Google Capture The Flag 2021
76 challenges with 181 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 14 of them also carry the solution Google Capture The Flag 2021’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised31
The upstream scoreboard did not say, so neither do we.
Published by the organisers in google/google-ctf: challenge/solution/common.h, challenge/solution/device.h, challenge/solution/driver.c, challenge/solution/extract_raw.sh, challenge/solution/guest.c, challenge/solution/protocol.c, challenge/solution/protocol.h, challenge/solution/shellcode_second_stage.c
Published by the organisers in google/google-ctf: solution/alternate/build_public_hashes.cc, solution/alternate/gather_one_bit.cc, solution/alternate/hash_file.h, solution/alternate/output_reader.cc, solution/alternate/public_handling.h, solution/alternate/run.sh, solution/alternate/sha256.cpp, solution/alternate/sha256.h
Published by the organisers in google/google-ctf: exploit/README.md, exploit/build_exploit.py, exploit/fuzzer_new.py, exploit/fuzzer_old.py, exploit/fuzzer.py
Beginners Quest
2 official solutionsAlso written up in: CosminHorjea/ctf-writeups, huy-dai/CTF-Writeups
Also written up in: HexRabbit/CTF-writeup, HexRabbit/CTF-writeup
Published by the organisers in google/google-ctf: src/solver.py
Also written up in: osogi/writeups
Polymorph
2 official solutionsAlso written up in: justcatthefish/ctf-writeups, justcatthefish/ctf
README en
2 official solutionsAlso written up in: w181496/CTF, w181496/CTF
Also written up in: st424204/ctf_practice, st424204/ctf_practice
Published by the organisers in google/google-ctf: solution/README.md, solution/poc.py
2021 07 18 Pythia
1 official solutionAlso written up in: xtla/writeups
2021 07 18 Story
1 official solutionAlso written up in: xtla/writeups
Also written up in: qwaz/solved-hacking-problem
Also written up in: cscosu/ctf-writeups
Decrypt
1 official solutionAlso written up in: theoremoon/writeups
Also written up in: mephi42/ctf
Format
1 official solutionAlso written up in: Jinmo/ctfs
Published by the organisers in google/google-ctf: solution.sage
ICANTBELIEVITSNOTCRYPTO
1 official solutionAlso written up in: yannayl/ctf-writeups
Also written up in: StrixSC/ctf
Letschat
1 official solutionAlso written up in: w181496/CTF
Published by the organisers in google/google-ctf: solution/sol.py
Perform Logic Op
1 official solutionAlso written up in: jguzman-tech/google-ctf-2021-solutions
Also written up in: theoremoon/writeups
Russian Ver
1 official solutionAlso written up in: osogi/writeups
Script
1 official solutionAlso written up in: nguyenguyen753/WriteUp-CTF
Service
1 official solutionAlso written up in: atuc17/CTF
V02 Build
1 official solutionAlso written up in: mephi42/ctf
V02 Pwnit
1 official solutionAlso written up in: mephi42/ctf
Also written up in: bitterbit/ctf
Published by the organisers in google/google-ctf: README.md
Binary exploitation12
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups, TheMaccabees/ctf-writeups
- shellcode
- misc
Same technique in picoCTF: handoff, Binary Gauntlet 2, Kit Engine
Published by the organisers in google/google-ctf: challenge/exploit/Exploit.java, challenge/exploit/exploit.py
Also written up in: Super-Guesser/ctf, Super-Guesser/ctf, Super-Guesser/ctf
- pwn
- android
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in google/google-ctf: challenge/solve.py
Also written up in: Lanph3re/ctf, Ewael/CTFs
- canary
- bof
- relro
- pie
- stack
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo
- linux
- kernel
- pwn
- bpf
Same technique in picoCTF: hijacking, VNE, lockdown-horses
Also written up in: st424204/ctf_practice, ret2.life
- v8
- chromium
- kernel
- sandbox
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: HackerQacker/ctf-writeups, OmerYe/ctf-writeups
- pwn
- soundness
- rust
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: sajjadium/ctf-archives, qwaz/solved-hacking-problem, mephi42/ctf
Decryptor.Mojom
1 official solutionAlso written up in: sajjadium/ctf-archives
Mojo Bindings
1 official solutionAlso written up in: sajjadium/ctf-archives
Run Chromium
1 official solutionAlso written up in: sajjadium/ctf-archives
