Google Capture The Flag 2017 (Quals)
37 challenges with 77 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 12 of them also carry the solution Google Capture The Flag 2017 (Quals)’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised15
The upstream scoreboard did not say, so neither do we.
Published by the organisers in google/google-ctf: solver/src/decrypt.rs, solver/src/encrypt.rs, solver/src/fast_kex.rs, solver/src/kex.rs, solver/src/keygen.rs
Published by the organisers in google/google-ctf: solution/all_solutions.txt, solution/solver.sage
Backdoor
2 official solutionsAlso written up in: fztfztfztfzt/CTF-writeup, fztfztfztfzt/CTF-writeup
Pwn474 Primary
2 official solutionsAlso written up in: david942j.blogspot.tw, david942j.blogspot.com
Published by the organisers in google/google-ctf: solver.sage
Published by the organisers in google/google-ctf: solution.py
Published by the organisers in google/google-ctf: challenge/src/solve.rs
Published by the organisers in google/google-ctf: solution.js
Published by the organisers in google/google-ctf: sols/sol.py
Published by the organisers in google/google-ctf: challenge/exploit.py
Published by the organisers in google/google-ctf: solution/doit.py
Published by the organisers in google/google-ctf: src/solution/solution.py
Published by the organisers in google/google-ctf: sol/sol.c
Published by the organisers in google/google-ctf: app/solution.js
BLT (Bleichenbacher’s Lattice Task Insanity Check)
1 official solutionAlso written up in: mslc.ctf.su
Web6
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Also written up in: simply-TOOBASED/ctf-writeups, DDOS-Attacks/ctf-writeups
- session
- xss
- web
Same technique in picoCTF: Live Art, secure-email-service, msfroggenerator2
Same technique in picoCTF: Live Art, secure-email-service, No FA
Kapi Note
2 official solutionsAlso written up in: zionspike/ctf-writeup, zionspike/ctf-writeup
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- web
- xss
Same technique in picoCTF: Live Art, secure-email-service, msfroggenerator2
- web
- python
- crypto
- miscellaneous
Same technique in picoCTF: Live Art, secure-email-service, No FA
Misc6
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Also written up in: simply-TOOBASED/ctf-writeups, DDOS-Attacks/ctf-writeups
- miscellaneous
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
AbsActionBarView
2 official solutionsAlso written up in: simply-TOOBASED/ctf-writeups, DDOS-Attacks/ctf-writeups
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Introspective CRC
1 writeup- crc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- coding
- miscellaneous
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Reverse engineering4
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: simply-TOOBASED/ctf-writeups, DDOS-Attacks/ctf-writeups
- re
- android
- fibonacci
- vm
- reverse
- hailstone
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: hxp.io, hxp.io
- reverse
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- reverse
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Binary exploitation3
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: integeruser/on-pwning, secgroup.github.io
- exploit
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: Caesurus/CTF_Writeups, Caesurus/CTF_Writeups
- exploit
- pwn
- pwnable
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: david942j/ctf-writeups, tools_col/ctf-writeups
- race-condition
- pwnable
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Cryptography2
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
- cubeing
- crypto
- rubik
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
RSA CTF Challenge
2 writeupsSame technique in picoCTF: It's Not My Fault 2, StegoRSA, john_pollard
Forensics1
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
- pcap
- protobuf
- reverse
Same technique in picoCTF: FindAndOpen, Ph4nt0m 1ntrud3r, WebNet0