The Lab Universe
Hands-on exercises across every class of vulnerability. Read the brief, work it against your own target, and submit the flag. Points and your level are yours the moment you solve one — join the Academy to start tracking them.
4
labsDifficulty
Category
PractitionerInsecure deserialization
A serialized cart the client can edit
Feed the server a serialized object it will trust and rebuild.
25 pts · 45 minStart →
PractitionerSQL / command injection
Error-based extraction from a chatty endpoint
Break out of a query or a shell command through unescaped input.
25 pts · 45 minStart →
PractitionerInsecure deserialization
The role hidden in a base64 cookie
Feed the server a serialized object it will trust and rebuild.
25 pts · 45 minStart →
PractitionerSQL / command injection
UNION-selecting the users table
Break out of a query or a shell command through unescaped input.
25 pts · 45 minStart →