Lattice pratimana
Sign in with Passkey
The Discrete Skill Lattice for Applied Security Engineering

Master the Vulnerabilities.
Verify the Systems.

Production-grade cybersecurity practice range spanning 5 core domains. Interactive sandboxes, real target boxes, and native integration with the Vector testing workbench.

Select Domain Track 184 Total Labs · 270 Hours
Track 01 Web Application 48 Labs · L1 to L4 · 60h
Track 02 Mobile Security 32 Labs · L1 to L4 · 45h
Track 03 Desktop & Endpoint 28 Labs · L2 to L5 · 50h
Track 04 API & Microservices 36 Labs · L1 to L4 · 40h
Track 05 Network & Infra 40 Labs · L2 to L5 · 75h
Showing all labs in track
L2 Mechanics ✦ Vector Probe

Broken Object Level Authorization (BOLA)

Tamper with user GUID parameters across REST profile endpoints in Vector's Probe workbench to extract unauthorized financial records.

Web AppSec · 100 pts
L4 Advanced ✦ Vector Wire Dissect

HTTP Request Smuggling (CL.TE Desynchronization)

Exploit front-end and back-end header boundary desync to smuggle hidden requests into the pipeline and hijack active user sessions.

Web AppSec · 450 pts
L3 Exploitation ✦ Frida + Vector

Android Dynamic SSL Pinning Bypass

Decompile an obfuscated APK, write a custom Frida script targeting TrustManager implementations, and route mobile traffic into Vector.

Mobile MASTG · 250 pts
L4 Advanced ✦ Objection Hook

Biometric Authentication Callback Override

Hook BiometricPrompt callbacks at runtime to force authorization success without valid fingerprint or face verification.

Mobile MASTG · 350 pts
L3 Exploitation ✦ Sysinternals

Windows DLL Search-Order Hijacking

Identify missing DLL search vectors in a privileged desktop agent and plant a crafted proxy DLL to execute code under elevated permissions.

Desktop Sec · 300 pts
L4 Advanced ✦ Ghidra Decompile

Insecure Named Pipe SYSTEM Privilege Escalation

Audit the DACL of an endpoint service named pipe, discover insecure command dispatching, and trigger arbitrary command execution as SYSTEM.

Desktop Sec · 400 pts
L2 Mechanics ✦ Vector Strike

GraphQL Introspection & Broken Function Auth

Reconstruct the full GraphQL schema from an enabled introspection endpoint, uncover unlisted administrative mutations, and escalate privileges.

API Security · 200 pts
L3 Exploitation ✦ grpcurl Intercept

Unauthenticated gRPC Service Reflection

Interact directly with internal gRPC microservices via reflection, decode Protobuf payloads, and bypass edge gateway authentication checks.

API Security · 300 pts
L3 Exploitation ✦ Impacket + Hashcat

Active Directory AS-REP Roasting & Kerberos TGT

Identify domain accounts with pre-authentication disabled, request AS-REP ticket hashes over Kerberos, and crack passwords offline.

Network Infra · 350 pts
L5 Hardening ✦ Certipy + PKI

AD CS ESC1 Certificate Template Abuse

Exploit client authentication certificate templates with SAN flags enabled to request certificates on behalf of the Domain Controller.

Network Infra · 500 pts

The Complete Pratimāna Security Lifecycle

1. Learn on Lattice

Master vulnerability mechanics, practice with hands-on target sandboxes, and build verifiable skills across 5 domains.

2. Test with Vector

Download Vector, our high-speed desktop intercepting proxy and testing workbench, engineered in Rust for precision testing.

3. Hunt on Matrix

Graduate to hunting real vulnerabilities on enterprise assets through Matrix's coordinated bug bounty and disclosure platform.