CYBERSECURITY TRAINING LAB

πŸ” PenTrix Corp

The Intentionally Vulnerable Web Application Pentesting Lab.
Master 183 real-world security challenges across 18 categories β€” from XSS to SSRF to RCE.

Sign In Create Account
183
CTF Flags
18
Categories
10+
Vuln Types
∞
Learning
πŸ’‰

Injection Attacks

SQL injection, command injection, template injection β€” master the fundamentals of server-side exploitation.

πŸ•ΈοΈ

XSS & Client-Side

Stored, reflected, and DOM-based XSS plus CSTI. 10-level DOM playground included.

πŸ”“

Auth & Access Control

Broken authentication, IDOR, privilege escalation, mass assignment, and insecure sessions.

🌐

SSRF & Recon

Server-side request forgery, information disclosure, security misconfiguration, and fingerprinting.

πŸ“„

File & XXE

Unrestricted file upload, path traversal, XML external entity injection, and more.

🏴

CTF Scoreboard

Track progress with 183 unique flags, 3-tier hints system, and a competitive leaderboard.