Community Hub
📚 Writeups, Bug Bounty Reports & Resources
The latest community writeups, spoiler-safe hints, freshly launched labs, auto-gathered bug bounty reports from around the web, and a curated toolbox — one place, every link.
🐞 Bug Bounty Reports
Auto-gathered from public writeup feeds · refreshed every 6h
📝 Community Writeups
Full writeups unlock on each machine page after you root it
Axferia
A
Bastion
B
Postmark
A
Bootleak
B
Bastion
A
VoltCore
B
Rootbase
B
Axferia
B
Loophole
B
GridLock
C
VoltCore
B
Postmark
B
Bootleak
B
Listeria
B
💡 Latest Hints
Spoiler-safe nudges submitted by the community
Bifrost
Reconnaissance
Nightfall
Privilege Escalation
Nightfall
Privilege Escalation
Bastion
Privilege Escalation
VAULTNET-DC01
Enumeration
Sidewinder
Enumeration
Sidewinder
Lateral Movement
Bastion
Privilege Escalation
Switchgear
Foothold
Retrogate
Enumeration
Apex
Foothold
CIRT Gateway
Privilege Escalation
Corp Headers
Foothold
SolarGate
Foothold
Bootleak
Reconnaissance
Axferia
Enumeration
Inkblot
Privilege Escalation
Meridian Hub
Foothold
Porthaven
Privilege Escalation
Irongrep
Privilege Escalation
🆕 Newest Labs
Freshly launched machines
Bastion
Hard
Nightfall
Hard
Sidewinder
Medium
DeployStation
Medium
RatSuite
Hard
Switchgear
Medium
Corp Headers
Easy
Corp Webcrawl
Easy
Corp Docs
Medium
Corp Logs
Medium
Nightglass
Medium
🧭 Learning Paths
Guided tracks on the platform
🎯 OSCP PathExam-style Linux & Windows machines, full methodology.
🧭 CPTS Path
HTB-CPTS-aligned track from recon to AD.
📝 Pentest Reporting
Write and grade real pentest plans & reports.
⚡ Project Meridian
5-machine Linux privesc series inside SolarGate Energy.
📚 All Learning Paths
Browse every guided track on the platform.
🛠 Toolbox & References
Curated offensive-security resources
GTFOBins ↗PrivescUnix binaries abused to bypass local restrictions.
LOLBAS ↗Privesc
Living-off-the-land binaries & scripts for Windows.
HackTricks ↗Reference
Encyclopedic pentest / CTF methodology.
PayloadsAllTheThings ↗Payloads
Payloads & bypasses for every common web bug class.
PortSwigger Web Security Academy ↗Learning
Free, hands-on web vuln labs.
OWASP Testing Guide ↗Reference
Structured web app testing methodology.
OWASP Cheat Sheet Series ↗Reference
Concise defensive + offensive cheat sheets.
HackerOne Hacktivity ↗Reports
Publicly disclosed bug bounty reports.
revshells.com ↗Tooling
Reverse shell generator for every language/listener.
CyberChef ↗Tooling
Encode/decode/crypto swiss-army knife.