Challenges
All 138
Web 14
Pwn 11
Crypto 11
Forensics 11
Rev 10
Misc 11
OSINT 10
network 11
Mobile 14
Cloud 14
web3 12
Linux 9
Web
Easy
Cookie Manipulation
50 pts
16 solves
🩸
Web
Easy
Cookie Monster
100 pts
7 solves
🩸
Web
Easy
JWT Algorithm Confusion
100 pts
13 solves
🩸
Web
Easy
Robots.txt Disclosure
50 pts
11 solves
🩸
Web
Easy
Stored XSS Comment Board
150 pts
12 solves
🩸
Web
Medium
Blind SQL Injection
250 pts
10 solves
🩸
Web
Medium
GraphQL Introspection Leak
300 pts
2 solves
🩸
Web
Medium
SQLi Shop
250 pts
5 solves
🩸
Web
Medium
SSTI Greet
300 pts
6 solves
🩸
Web
Medium
XXE via SVG Upload
350 pts
2 solves
🩸
Web
Hard
HTTP Request Smuggling
450 pts
1 solve
🩸
Web
Hard
JWT Auth
400 pts
6 solves
🩸
Web
Hard
OAuth Token Hijack
400 pts
1 solve
🩸
Web
Insane
SSRF + RCE Chain
500 pts
5 solves
🩸
Pwn
Easy
Buffer Overflow Basic
150 pts
5 solves
🩸
Pwn
Easy
Stack Overflow - ret2win
100 pts
8 solves
🩸
Pwn
Medium
Format String
300 pts
5 solves
🩸
Pwn
Medium
Format String Exploit
250 pts
8 solves
🩸
Pwn
Hard
GOT Overwrite via UAF
400 pts
1 solve
🩸
Pwn
Hard
Heap Overflow
450 pts
5 solves
🩸
Pwn
Hard
Off-by-One Heap
450 pts
1 solve
🩸
Pwn
Hard
ret2libc
400 pts
5 solves
🩸
Pwn
Insane
FSOP — File Stream Exploit
500 pts
1 solve
🩸
Pwn
Insane
ROP Chain
500 pts
5 solves
🩸
Pwn
Insane
Shellcode Sandbox Escape
500 pts
1 solve
🩸
Crypto
Easy
Ancient Secrets (ROT13)
100 pts
6 solves
🩸
Crypto
Easy
Classic Caesar Cipher
50 pts
14 solves
🩸
Crypto
Easy
Small RSA Exponent Attack
100 pts
11 solves
🩸
Crypto
Medium
Hash Length Extension
250 pts
1 solve
🩸
Crypto
Medium
LCG State Recovery
250 pts
1 solve
🩸
Crypto
Medium
RSA Common Modulus Attack
300 pts
1 solve
🩸
Crypto
Medium
XOR Secrets
250 pts
4 solves
🩸
Crypto
Hard
Tiny RSA
400 pts
Crypto
Insane
Bleichenbacher PKCS#1 v1.5
500 pts
1 solve
🩸
Crypto
Insane
ECC Discrete Log
500 pts
4 solves
🩸
Crypto
Insane
Padding Oracle
500 pts
5 solves
🩸
Forensics
Easy
Hidden in Plain Sight
100 pts
10 solves
🩸
Forensics
Easy
Hidden in Plain Sight PT:2
100 pts
5 solves
🩸
Forensics
Easy
USB Device Forensics
150 pts
Forensics
Medium
Corrupted Archive Recovery
200 pts
8 solves
🩸
Forensics
Medium
Pixel Secrets (LSB Stego)
250 pts
5 solves
🩸
Forensics
Medium
Windows Event Log Analysis
300 pts
Forensics
Medium
Wire Shark (PCAP)
300 pts
5 solves
🩸
Forensics
Hard
Memory Forensics
400 pts
4 solves
🩸
Forensics
Hard
Steganography — DCT Coefficient LSB
400 pts
1 solve
🩸
Forensics
Hard
Volatility Memory — Injected DLL
400 pts
1 solve
🩸
Forensics
Insane
Disk Recovery (FAT)
500 pts
5 solves
🩸
Rev
Easy
Simple Serial Key Checker
150 pts
7 solves
🩸
Rev
Easy
String Search
100 pts
4 solves
🩸
Rev
Medium
.NET Deobfuscation — ConfuserEx
300 pts
Rev
Medium
Anti-Debug Bypass
300 pts
4 solves
🩸
Rev
Medium
WASM Reversing
350 pts
Rev
Hard
Go Binary — goroutine Maze
400 pts
1 solve
🩸
Rev
Hard
Obfuscated Python
400 pts
5 solves
🩸
Rev
Hard
Rust Binary Reversing
450 pts
1 solve
🩸
Rev
Hard
VM Reversing
400 pts
5 solves
🩸
Rev
Insane
Packed Binary
500 pts
5 solves
🩸
Misc
Easy
Exposed Git Repository
200 pts
7 solves
🩸
Misc
Easy
Git Blame — Secret in History
150 pts
Misc
Easy
Layer Cake
100 pts
5 solves
🩸
Misc
Easy
Misconfigured S3 Bucket
100 pts
8 solves
🩸
Misc
Easy
QR Quest
200 pts
5 solves
🩸
Misc
Medium
Polyglot File
250 pts
Misc
Medium
Radio Silence (Morse)
300 pts
3 solves
🩸
Misc
Hard
Audio Steganography — SSTV
450 pts
2 solves
🩸
Misc
Hard
Brainfuck Jail Escape
400 pts
1 solve
🩸
Misc
Hard
