Hack2Own is a hands-on cybersecurity school built for aspiring penetration testers. Start free at the surface, then descend tier by tier toward CEH, eJPT, and OSCP — at your own depth.
Every module exists at four depths. The surface is free forever — a real introduction, not a teaser. Each level below maps to an industry certification so you always know what you're training for.
Open any module to read its free L0 content. The arrows in each module let you change depth — Go Shallow or Go Deeper. Locked depths ask you to sign up for the full platform.
Network host discovery, port scanning, service detection, vulnerability analysis, expoitation and more.
The fundamentals of HTTP, recon, OWASP and testing methodology, Burp and more.
The deep dive on Windows Active Directory and Domain Controller services to total domain admin pwnage.
The deep dive on mobile application VAPT, focused on Android platform, tools and exploits.
The deep dive on mobile application VAPT, focused on iOS platform, tools and exploits.
The deep dive on cloud VAPT, focused on Microsoft Azure platform, tools and exploits.
The deep dive on cloud VAPT, focused on Amazon AWS platform, tools and exploits.
The deep dive on cloud VAPT, focused on Oracle Cloud platform, tools and exploits.
The deep dive on thick client VAPT, focused on .NET and Electron applications, vulnerabilities, tools and exploits.
The art of physical red teaming. Get your hands dirty and go out into the field-work. Unlock your inner Mr.Bond (007).
AI is on the rise, and so are AI/LLM models, and so are its vulnerabilities. Learn to find and exploit them.
Sign up to unlock L1–L3 across every module, custom hosted labs, and a path that refines your skills beyond excellence.