Run Qemu
1 official solutionAlso written up in: sajjadium/ctf-archives
Turbozipfile
1 official solutionAlso written up in: sajjadium/ctf-archives
Cryptography11
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Also written up in: rkm0959/CTFWriteups, cscosu/ctf-writeups, epicleet/write-ups, qwaz/solved-hacking-problem, cscosu/ctf-writeups, deut-erium/WriteUps, atuc17/CTF, epicleet/write-ups
- oracle
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Published by the organisers in google/google-ctf: src/solver.py
Also written up in: rkm0959/CTFWriteups, theoremoon/writeups
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Server
5 official solutionsAlso written up in: sajjadium/ctf-archives, qwaz/solved-hacking-problem, cscosu/ctf-writeups, deut-erium/WriteUps, epicleet/write-ups
Also written up in: qwaz/solved-hacking-problem
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: qwaz/solved-hacking-problem
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- oracle
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Chall
2 official solutionsAlso written up in: sajjadium/ctf-archives, theoremoon/writeups
Challenge.Pb
2 official solutionsAlso written up in: sajjadium/ctf-archives, qwaz/solved-hacking-problem
2021 07 21 Google Ctf 2021 Pythia
1 official solutionAlso written up in: deut-erium/WriteUps
Challenger
1 official solutionAlso written up in: sajjadium/ctf-archives
I can't believe it's not crypto (314pts 17 solves)
1 official solutionAlso written up in: ctf.harrisongreen.me
Misc9
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Published by the organisers in google/google-ctf: challenge/solver.py
Also written up in: cscosu/ctf-writeups, K1nd4SUS/CTF-Writeups, Jump2Flag/write-ups, lightz96/ctf-writeups, m0rphtail/CTF-WriteUps, cscosu/ctf-writeups, Jump2Flag/write-ups, ctf.zeyu2001.com, www.proggen.org
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: beepboop271/ctf-writeups-solutions, luker983/google-ctf-2021, beepboop271/ctf-writeups-solutions, luker983/google-ctf-2021
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: EvilBunnyWrote/Write-ups
- misc
- raid5
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: p4-team/ctf
- hardware
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- hardware
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Quest 2
1 official solutionAlso written up in: 0xL30N3/Writeups
Quest 3
1 official solutionAlso written up in: 0xL30N3/Writeups
Shaks12
1 official solutionAlso written up in: EvilBunnyWrote/Write-ups
Web8
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Published by the organisers in google/google-ctf: solution/README.md, solution/solve.go
Also written up in: luker983/google-ctf-2021, luker983/google-ctf-2021
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
2019 08 19 000000 Create Failed Jobs Table
2 official solutionsAlso written up in: sajjadium/ctf-archives, sajjadium/ctf-archives
Also written up in: w181496/CTF
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
2021 07 06 003846 Create Sessions Table
1 official solutionAlso written up in: sajjadium/ctf-archives
2021 07 06 031026 Create Sessions Table
1 official solutionAlso written up in: sajjadium/ctf-archives
Client
1 official solutionAlso written up in: luker983/google-ctf-2021
Also written up in: sajjadium/ctf-archives
- web
- side-channel
Same technique in picoCTF: paper-2, Live Art, secure-email-service
Reverse engineering5
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Published by the organisers in google/google-ctf: challenge/solver.py
Also written up in: cscosu/ctf-writeups, nguyenguyen753/WriteUp-CTF, beepboop271/ctf-writeups-solutions, cscosu/ctf-writeups, beepboop271/ctf-writeups-solutions, ctf.zeyu2001.com
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: nguyenguyen753/WriteUp-CTF, bitterbit/ctf, www.pwndiary.com, pwnfirstsear.ch, pwndiary.com
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: Jinmo/ctfs, cscosu/ctf-writeups, cscosu/ctf-writeups
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- rev
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Quest 1
1 official solutionAlso written up in: 0xL30N3/Writeups