PoisoningProtocol ManipulationWeb Security
LDAP Injector
Challenge
1 points Sep 03, 2025 1m
LDAP InjectionAuthentication BypassDirectory ServicesEnterprise SecurityWeb Security
Template Injector
Challenge
1 points Sep 02, 2025 7m
Server-Side Template InjectionFlask SecurityJinja2 ExploitationRemote Code ExecutionWeb Security
RCE Playground
Medium
20 points Sep 02, 2025 1h 54m
Command InjectionInput Validation BypassRemote Code ExecutionFilter EvasionWeb Security
WiFi Password Cracker
Challenge
1 points Aug 28, 2025 1h 2m
WiFi SecurityWPA CrackingDictionary AttacksWireless Penetration TestingNetwork SecurityPacket Analysis
IP Spoofing Admin
Challenge
1 points Aug 28, 2025 1h 5m
Web SecurityHTTP HeadersIP SpoofingAccess Control BypassInformation Gathering
WEP Cracker
Challenge
1 points Aug 27, 2025 10m
Wireless SecurityWEP CrackingRC4 AnalysisPacket AnalysisCryptographic AttacksLegacy Protocol Exploitation
Registry Hunter
Challenge
1 points Aug 27, 2025 1h 0m
Digital ForensicsWindows RegistryPersistence AnalysisBase64 DecodingIncident ResponseMalware Analysis
Book Cipher Challenge
Challenge
1 points Aug 22, 2025 2m
CryptographyClassical CiphersPattern RecognitionHistorical Cryptanalysis
Admin Portal Breach
Challenge
1 points Aug 22, 2025 1h 37m
Client-Side SecurityMD5 CrackingSource Code AnalysisWeb Application SecurityPassword AttacksAuthentication Bypass
Git Secrets Hunter
Challenge
1 points Aug 21, 2025 2h 0m
Git ForensicsVersion Control SecurityRepository AnalysisPenetration TestingSecret RecoveryOSINT
Corporate Backup Deserializer
Challenge
1 points Aug 19, 2025 1h 32m
Python PickleEnterprise DeserializationCorporate Backup SystemsDisaster Recovery ExploitationConfiguration Import AttacksEnterprise Security
KeePass Breaker
Challenge
1 points Aug 19, 2025 1h 11m
KeePass 4.x SecurityDirect Brute ForcePassword Manager AssessmentModern CryptographySecurity Tool Limitations
ZIP Cracker
Challenge
1 points Aug 19, 2025 8m
ZIP Password CrackingJohn the RipperfcrackzipDictionary AttacksBrute ForceArchive Security
Template Injection
Challenge
1 points Aug 14, 2025 1h 0m
Server-Side Template InjectionJinja2Flask SecurityWeb Application TestingCode InjectionPrivilege Escalation
Path Traversal
Challenge
1 points Aug 13, 2025 1h 0m
Path TraversalCGIWeb SecurityFile AccessDirectory TraversalInput Validation
PDF Password Cracker
Challenge
1 points Aug 13, 2025 13m
PDF SecurityPassword CrackingDictionary AttacksDigital ForensicsDocument SecurityBrute Force Attacks
NoSQL Injection
Challenge
1 points Aug 08, 2025 2h 0m
NoSQL InjectionMongoDBVisibility ControlsAccess Control BypassSecurity TestingOperator Exploitation
URL Scanner
Challenge
1 points Aug 06, 2025 1h 31m
SSRFServer-Side Request ForgeryAWS MetadataCloud SecurityIAM CredentialsNetwork SecurityWeb SecurityAWS EC2
CSRF Bank Transfer
Challenge
1 points Aug 05, 2025 2h 0m
CSRFCross-Site Request ForgerySession SecurityWeb SecuritySocial EngineeringForm SecurityHTTP SecurityState Management
Alpwned
Medium
40 points Aug 04, 2025 9h 0m
SQL InjectionAuthentication BypassSSHLinux Privilege EscalationFile PermissionsWeb Application Security
XSS Playground
Challenge
1 points Aug 04, 2025 2m
XSSCross-Site ScriptingStored XSSSession HijackingJavaScriptWeb SecurityClient-Side SecurityDOM Manipulation
JWT Claims Manipulation
Challenge
1 points Jul 31, 2025 1h 29m
JWTClaims ManipulationPrivilege EscalationAuthentication BypassTime-Based AttacksSignature Cracking
SQL Injection
Challenge
1 points Jul 30, 2025 1h 0m
SQL InjectionDatabase SecurityWeb SecurityBlind SQLiTime-based SQLiBoolean-based SQLiDatabase EnumerationVulnerability Assessment
XXE Exposed
Challenge
1 points Jul 29, 2025 1h 0m
XXEXML SecurityFile DisclosureExternal EntityWeb SecurityVulnerability Assessment
JWT Algo Confusion
Challenge
1 points Jul 28, 2025 1h 0m
JWTAlgorithm ConfusionRS256HS256Token ForgeryWeb Security
Auth Bypass
Challenge
1 points Jul 24, 2025 1h 0m
