Exercises

Exercise Avg. Time Difficulty Solved by Tier
XSL Java
This exercise covers the exploitation of a Java application using XSL
< 1 Hr. medium 129 PRO
DOMPDF RCE III
This exercise covers the exploitation of a vulnerability in the DOMPDF library
2-4 Hr. medium 60 PRO
XSL PHP V
This exercise covers the exploitation of a PHP application using XSL
< 1 Hr. hard 121 PRO
API Payments 07
This exercise covers a way to manipulate a shopping cart to lower the total amount
< 1 Hr. medium 986 PRO
CVE-2021-22204: Exiftool RCE II
This exercise covers how you can gain code execution when an application uses exiftool on user-controlled files
< 1 Hr. medium 84 PRO
XSL PHP IV
This exercise covers the exploitation of a PHP application using XSL
2-4 Hr. medium 153 PRO
API Payments 06
This exercise covers a simple payments bypass.
< 1 Hr. medium 1019 PRO
CVE-2022-39224
This exercise covers the exploitation of CVE-2022-39224
1-2 Hr. medium 106 PRO
XSL PHP III
This exercise covers the exploitation of a PHP application using XSL
< 1 Hr. medium 177 PRO
DOMPDF RCE II
This exercise covers the exploitation of a vulnerability in the DOMPDF library
2-4 Hr. medium 76 PRO
DOMPDF RCE
This exercise covers the exploitation of a vulnerability in the DOMPDF library
< 1 Hr. medium 158 PRO
API Payments 05
This exercise covers how to abuse a shopping cart allowing users to apply a voucher.
< 1 Hr. hard 926 PRO
XSL PHP II
This exercise covers the exploitation of a PHP application using XSL
< 1 Hr. medium 241 PRO
API Payments 04
This exercise covers how to abuse a shopping cart allowing users to apply a voucher..
< 1 Hr. medium 1235 PRO
XSL PHP
This exercise covers the exploitation of a PHP application using XSL
< 1 Hr. medium 284 PRO
API Payments 03
This exercise covers a simple payments bypass.
< 1 Hr. medium 1342 PRO
Code Review 18
This exercise is one of our challenges to help you learn how to review real source code
1-2 Hr. medium 394 PRO
CVE-2020-13xxx
This challenge covers the review of a CVE and its patch
< 1 Hr. medium 678 PRO
CVE-2022-3x7x1
This challenge covers the review of a CVE and its patch
< 1 Hr. easy 776 PRO
CVE-2008-5x8x
This challenge covers the review of a CVE and its patch
< 1 Hr. easy 851 PRO
Python Snippet #02
This challenge covers the review of a snippet of code written in Python
< 1 Hr. easy 2060 PRO
Java Snippet #12
This challenge covers the review of a snippet of code written in Java
< 1 Hr. easy 1380 PRO
Java Snippet #11
This challenge covers the review of a snippet of code written in Java
< 1 Hr. easy 1428 PRO
Java Snippet #10
This challenge covers the review of a snippet of code written in Java
< 1 Hr. easy 1533 PRO
API Payments 02
This exercise covers a simple payments bypass.
< 1 Hr. medium 1508 PRO
GCM Nonce Reuse
This challenge covers the impact of nonce reuse on GCM
< 1 Hr. medium 186 PRO
CVE-2019-5x2x
This challenge covers the review of a CVE and its patch
< 1 Hr. medium 621 PRO
Java Snippet #07
This challenge covers the review of a snippet of code written in Java
< 1 Hr. easy 1759 PRO
Java Snippet #09
This challenge covers the review of a snippet of code written in Java
< 1 Hr. medium 1398 PRO
Java Snippet #08
This challenge covers the review of a snippet of code written in Java
< 1 Hr. easy 1776 PRO
1 6 7 8 9 10 11 12 25
Showing 241–270 of 734 exercises