Exercises

Exercise Avg. Time Difficulty Solved by Tier
API JWT REVOCATION JWT
This exercise covers how to bypass a weak JWT Revocation Mechanism.
< 1 Hr. easy 467 PRO
API Payments 01 API
This exercise covers a simple payments bypass.
< 1 Hr. easy 2009 PRO
API 06 API Angular
This exercise covers how one can inspect JavaScript code to identify unused endpoints.
< 1 Hr. easy 2038 PRO
API 05 API Angular
This exercise covers how one can inspect JavaScript code to identify unused endpoints.
< 1 Hr. easy 2355 PRO
API 04 API Angular
This exercise covers how one can inspect JavaScript code to identify unused endpoints.
< 1 Hr. easy 2547 PRO
API 03 API
This exercise is the API version of an exercise you already solved in another badge. You should use it to get more confident with discovering vulnerabilities without any hint on what to look for.
< 1 Hr. easy 2510 PRO
API 02 API
This exercise is the API version of an exercise you already solved in another badge. You should use it to get more confident with discovering vulnerabilities without any hint on what to look for.
< 1 Hr. easy 3176 PRO
API 01 API
This exercise is the API version of an exercise you already solved in the Essential Badge. You should use it to get more confident with discovering vulnerabilities without any hint on what to look for.
< 1 Hr. easy 3702 PRO
Showing 1–8 of 8 exercises