Courses that end in a shell.
Every course on AirOverflow Arena, from first principles to specialist tracks. Each one mixes written and video lectures with quizzes and hands-on challenges that run in an isolated lab you launch from the browser.
- 8
- Courses
- 105
- Modules
- 84h
- Of material
- 7
- Free to start
Tracks
An ordered run of courses: start at the first and each one assumes the last.
The Pwny way.
Stack to heap to format strings, on Linux and on Windows.
4 courses
beginner
3 courses- beginnerFree
Cyber Kill Chain Methodology
Understand the basics of the Cyber Kill Chain Methodology practically
11 modules 4hOpen
- beginnerFree
Introduction to Format String Attacks
One missing `"%s"` and a program hands you its memory. `printf(buf)` where `buf` came from a user is not a printing bug - it is an interpreter running code the attacker wrote. This course takes that single mistake apart and builds every primitive it yields, in the order they depend on each other: f
5 modules 8hOpen
- beginnerFree
Introduction to Linux
A complete introduction to Linux, from where it came from to writing automation you can trust. It starts with the history and the family tree, gets you a machine you can break, then works through the filesystem, the commands you use every day, users and groups, permissions and the special bits, pack
15 modulesOpen
medium
3 courses- mediumFree
Introduction to Binary Exploitation
Memory corruption from first principles, across all three places it matters: userland, the kernel, and the browser. The course is built around one idea - that exploitation is the business of turning a small memory-safety violation into a general one, one primitive at a time. You start with what a p
7 modules 14hOpen
- mediumFree
Introduction to Return Oriented Programming
Learn the fundamentals of Return-Oriented Programming and modern binary exploitation through practical, exploitation-focused modules.
10 modules 3hOpen
- mediumFree
Wi-Fi Hacking
Wi-Fi security, taken apart one generation at a time, with a lab for every attack and no hardware anywhere. Each module pairs a short piece of theory with one hands-on lab that runs on simulated radios inside a container. The radios are real to every tool you will use: hostapd runs the access point
9 modules 10hOpen
hard
2 courses- hardFree
Introduction to DevSecOps
A complete DevSecOps curriculum, taught from both sides: how to build the pipeline and how to break it. It begins with the discipline itself - shift-left, security as code, the pipeline, threat modelling - then works through application security (SAST, SCA, secrets management, DAST/IAST/RASP), conta
34 modulesOpen
- hardadvanced tier
Windows Exploitation
Userland exploitation on 64-bit Windows. You start with the way the operating system fits together. You finish by breaking its heap. The course covers x86-64 only, not WOW64 and not 32-bit.
14 modules 45hOpen
Start learning
Create a free account to open the first course and launch its labs in the browser.
Create a free account