CWEE
HackTheBox

HTB Certified Web Exploitation Expert

Expert Advanced practical web exploitation exam + report Pass: Report/objective quality based; exact threshold n… $210

CWEE is an advanced practical web exploitation certification aimed at complex vulnerability chains in modern stacks. A 2026-ready plan emphasizes deep app logic review, exploit reliability, and concise remediation guidance.

Official Page
IssuerHackTheBox
FormatAdvanced practical web exploitation exam + report
DurationUp to 10 days (indicative)
Pass ScoreReport/objective quality based; exact threshold n…
Prerequisites
Recommended: HTTP/HTTPS fundamentals, web app architecture basics, JavaScript familiarity, and hands-on exposure to OWASP Top 10 style issues.
Syllabus Overview

5 exam domains — click "Syllabus" tab for full breakdown

Web Recon & Attack Surface Mapping 20%
Input Validation & Injection 25%
Authentication, Session & Access Control 25%
Business Logic & Modern Web Risks 15%
Reporting & Patch Verification 15%