2020from public repositories
Dekra Ctf 2020
4 challenges with 4 published solutions between them. The writeups for this event were found in public repositories. Each link is pinned to the commit it was read from.
Where these writeups liveWeb3
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Solve it with:JWT decoder and signature verifierJWT alg=none bypass generatorWeb attack payload catalogJWT secret brute forceLearn: Sessions, tokens and access control
Flask Ohhh
1 official solutionAlso written up in: devploit/ctf-writeups
HiddenCode
1 official solutionAlso written up in: devploit/ctf-writeups
SideChannelPortal
1 official solutionAlso written up in: devploit/ctf-writeups
Uncategorised1
The upstream scoreboard did not say, so neither do we.
Also written up in: devploit/ctf-writeups