Windows System Hacking
8.0
(2)
Tier 4 Medium Skill Path System Hacking
This Path is for beginners in Windows userland system hacking. Learn the structure and security features of Windows, explore attack techniques, and build practical skills in vulnerability discovery and exploitation.
Windows System Hacking
8.0
(2)
Tier 4 Medium Skill Path System Hacking
This Path is for beginners in Windows userland system hacking. Learn the structure and security features of Windows, explore attack techniques, and build practical skills in vulnerability discovery and exploitation.
0% Completed Total 0 completed
Lecture 0 /28
28
Wargame 0 /2
2
Quiz 0 /1
1
You can access locked objectives by upgrading your plan or purchasing the units separately.
The Lab is a practice and is not included in the overall progress.

Why It's Worth Your Time

Windows is one of the most widely used operating systems globally, spanning everything from enterprise servers to personal PCs. Due to its broad adoption, security vulnerabilities in Windows environments present high-value targets for real-world attacks, and threats leveraging these weaknesses continue to grow.
Understanding the architecture and internal workings of Windows systems—and learning techniques to bypass built-in security mechanisms—is essential for developing practical hacking and security analysis skills.
This Skill Path is hands-on and allows learners to follow real exploit flows and analysis steps. It lays a strong foundation for understanding userland vulnerabilities and exploitation techniques in Windows environments. This Skill Path will be updated with additional Units as needed.

Topics Covered

  • Understanding the Windows execution environment and system architecture
  • Studying protection mechanisms such as DEP, ASLR, and GS
  • Learning common userland exploit technique like ROP and SEH Overwrite
  • Learning techniques to bypass Control Flow Guard (CFG)
  • Exploring attacks using Windows libraries
  • Analyzing and exploiting the Windows heap

Recommended For

  • Those who want to learn Windows hacking techniques from the ground up
  • Learners with Linux-based hacking experience looking to expand into Windows systems
  • Beginners in Windows system hacking and security who want to practice exploit writing and bypass techniques through hands-on exercises

Prerequisite Knowledge

  • Completion of the System Hacking Path or equivalent experience
  • Completion of the Reverse Engineering Path or equivalent experience
  • Ability to use Visual Studio Code and IDA
Unit Composition
Total 9 units
  1. 1
    9.8
    (36)
    Learn how to set up an environment for Windows system hacking.
    Environment Setting
    Environment Setup
    Tools
    Tools
  2. 2
    10.0
    (20)
    100 Coin
    10.0
    (20)
    100 Coin
    Learn how to use WinDbg, the representative debugger for Windows.
    Getting Started with WinDbg
    Getting Started with WinDbg
    [Exercise] WinDbg
    Exercise: WinDbg
    WinDbg Exercise 1
    WinDbg Commands
    WinDbg Commands
    Quiz: WinDbg
    [Exercise] WinDbg-2
    Exercise: WinDbg-2
    WinDbg Exercise 2
  3. 3
    200 Coin
    9.3
    (15)
    200 Coin
    Learn Windows PE file structure and basic mitigations.
    Windows Operating System and PE File
    Windows Operating System and PE File Structure
    PEview
    Basic Mitigations
    DEP & ASLR
    GS
  4. 4
    9.9
    (12)
    300 Coin
    9.9
    (12)
    300 Coin
    Learn Windows shellcoding techniques.
    Windows Shellcoding
    Windows Shellcoding
    Exercise Windows Shellcoding
    Windows x64 Shellcoding
  5. 5
    9.3
    (10)
    400 Coin
    9.3
    (10)
    400 Coin
    Learn Return-Oriented Programming (ROP) attack techniques in the Windows environment.
    Windows ROP
    Windows ROP
    Windows ROP with GS
    Windows ROP with GS
    함께 실습: Windows x64 ROP with GS
    Hands-on Practice: Windows x64 ROP with GS
  6. 6
    8.8
    (8)
    500 Coin
    8.8
    (8)
    500 Coin
    Learn the structure and exploitation methods of Structured Exception Handling (SEH) in the Windows operating system.
    Windows SEH
    Windows SEH
    Windows SEH with GS
    Windows SEH with GS
    Windows SafeSEH & SEHOP
    Windows SafeSEH & SEHOP
    함께 실습: SafeSEHOP
    Practice Together: SafeSEHOP
  7. 7
    9.4
    (10)
    200 Coin
    9.4
    (10)
    200 Coin
    Learn Control Flow Guard (CFG), one of Windows' protection techniques, and methods to bypass it.
    Windows CFG structure
    Learn the Structure of Windows CFG
    Windows CFG Bypass
    Windows CFG Bypass
  8. 8
    8.7
    (9)
    400 Coin
    8.7
    (9)
    400 Coin
    Learn the protection techniques applied to modules used in Windows and the functions that can be used for exploitation.
    Windows Module Mitigations
    Windows Module Mitigation
    Windows Module Exploit
    Windows Module Exploit - ntdll
    Windows Module Exploit - ucrtbase
  9. 9
    6.0
    (1)
    6.0
    (1)
    Learn about the structure of the Windows NT Heap and exploitation techniques.
    NT Heap
    Windows NT Heap
    NT Heap Exploit Technique
    Reuse Attack
    FreeList Corruption
    NewTrend Notability
    NewTrend Notability
Reviews
8.0 (2)
2 months ago

I bought the Expert subscription for this course, and l can say the only thing that pleasantly surprised me was the qwef script. I believe the course needs more practical exercises. The first half was stronger, but the quality declined toward the end, particularly in the NT Heap section. The final chapters felt extremely rushed and were more like a rushed CTF write-up than clear explanations.

1 year ago

첫 후기라니!! 영광입니다:) 한 1년쯤 전 포너블 공부를 시작했고 살짝 어느정도 질린? 상태였는데 윈도우 환경에 대해서도 배워보니 리프레시되고 자극되는 것 같아 너무 좋습니다. 아직 출시되지 않은 Unit도 있는데 그것들도 무조건 나오자마자 보도록 하겠습니다. 항상 수준높은 자료와 친절한 설명이 너무 좋은것 같습니다❤️❤️

0% Completed Total 0 completed
Lecture 0 /28
28
Wargame 0 /2
2
Quiz 0 /1
1
You can access locked objectives by upgrading your plan or purchasing the units separately.
The Lab is a practice and is not included in the overall progress.