Hamada Khairy Labs
AC LABS: 0/50 — XP: 0
HAMADA KHAIRY ACADEMY · ACCESS CONTROL TRAINING GROUND

50 Access Control Labs

Privilege escalation. Role bypass. UI vs API. GraphQL. WebSocket. State persistence.
Solve them all — guaranteed to find real bugs.

Hamada Khairy
50
LABS
8
CATEGORIES
Vertical+Horizontal
ESCALATION TYPES
0%
COMPLETED
FILTER:
PHASE 0: SETUP PHASE 1: HUNT
⚙ SETUP
REQUEST BUILDER
RESPONSE
NOTES (Arson)
HEADERS
BODY (JSON)
WAITING...
// Send a request to see the response
// AC NOTE SYSTEM — Environments → Roles → Mechanisms → Test Results
Privilege Escalated!