justCTF 2024 teaser
29 challenges with 89 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 14 of them also carry the solution justCTF 2024 teaser’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised10
The upstream scoreboard did not say, so neither do we.
Published by the organisers in justcatthefish/justctf-2024: private/solver/sol.py, private/solver/solve-pwntools.py, private/solver/solve.py
Q3vm Exploit
3 official solutionsAlso written up in: TeamAustria/writeups, TeamAustria/writeups, TeamAustria/writeups
Published by the organisers in justcatthefish/justctf-2024: private/private/solver/solve.py, private/private/solver/solve.sh, private/solve.sh
Published by the organisers in justcatthefish/justctf-2024: private/solver/run.sh, private/solver/solve.py
Published by the organisers in justcatthefish/justctf-2024: private/README.md, private/solver/solve.py
Letters
1 official solutionAlso written up in: Arc-blroth/ctf-writeups
Published by the organisers in justcatthefish/justctf-2024: private/private/solver.py
Published by the organisers in justcatthefish/justctf-2024: private/solve.sh
The Dark Brotterhood
1 official solutionAlso written up in: TeamAustria/writeups
Published by the organisers in justcatthefish/justctf-2024: private/private/solver/solve.py
Misc5
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Published by the organisers in justcatthefish/justctf-2024: private/private/solve/solve.txt, private/private/solve/widevine_keys/README.md, private/private/solve/destdir/keys.txt, private/private/solve/destdir/pssh.txt, private/private/solve/widevine_keys/getPSSH.py, private/private/solve/widevine_keys/headers.py, private/private/solve/widevine_keys/l3.py, private/private/solve/widevine_keys/wvdecryptcustom.py
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: Diff-fusion/writeups, n4nika/writeups, TeamAustria/writeups
- blockchain
Same technique in picoCTF: Reentrance, Smart_Overflow, Access_Control
Also written up in: Diff-fusion/writeups, n4nika/writeups, TeamAustria/writeups
- blockchain
Same technique in picoCTF: Reentrance, Smart_Overflow, Access_Control
Also written up in: Diff-fusion/writeups, n4nika/writeups
- blockchain
Same technique in picoCTF: Reentrance, Smart_Overflow, Access_Control
Also written up in: msanft/writeups, TeamAustria/writeups, tranminhprvt01/CTF-writeups
- ppc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Web4
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Published by the organisers in justcatthefish/justctf-2024: private/solver/README.md, private/solver/pwn.js, private/solver/pwn.py
Also written up in: Aryt3/writeups, TeamAustria/writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Published by the organisers in justcatthefish/justctf-2024: private/private/solution/README.md, private/README.md
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: TeamAustria/writeups
- misc
- web
- json
- collision
Same technique in picoCTF: Live Art, secure-email-service, No FA
Piggy
3 official solutionsAlso written up in: siunam321/CTF-Writeups, Aryt3/writeups, TeamAustria/writeups
Cryptography3
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Published by the organisers in justcatthefish/justctf-2024: private/solver/solve.py
Also written up in: MathVerg/WriteUp, TeamAustria/writeups, MathVerg/WriteUp
- hash-collision
- crypto
Same technique in picoCTF: Guess My Cheese (Part 2), hashcrack, It's Not My Fault 2
Also written up in: tvdat20004/CTF_write-up, maelhos/WriteUps, tranminhprvt01/CTF-writeups, tranminhprvt01/CTF-writeups, wblazej/ctf-writeups
Cryptographing
3 official solutionsAlso written up in: TeamAustria/writeups, tvdat20004/CTF_write-up, tranminhprvt01/CTF-writeups
Binary exploitation3
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Published by the organisers in justcatthefish/justctf-2024: private/solver/run.sh, private/solver/solve.py
Also written up in: maelhos/WriteUps, TeamAustria/writeups, maelhos/WriteUps
- pwn
- crypto
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in justcatthefish/justctf-2024: private/solver/solver.py
Also written up in: msanft/writeups, TeamAustria/writeups
- pwn
- misc
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in justcatthefish/justctf-2024: private/private/solver/q3vm.py, private/private/solver/solve.py, private/private/solver/solve.sh, private/solve.sh
Also written up in: TeamAustria/writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Reverse engineering2
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
- re
- misc
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: TeamAustria/writeups
- re
- misc
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Forensics2
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Budget SoC
5 writeupsAlso written up in: msanft/writeups, TeamAustria/writeups
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Also written up in: msanft/writeups
- forensics
- misc
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r