Skip to content
Every CTF
2025picoctfsolutions.compicoCTF

picoCTF 2025

41 challenges with 41 published solutions between them. Solution links go to picoctfsolutions.com, which is the only writeup source this index uses for picoCTF - one worked solution per challenge, rather than an aggregate of other people’s posts.

Every writeup on picoctfsolutions.com

Web11

Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.

    • command-injection
  • Apriti sesamo

    1 writeup
    • authentication-bypass
    • command-injection
  • Cookie Monster Secret Recipe

    1 writeup
    • cookie-manipulation
    • session-hijacking
  • head-dump

    1 writeup
    • endpoint-enumeration
    • http-headers
  • n0s4n1ty 1

    1 writeup
    • file-upload
    • command-injection
  • Pachinko

    1 writeup
    • javascript-deobfuscation
    • source-inspection
  • Pachinko Revisited

    1 writeup
    • javascript-deobfuscation
    • source-inspection
  • secure-email-service

    1 writeup
    • source-inspection
    • authentication-bypass
    • ssti
    • ssti
    • filter-bypass
  • WebSockFish

    1 writeup
    • websocket
    • source-inspection

Reverse engineering7

Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.

Cryptography6

Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.

  • ChaCha Slide

    1 writeup
    • stream-cipher
  • EVEN RSA CAN BE BROKEN???

    1 writeup
    • rsa
    • factoring
  • Guess My Cheese (Part 1)

    1 writeup
    • custom-cipher
    • classical-cipher
  • Guess My Cheese (Part 2)

    1 writeup
    • custom-cipher
    • classical-cipher
  • hashcrack

    1 writeup
    • hash-cracking
    • wordlist-generation
  • Ricochet

    1 writeup
    • custom-cipher

Binary exploitation6

Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.

Forensics6

Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.

  • Bitlocker-1

    1 writeup
    • disk-forensics
    • bitlocker
  • Bitlocker-2

    1 writeup
    • disk-forensics
    • bitlocker
  • Event-Viewing

    1 writeup
    • windows-event-logs
    • log-analysis
  • flags are stepic

    1 writeup
    • steganography
    • lsb-stego
  • Ph4nt0m 1ntrud3r

    1 writeup
    • steganography
    • image-analysis
    • steganography
    • lsb-stego

Misc5

Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.

Other 2025 events