Google Capture The Flag 2018 (Finals)
31 challenges with 35 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 5 of them also carry the solution Google Capture The Flag 2018 (Finals)’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised8
The upstream scoreboard did not say, so neither do we.
Published by the organisers in google/google-ctf: exploit/main.js, exploit/server.py, exploit/service_worker.js
Also written up in: sixstars/ctf, sixstars/CTF
Published by the organisers in google/google-ctf: challenge/exploit/doit.js, challenge/exploit/find_gadgets.py
Code1
1 official solutionAlso written up in: qwaz/solved-hacking-problem
Code1 Modified
1 official solutionAlso written up in: qwaz/solved-hacking-problem
Also written up in: qwaz/solved-hacking-problem
Published by the organisers in google/google-ctf: src/solution/solution.go
Softmagic
1 official solutionAlso written up in: qwaz/solved-hacking-problem
Reverse engineering7
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
- assembly
- pwn
- info-leak
- web
Same technique in picoCTF: Easy as GDB, GDB baby step 1, Forky
Also written up in: qwaz/solved-hacking-problem
- language
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- game
- jail
- reversing
- drm
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- language
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- language
- optimization
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- assembly
- reversing
Same technique in picoCTF: Forky, reverse_cipher, Easy as GDB
- assembly
- optimization
- reversing
Same technique in picoCTF: Forky, reverse_cipher, Easy as GDB
Misc6
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Also written up in: yannayl/ctf-writeups
- tcp
- proxy
- keys
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in google/google-ctf: solution.py
- language
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- keys
- lockpicking
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- embedded
- hardware
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- embedded
- hardware
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- info-leak
- youtube
- dsp
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Binary exploitation4
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: shift-crops/CTFWriteups, shift-crops/CTFWriteups
- mitigation
- jail
- sandbox
- pwn
- info-leak
- web
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in google/google-ctf: exploit/sc_to_arr.py
- javascript
- optimization
- pwn
- chrome
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
- pwn
- sandbox
- jail
- chrome
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
- mitigation
- info-leak
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Cryptography3
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
- embedded
- hardware
- crypto
- reversing
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- keys
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- keys
- crypto
- math
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Web3
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
- javascript
- web
- sandbox
Same technique in picoCTF: Live Art, secure-email-service, Java Code Analysis!?!
- javascript
- web
- reversing
Same technique in picoCTF: Java Code Analysis!?!, Live Art, secure-email-service
- language
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA