Cybersecurity CTF Challenges
About the challenges:
Challenges are mixed:
These challenges span multiple categories: PHP-related vulnerabilities (LFI, RFI, SQL Injection), Web security (XSS, Cookie poisoning, SSTI), Cryptography (Caesar cipher, Base64, AES), Forensics (memory dump, stego), and Password cracking.
Primarily web security-focused, with a strong PHP backend flavor:
Many challenges target common PHP weaknesses, but also include client-side JavaScript vulnerabilities and cryptographic concepts.
Target audience / community:
These challenges are ideal for web security enthusiasts, penetration testers, CTF players, and developers learning about common vulnerabilities — especially those focused on PHP and full-stack web security.
Suitable for:
- Beginners through advanced learners (since difficulty ranges from easy to hard)
- Capture The Flag (CTF) competitions
- Cybersecurity training platforms focused on real-world web app flaws