Project brief — Lab
Security Lab
Stand up a deliberately vulnerable environment, compromise it, then patch each weakness and document the before-and-after.
Intermediate
- Type
- Lab
- Difficulty
- Intermediate
- Duration
- 4 weeks
- Milestones
- 4
Requirements
Non-negotiable. A submission that skips one of these is returned, not graded.
- R1At least six distinct vulnerability classes
- R2Reproducible exploitation steps for each
- R3A patch per finding with a regression check
- R4Detection rules for the attacks you performed
Timeline
4 weeks, staged
- Week 1
Build the target
Provision the environment and seed the weaknesses.
- Week 2
Attack
Enumerate, exploit and record methodology as you go.
- Week 3
Defend
Patch, harden and verify each fix holds.
- Week 4
Detect
Write and test detection rules against your own attack traces.
Stack
LinuxBurpWireshark
Deliverables
- Lab environment
- Penetration test report
- Patch set
- Detection rules
Reviewed on
- Methodology
- Reproducibility
- Quality of fixes
- Report clarity
Take this brief
Every brief is reviewed by a practitioner. You get written feedback on code, documentation and the decisions behind both.