A repository of all the CTF challenges I have written for public events.
| Name | Category | Solves | Difficulty | Writeup | Keywords |
|---|---|---|---|---|---|
| ad-note | web | 2 | ★★★★★ | - | fetchLater quotas, frame counting, same-site leak |
| append-note | web | 8 | ★★★★★ | - | bfcache, xs-leak, CSRF |
| glotq | web | 166 | ★★☆☆☆ | - | JSON/YAML/XML polyglot, command injection |
| scrabasm | pwn | 105 | ★☆☆☆☆ | - | shellcoding, srand, golf |
| adventure | pwn | 80 | ★★★☆☆ | - | stack pivoting, PIE leak |
| Name | Category | Solves | Difficulty | Writeup | Keywords |
|---|---|---|---|---|---|
| gamedev | pwn | 108 | ★★★☆☆ | - | heap overflow, GOT overwrite |
| antisocial-media | web | 5 | ★★★★☆ | - | XSS, CSP bypass, cookie tossing |
| Name | Category | Solves | Difficulty | Writeup | Keywords |
|---|---|---|---|---|---|
| 52-card-monty | pwn | 200 | ★★☆☆☆ | - | ret2win, PIE, canary |
| ctf-wiki | web | 38 | ★★★☆☆ | - | XSS, SOP, SameSite=Lax |
| Name | Category | Solves | Difficulty | Writeup | Keywords |
|---|---|---|---|---|---|
| gatekeep | pwn | 529 | ★☆☆☆☆ | link | buffer overflow, /dev/urandom |
| my-chemical-romance | web | 104 | ★★☆☆☆ | link | source code disclosure, mercurial |