Aero CTF 2020
46 challenges with 113 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not.
Full task list on CTFtimeUncategorised15
The upstream scoreboard did not say, so neither do we.
Nav Journal
3 official solutionsAlso written up in: synod2/Aero-CTF-2020, smallkirby/pwn-writeups, jt00000/ctf.writeup
Crasher
1 official solutionAlso written up in: smallkirby/pwn-writeups
Crypto100
1 official solutionAlso written up in: IRS-Cybersec/ctfdump
Drawing
1 official solutionAlso written up in: TFNS/writeups
Drawings on the walls+Letter from the madhouse
1 official solutionAlso written up in: ShingekiNoChikungunya/write-ups
Elderly
1 official solutionAlso written up in: TFNS/writeups
Magic
1 official solutionAlso written up in: TFNS/writeups
Also written up in: IRS-Cybersec/ctfdump
Mental Beginning
1 official solutionAlso written up in: TFNS/writeups
Mental Orderlies
1 official solutionAlso written up in: TFNS/writeups
Also written up in: jt00000/ctf.writeup
Passkeeper
1 official solutionAlso written up in: smallkirby/pwn-writeups
Plane
1 official solutionAlso written up in: jt00000/ctf.writeup
Shell Me
1 official solutionAlso written up in: TFNS/writeups
Ticket
1 official solutionAlso written up in: jt00000/ctf.writeup
Reverse engineering12
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: r4k0nb4k0n/CTF-Writeups
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: ShingekiNoChikungunya/write-ups, flagbot.ch
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- reverse
- engineering
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: ret2school.github.io
- rev
- crypto
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- rev
- warmup
- pic
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: ironore15/ctf
- arm32
- engineering
- reverse
Same technique in picoCTF: ARMssembly 0, ARMssembly 1, ARMssembly 2
100 And 1 Night
1 official solutionAlso written up in: tripoloski1337/writeup-ctf
And 1 Night
1 official solutionAlso written up in: ret2school.github.io
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- pic
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Binary exploitation7
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: TFNS/writeups, synod2/Aero-CTF-2020, smallkirby/pwn-writeups, meowmeowxw.gitlab.io, cesena.github.io
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: TFNS/writeups, smallkirby/pwn-writeups, ironore15/ctf
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: TFNS/writeups, ironore15/ctf
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: TFNS/writeups, ironore15/ctf
- pwn
- file_structure
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: TFNS/writeups
- pwn
- io_file_struct
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: r4k0nb4k0n/CTF-Writeups, synod2/Aero-CTF-2020, synod2/Aero-CTF-2020
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Misc5
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Also written up in: TFNS/writeups
- warmup
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- code
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- code
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- code
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- code
- fft
- spectrogram
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Forensics4
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Drawings on the walls volken
1 official solutionAlso written up in: SinHackTeam/writeup
- forensic
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Cryptography3
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Also written up in: oalieno/CTF, OAlienO/CTF, oalieno/CTF, OAlienO/CTF
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: oalieno/CTF, YoungseokCh/ctf-solves, OAlienO/CTF, oalieno/CTF, OAlienO/CTF
- aes-ecb
- crypto
Same technique in picoCTF: AES-ABC, Compress and Attack, cryptomaze
- rng
- crypto
- lll
- lwe
- babai
- lattice
- z3
Same technique in picoCTF: MSS_ADVANCE Revenge, Not TRUe, It's Not My Fault 2