Learn Web Pentest through Practice

Master web vulnerability exploitation from basic to advanced. Detailed documentation combined with interactive labs running directly in Docker containers.

sechub@pentest ~
┌──(sechub㉿kali)-[~]
└─$ nmap -sV --script vuln target.sechub.local
Starting Nmap 7.94 ( https://nmap.org )
Scanning target.sechub.local (10.10.10.1)...
PORT STATE SERVICE VERSION
80/tcp open http Apache 2.4.41
443/tcp open ssl/http nginx 1.18.0
3306/tcp open mysql MySQL 5.7.31
[+] Found 3 potential vulnerabilities
[+] SQL Injection detected on /login endpoint
└─$ _
8
Vulnerabilities
14
Lab Challenges
Login Required
Completed
Login Required
Total Points

Vulnerabilities

Explore and learn to exploit the most common web vulnerabilities

See all →

Learning Paths

From absolute beginner to expert pentester

See all →