Nmap
Network discovery and port enumeration utility. Essential for mapping live hosts, scanning open service ports, detecting operating systems, and executing non-intrusive NSE audit scripts.
Authorized testing tools, virtual training subnets, and collaborative security platforms. All operations are strictly bound by our Responsible Research Charter.
Free and open-source utilities deployed for lawful vulnerability assessment, perimeter auditing, and traffic inspection. Organized by difficulty progression.
Network discovery and port enumeration utility. Essential for mapping live hosts, scanning open service ports, detecting operating systems, and executing non-intrusive NSE audit scripts.
Interactive packet capture and network protocol dissection. Analyzes live traffic streams, diagnoses communication bottlenecks, validates TLS handshakes, and detects suspicious unencrypted protocol payloads.
Free, community-driven web application vulnerability scanner. Features automated web crawlers, active and passive security tests, proxy interception, and lightweight API fuzzing.
High-speed command-line web fuzzer written in Go. Rapidly discovers hidden directory trees, unlinked endpoints, virtual hosts, and API parameters with granular HTTP response filters.
Browser-based data analysis and transformation suite known as the Cyber Swiss Army Knife. Performs decoding, hex conversions, deobfuscation, cryptographic hashing, and entropy calculations offline.
Open-source web server scanner that tests targets for dangerous files, outdated server daemon versions, vulnerable CGI scripts, and insecure HTTP response header configurations.
Industry standard web application security audit proxy. Features request interception, Repeater for crafted manual payloads, Sequencer for token entropy, and detailed HTTP/WebSocket request inspection.
Open-source modular penetration testing platform. Used to verify CVE mitigations, simulate known attacks against authorized lab targets, and audit system configurations across diverse architectures.
Automated database penetration testing utility. Detects and tests SQL injection flaws, determines DBMS types, and validates application parameter sanitization without requiring manual exploit crafting.
Advanced rule-based password auditing and recovery engine. Supports hundreds of cryptographic hash types with multi-threaded GPU acceleration to audit entropy and dictionary vulnerability in enterprise credentials.
Fast, multi-algorithm offline password security auditor and hash cracker. Identifies weak authentication hashes, audits password policy compliance, and supports customizable wordlist mutation rules.
Highly parallelized network login authentication auditor. Performs dictionary security audits against exposed remote authentication endpoints including SSH, FTP, HTTP, SMB, and RDP.
Software reverse engineering framework created by the NSA. Includes a capable decompiler, disassembler, scriptable Java/Python interface, and graph analysis for examining compiled binaries and malware samples.
Fast, template-driven vulnerability scanner by ProjectDiscovery. Audits perimeter infrastructure using community-driven YAML templates covering misconfigurations, zero-day CVE reproductions, and exposed services.
Graph-theory assessment platform for Active Directory and Azure environments. Unveils hidden trust relationships, unintended group memberships, and dangerous privilege escalation paths in enterprise domains.
Lightweight static application security testing (SAST) engine. Analyzes abstract syntax trees (AST) to identify OWASP Top 10 vulnerabilities, insecure dependency usage, and logic anti-patterns in source repositories.
Open-source reverse engineering framework and modern graphical interface. Features low-level binary disassembly, graph flow visualization, hexadecimal inspection, and integrated debugging across multiple CPU architectures.
Collection of programmatic Python classes for working with network protocols. Essential for auditing Windows domains, extracting Kerberos tickets, inspecting SMB shares, and testing NTLM relay mitigations.
Free, safe, and legal sandbox environments to build practical offensive techniques and defensive mitigations. Arranged from introductory wargames to advanced exploitation arenas.
Pure command-line wargame aimed at complete newcomers. Teaches essential Linux shell navigation, file system permissions, SSH configurations, standard input/output redirection, and basic data extraction.
Free computer security education program developed by Carnegie Mellon University. Delivers gamified, beginner-accessible challenges in forensics, basic cryptography, web flaws, and fundamental reverse engineering.
Browser-accessible virtual security labs featuring bite-sized interactive rooms. Covers introductory network security, basic Linux and Windows administration, and guided vulnerability walkthroughs.
The official OWASP flagship intentionally insecure web application. Written in modern Node.js and Angular, providing an offline sandbox covering all OWASP Top 10 vulnerabilities with automated scoreboards.
Insecure web application laboratory designed by Google engineers to illustrate common security flaws such as XSS, SQLi, path traversal, and CSRF, alongside detailed remediation techniques.
Realistic browser-based Linux server debugging and site reliability exercises. Challenges learners to diagnose broken services, incorrect routing tables, disk space exhaustion, and permission blocks.
High-quality, free interactive laboratories from the makers of Burp Suite. Covers modern web application attack vectors including SQL injection, XSS, CSRF, SSRF, CORS, race conditions, and OAuth flaws.
Hands-on penetration testing laboratory providing live virtual machines. Focuses on realistic service enumeration, lateral movement, unquoted service paths, and privilege escalation techniques.
Dedicated Windows and PowerShell wargame platform. Builds administrative and security auditing proficiency by challenging learners to inspect registries, query WMI/CIM, and audit Windows server environments.
Interactive, code-first training ground focused on applied modern cryptography. Solves real mathematical and implementation vulnerabilities across RSA, AES, Diffie-Hellman, and Elliptic Curve systems.
International cybersecurity wargame platform hosting over 400 realistic challenges. Spans network forensics, web client/server exploitation, cryptanalysis, and system administration audits.
Hands-on penetration testing training ground providing vulnerable community machines and realistic enterprise scenarios featuring internal network pivoting and privilege escalation paths.
Open catalog of downloadable boot-to-root vulnerable virtual machine images. Enables completely offline, unguided penetration testing and real-world vulnerability chaining ideal for certification preparation.
Damn Vulnerable Web Application and Damn Vulnerable Cloud Application. Configurable security levels ranging from low to impossible, allowing manual bypasses, WAF evasion analysis, and container breakout tests.
Community repository of binary reverse engineering challenges. Covers anti-debugging tricks, binary patching, custom packing routines, and cryptographic key generation across Windows and Linux binaries.
Rigorous cybersecurity education platform developed by Arizona State University. Focuses on low-level systems security, shellcode injection, return-oriented programming (ROP), memory corruption, and kernel defense.
Laser-focused exploitation challenges teaching modern Return-Oriented Programming (ROP). Teaches stack pivoting, gadget hunting, and architecture-specific payload construction across x86, x64, ARM, and MIPS.
Advanced server-side web security wargame exploring low-level PHP object deserialization, session file tampering, path traversal, command injection, and blind SQL injection defenses.