OSINT Fundamentals
Find what is hiding in plain sight.
// pick your next challenge
12 rooms match your filters.
Find what is hiding in plain sight.
See an attack as a chain of stages — and learn where defenders can break it.
Why AI is its own attack surface, and the OWASP LLM Top 10 that maps it.
From captured hashes to plaintext passwords.
The number-one LLM risk: untrusted text becoming instructions the model obeys.
Poisoning, evasion, model extraction and inversion — name the attack, then stop it.
Each layer adds power and a new place to get it wrong — with a high-impact hardening checklist.
Capture a WPA2 handshake and crack it offline — plus the defences that stop you.
Trace untrusted data from source to sink to find bugs before attackers do.
Sit in the blue team chair and work the alerts.
Chain small wins into a path to Domain Admin, and map it with BloodHound.
Systematically probe an LLM application for injection, jailbreaks and data leakage — with authorisation.