Skip to main content
eWPTv2 Exam Blueprint

Alex's Exam Readiness Map

A narrative-aligned blueprint showing how Alex threads reconnaissance, exploitation, and mitigation across the eWPTv2 subject matter. Jump straight into the modules that map to the exam's hands-on tasks.

Back to course hub

Curriculum Roadmap

Upcoming modules to round out eWPTv2 coverage while keeping Alex's story arc.

Planned & In Design

SSTI & Template Engines

Planned

Exploit Jinja2/Handlebars contexts, pivot to RCE, and recommend sandboxing + allowlists.

SSRF & Cloud Metadata

Planned

Target internal services, metadata endpoints, and hardened outbound egress paths.

GraphQL Deep Dive

In design

Schema reconnaissance, query batching abuse, and authorization bypass testing.

JWT/OAuth Validation

In design

kid header confusion, algorithm downgrade, nonce/state integrity, and token expiry hygiene.

Request Smuggling Labs

Planned

Practical CL.TE/TE.CL chains with cache poisoning follow-ups and mitigation patterns.

HTTPVerbs | Master Web Application Security