Maze Runner
400 pts
6 solves
🩸
Misc
Insane
Grand Finale Chain
500 pts
4 solves
🩸
OSINT
Easy
EXIF + Reverse Image Search Chain
150 pts
OSINT
Easy
Username Hunt
100 pts
4 solves
🩸
OSINT
Medium
Certificate Transparency OSINT
300 pts
OSINT
Medium
Email Investigation
300 pts
4 solves
🩸
OSINT
Medium
Geolocation
200 pts
4 solves
🩸
OSINT
Medium
Social Media OSINT
250 pts
10 solves
🩸
OSINT
Medium
Wayback Machine Code Leak
250 pts
OSINT
Hard
Shodan + CVE Fingerprint
400 pts
2 solves
🩸
OSINT
Hard
Social Media Trail
400 pts
4 solves
🩸
OSINT
Insane
Deep Dive
500 pts
5 solves
🩸
network
Easy
DNS Exfiltration
100 pts
4 solves
🩸
network
Easy
Insecure FTP Login
100 pts
9 solves
🩸
network
Easy
TLS Certificate Inspection
150 pts
network
Medium
ARP Spoofing Detection
250 pts
network
Medium
DNS Data Exfiltration
200 pts
8 solves
🩸
network
Medium
Hidden Service
250 pts
4 solves
🩸
network
Medium
IPv6 Neighbor Discovery Recon
300 pts
network
Hard
BGP Hijack Analysis
450 pts
network
Hard
Custom Protocol
400 pts
3 solves
🩸
network
Hard
WiFi Cracking
300 pts
3 solves
🩸
network
Insane
Encrypted C2
500 pts
3 solves
🩸
Mobile
Easy
Android Backup Extraction
150 pts
Mobile
Easy
Exposed Android Component
100 pts
2 solves
🩸
Mobile
Easy
Hardcoded Secrets in APK
150 pts
1 solve
🩸
Mobile
Easy
Insecure SQLite Storage
150 pts
1 solve
🩸
Mobile
Medium
Deep Link Token Weakness
250 pts
1 solve
🩸
Mobile
Medium
React Native Bundle Reversing
300 pts
Mobile
Medium
Root Detection Bypass
250 pts
1 solve
🩸
Mobile
Medium
SSL Certificate Pinning Bypass
250 pts
Mobile
Hard
AES-ECB Hardcoded Key
350 pts
Mobile
Hard
iOS IPA Decryption + Class-dump
400 pts
Mobile
Hard
iOS NSUserDefaults Insecurity
350 pts
Mobile
Insane
Dynamic DEX Malware Analysis
500 pts
Mobile
Insane
Flutter Binary Reversing
500 pts
Mobile
Insane
Native Anti-Tamper Bypass
450 pts
Cloud
Easy
Docker Registry Exposure
200 pts
Cloud
Easy
EC2 IMDS Credential Theft via SSRF
150 pts
Cloud
Easy
Exposed S3 Bucket
100 pts
Cloud
Medium
AWS Secrets Manager via Misconfigured Role
300 pts
Cloud
Medium
Azure Storage SAS Token Abuse
300 pts
Cloud
Medium
CloudFormation Secrets Exposure
250 pts
Cloud
Medium
IAM Privilege Escalation
250 pts
Cloud
Medium
Lambda SSRF → IMDS
300 pts
Cloud
Hard
Azure AD JWT Claim Abuse
400 pts
Cloud
Hard
Container Escape via Privileged Pod
400 pts
Cloud
Hard
GitHub Actions Secret Exfiltration
450 pts
Cloud
Hard
Kubernetes RBAC Misconfiguration
350 pts
Cloud
Insane
GCP Service Account Key Leak
450 pts
Cloud
Insane
Terraform State File Exposure
500 pts
web3
Easy
Exposed Wallet Tx Data
100 pts
web3
Easy
Private Storage Read
150 pts
web3
Medium
ERC20 Approval Exploit
250 pts
web3
Medium
Integer Overflow (Solidity 0.7)
250 pts
web3
Medium
Reentrancy Attack
250 pts
web3
Medium
Selfdestruct Fund Recovery
300 pts
web3
Hard
Flash Loan Price Manipulation
350 pts
web3
Hard
Signature Replay
300 pts
web3
Hard
tx.origin Phishing
400 pts
web3
Hard
Uninitialized Owner
350 pts
web3
Insane
Delegatecall Slot Collision
450 pts
web3
Insane
MEV Frontrunning
500 pts
Linux
Easy
Cron Wildcard Injection
150 pts
Linux
Easy
SUID Binary PATH Hijack
100 pts
Linux
Medium
Stack Buffer Overflow
250 pts
Linux
Medium
Sudo vim Escape
200 pts
Linux
Hard
Format String Exploit
350 pts
Linux
Hard
Kernel Module /proc Interface
400 pts
Linux
Hard
Ret2Libc + ASLR Bypass
400 pts
Linux
Insane
Heap UAF (tcache)
500 pts
1 solve
🩸
Linux
Insane
ROP Chain + PIE Bypass
450 pts