Labs-Pentest is a curated collection of free online training platforms and laboratories designed for cybersecurity professionals and enthusiasts to practice penetration testing and capture-the-flag (CTF) skills. The resource includes access to various educational platforms such as: - Academy Hackaflag for Brazilian cybersecurity training - Attack Defense for hands-on security exercises - Blue Team Labs for defensive security training - CTF Komodo Security and CTFTime for competitive cybersecurity challenges - CyberDefenders for blue team skill development - CyberSecLabs for practical penetration testing scenarios - CryptoHack for cryptography challenges - Exploitation Education for learning exploitation techniques - Google CTF and Hacker101 for industry-standard challenges - HackTheBox for comprehensive penetration testing practice - Hacksplaining for security concept explanations - Immersive Labs for interactive cybersecurity training These platforms provide practical environments where users can develop skills in vulnerability assessment, exploitation techniques, digital forensics, cryptography, and defensive security measures through hands-on exercises and simulated scenarios.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Free and open-source cybersecurity training classes with multi-class learning paths for high-skill, high-pay job skills.
A comprehensive guide to developing an incident response capability through intelligence-based threat hunting, covering theoretical concepts and real-life scenarios.
A comprehensive guide to using Metasploit, including searching for modules, specifying exploits and payloads, and using auxiliary modules.
A comprehensive guide to investigating security incidents in popular cloud platforms, covering essential tools, logs, and techniques for cloud investigation and incident response.
A comprehensive guide to digital forensics and incident response, covering incident response frameworks, digital forensic techniques, and threat intelligence.
A condensed field guide for cyber security incident responders, covering incident response processes, attacker tactics, and practical techniques for handling incidents.
Comprehensive security training platform for web developers, offering hands-on experience with real, vulnerable applications and concrete advice for securing code.
A comprehensive SQL injection cheat sheet covering various database management systems and techniques.
A comprehensive reference guide providing practical examples and commands for using Hashcat to crack various types of password hashes.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.