2020from public repositories
Osu Ctf Spring 2020
6 challenges with 6 published solutions between them. The writeups for this event were found in public repositories. Each link is pinned to the commit it was read from.
Where these writeups liveUncategorised3
The upstream scoreboard did not say, so neither do we.
Return
1 official solutionAlso written up in: qxxxb/ctf
Stacked
1 official solutionAlso written up in: qxxxb/ctf
Validator
1 official solutionAlso written up in: qxxxb/ctf
Web2
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Solve it with:JWT decoder and signature verifierJWT alg=none bypass generatorWeb attack payload catalogJWT secret brute forceLearn: Sessions, tokens and access control
Exhibit
1 official solutionAlso written up in: qxxxb/ctf
Nmap Output
1 official solutionAlso written up in: qxxxb/ctf
Cryptography1
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Solve it with:Cipher identifier and automatic decoderVigenere cipher solver with automatic key recoveryRSA decryption and attack runnerWiener’s attack on small RSA private exponentsIn-browser hash cracker with rule transformsLearn: Classical ciphers and frequency analysisLearn: RSA and the parameters that break it
Just Ask
1 official solutionAlso written up in: qxxxb/ctf