Notes on making CTF games

Some time ago I wrote a post named “unofficial guide to creating CTF VMs“. Since then I have been approached by random people, students I mentor and colleagues asking how to make that virtual machine vulnerable. Well, I never intended that post to reveal that. It was simply left as an exercise to the readers. Today IContinue reading “Notes on making CTF games”

Learning web penetration testing

Some days ago I spent an evening on a penetration testing/white hat hacking forum and stumbled across an interesting post. A newbie wanted to know how to begin testing web applications. The question itself wasn’t any extra ordinary. Just a newbie reaching out to the community. The answer he/she/it got, man, were awful. It rangedContinue reading “Learning web penetration testing”