SQL InjectionAuthentication BypassWeb SecurityDatabase Security
Ping Pwn
Challenge
1 points Jul 23, 2025 1h 0m
Command InjectionWeb ExploitationService DiscoveryNetwork Security
Log Hunter
Challenge
1 points Jul 22, 2025 1h 0m
Log AnalysisWeb SecurityIncident ResponsePattern RecognitionFile DiscoveryCommand Line ToolsForensicsHTTP ProtocolAttack DetectionSecurity Assessment
Rail Fence
Challenge
1 points Jul 16, 2025 1h 0m
CryptographyTransposition CipherRail FencePattern RecognitionPython
Sonic Cipher
Challenge
1 points Jul 15, 2025 1h 0m
SteganographyAudio AnalysisLSBForensicsPython
Pixel Puzzler
Challenge
1 points Jul 14, 2025 1h 0m
SteganographyImage AnalysisLSBForensicsPython
PDF Trap
Challenge
1 points Jul 11, 2025 1h 0m
PDF ForensicsFile AnalysisMetadataHidden DataForensic Tools
Blockchain Secrets
Challenge
1 points Jul 10, 2025 1h 0m
Blockchain AnalysisBitcoinOP_RETURNHex DecodingData ExtractionForensic Analysis
Corporate Breach 2
Challenge
1 points Jul 09, 2025 1h 0m
Web SecurityPHPLFIPath ManipulationFile Inclusion
Corporate Breach
Challenge
1 points Jul 08, 2025 1h 2m
Web SecurityPHPLFIPassword CrackingAuthentication BypassDirectory Traversal
DNS Exfil
Challenge
1 points Jul 07, 2025 1h 0m
Network AnalysisDNSPacket AnalysisData ExfiltrationBase64 Decoding
Query Quake
Medium
40 points Jul 05, 2025 15h 49m
MYSQLIRCE
Session Switch
Challenge
1 points Jul 03, 2025 2m
Web SecuritySession ManagementAuthenticationPrivilege EscalationPHP
Internal
Hard
60 points Jul 03, 2025 55m
Command InjectionLinux CapabilitiesPrivilege EscalationReverse ShellWeb Application SecuritySystem EnumerationNetwork Reconnaissance
Broken Chain
Hard
60 points Jul 03, 2025 3h 34m
IDOR ExploitationZip Slip VulnerabilityServer-Side Template InjectionInternal Service DiscoveryBackup Service ExploitationPrivilege EscalationSudo Vim Exploitation
WP Ultimate
Hard
60 points Jul 03, 2025 10h 6m
WP
Compromised 2
Hard
60 points Jun 30, 2025 8h 0m
Advanced ReconnaissanceAndroid Reverse EngineeringSCADA ExploitationCVE ExploitationAuthentication BypassPrivilege Escalation
Matsudo
Medium
40 points Jun 27, 2025 11m
SSHBrute ForcePrivilege EscalationLinuxSudoNetwork ReconnaissancePenetration Testing
FiPloit
Easy
20 points Jun 27, 2025 8h 35m
Local File InclusionFile Upload BypassPHP SecurityDirectory TraversalWeb Shell ExploitationPrivilege EscalationLog Analysis
Hack the Login
Very Easy
4 points Jun 26, 2025 1h 9m
JSLearning Path
API Breaker
Challenge
1 points Jun 26, 2025 12m
API SecurityWeb HackingLogic FlawsPrivilege EscalationToken ManipulationBase64 EncodingAuthorization Bypass
Traversed
Medium
40 points Jun 26, 2025 40m
GIT
Spoof!
Easy
10 points Jun 26, 2025 1h 57m
IP SPOOFING
Compromised 1
Medium
40 points Jun 26, 2025 1h 11m
Apache TomcatWeb Application SecurityWAR DeploymentDefault CredentialsPrivilege EscalationLinuxSudoWeb Shells
AlVault
Medium
40 points Jun 26, 2025 2h 0m
WEB
Beyond Echo
Medium
20 points Jun 25, 2025 8m
PHPRCE
Cronpocalypse
Easy
20 points Jun 25, 2025 1h 40m
SSH
Anonymous 2
Easy
10 points Jun 24, 2025 30m
FTP ExploitationBackdoor DetectionNetwork ServicesRemote ShellSystem Exploitation
Include me
Easy
10 points Jun 24, 2025 4m
PHPLFI
Anonymous
Easy
10 points Jun 24, 2025 1h 18m
FTP
Nmap Lab 102
Very Easy
8 points Jun 23, 2025 6m
TELNETLearning Path
Learning Lab 101
Very Easy
4 points Jun 23, 2025 6m
NetworkingReconnaissanceCommand LineWeb ServicesLearning Path
Secrets in Source
Very Easy
4 points Jun 23, 2025 1m
HTMLLearning Path
Hack the Cookie
Very Easy
4 points Jun 23, 2025 2m
WEBLearning Path

Courses Progress

Your learning paths and modules

Nmap Mastery: Dominate Network Scanning
4 / 4 modules completed
100%
HTTP Header Manipulation: IP Spoofing
3 / 3 modules completed
100%
HDNA Ethical Hacking Course
5 / 5 modules completed
100%
JWT Ethical Hacking: Token Takeover Tactics
4 / 4 modules completed
100%
Remote Code Execution (RCE)
3 / 3 modules completed
100%