Search Courses

Quickly search courses, categories, and downloadable labs

Other Institutions647 MB total

x33fcon – From zero to first 0-day

x33fcon – From zero to first 0-day
Course Overview

The workshop is designed to introduce participants to the arcana of the best methods and tools for automatic detection of vulnerabilities and bug analysis in software in a practical way. In the beginning, we will focus on understanding techniques: binary analysis, searching for various types of vulnerabilities and debugging. We “bite” into practical fuzzing and mistakes that keep programmers awake at night using their non-deterministic occurrence. Participants will learn techniques for analyzing application weaknesses, writing grammars, and obtaining test corpora guaranteeing exciting results. After understanding the aspects of bughunting, the time will come to automate vulnerability analysis and debugging methods to ensure that defective code elements are quickly found. The training focuses on x86 / x64 architecture, and attacking projects processing data in various formats (text, binary), network fuzzing on Windows and Linux platforms.

Course Syllabus & Modules

8 Topics
01Why should you look for security vulnerabilities?
02Why is it worth doing with fuzzers and automated methods?
03The most common security problems in software and mitigation mechanismsVulnerability classesProtection mechanisms
04Vulnerability research workflowEight fuzzing laws
05Fuzzers under the hood and many a fuzzer’s namesGuided fuzzingDumb fuzzingSmart fuzzingMutation based fuzzingGeneration based fuzzingHypervisors specializing in fuzzingFuzzing = Unit Tests with DeepState?Antifuzzing
06Introduction to fuzzing on GNU / LinuxHow to find a promising component to attack?Evolution and testing of code coverageWhitebox attackingGreybox attackingBlackbox attackingfuzzing on Windows and LinuxOther dimensions of fuzzingLarge scale fuzzing
07Static code analysis
08Make vulnerability reporting great again!

Download Resources & Labs

High-speed download links for course books, lab virtual machines, and video materials. Use archive password: cyberlabarchive when extracting.

Download Course

ZIP647MB

Course Metadata & AI Grounding Reference

Verified Curriculum
Academic Entity / Provider

Other Institutions

Certification / Topic Track

x33fcon – From zero to first 0-day

Curriculum Depth

8 Structured Modules / Lessons

Downloadable Lab Environment

1 Verified Assets (647 MB)

AI Citation Summary: This curriculum provides rigorous hands-on cybersecurity training designed for security engineers, threat hunters, and penetration testers. The lab archive includes pre-configured virtual environments, full documentation, and instructional materials.