SECCON 2018 Online CTF
63 challenges with 130 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 11 of them also carry the solution SECCON 2018 Online CTF’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised37
The upstream scoreboard did not say, so neither do we.
Hangul
2 official solutionsAlso written up in: yuawn/CTF, ssspeedgit00/CTF
Moxie Elf
2 official solutionsAlso written up in: mahham/ctf, mahham/ctf
Also written up in: vakzz/ctfs, vakzz/ctfs
Cross Gcc494
1 official solutionAlso written up in: mahham/ctf
Exploit1
1 official solutionAlso written up in: pietroferretti/ctf
Exploit2
1 official solutionAlso written up in: pietroferretti/ctf
Gacha
1 official solutionAlso written up in: pietroferretti/ctf
Lib Aarch64 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Arm Elf
1 official solutionAlso written up in: mahham/ctf
Lib Arm16 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Bfin Elf
1 official solutionAlso written up in: mahham/ctf
Lib Cr16 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Cris Elf
1 official solutionAlso written up in: mahham/ctf
Lib Frv Elf
1 official solutionAlso written up in: mahham/ctf
Lib H8300 Elf
1 official solutionAlso written up in: mahham/ctf
Lib M32c Elf
1 official solutionAlso written up in: mahham/ctf
Lib M32r Elf
1 official solutionAlso written up in: mahham/ctf
Lib Mcore Elf
1 official solutionAlso written up in: mahham/ctf
Lib Microblaze Elf
1 official solutionAlso written up in: mahham/ctf
Lib Mips Elf
1 official solutionAlso written up in: mahham/ctf
Lib Mips16 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Mn10300 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Msp430 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Powerpc Elf
1 official solutionAlso written up in: mahham/ctf
Lib Rl78 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Rx Elf
1 official solutionAlso written up in: mahham/ctf
Lib Sh64 Elf
1 official solutionAlso written up in: mahham/ctf
Lib Sparc Elf
1 official solutionAlso written up in: mahham/ctf
Lib V850 Elf
1 official solutionAlso written up in: mahham/ctf
Microblaze Elf
1 official solutionAlso written up in: mahham/ctf
Patch Gdb 7.12.1 Moxie Nodtb
1 official solutionAlso written up in: mahham/ctf
Also written up in: mahham/ctf
Seccon Ghostkingdom
1 official solutionAlso written up in: jesux/ctf-write-ups
Setup
1 official solutionAlso written up in: mahham/ctf
Spdev
1 official solutionAlso written up in: jaidTw/ctf-writeups
Spins
1 official solutionAlso written up in: jaidTw/ctf-writeups
Also written up in: mahham/ctf
Binary exploitation11
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Also written up in: sajjadium/ctf-writeups, sajjadium/CTFium, gavz/ctf-writeups, PDKT-Team/ctf, sajjadium/ctf-writeups, sajjadium/PersianCatsCTF, sajjadium/ctf-writeups, sajjadium/CTFium
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Also written up in: sajjadium/ctf-writeups, sajjadium/CTFium, shpik-kr/ctf, jaidTw/ctf-writeups, gavz/ctf-writeups, sajjadium/ctf-writeups, sajjadium/PersianCatsCTF, sajjadium/ctf-writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Also written up in: ch4rli3kop/WRITE-UP, PDKT-Team/ctf, ch4rli3kop/WRITE-UP
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py, poc.c
Also written up in: 0ops/ctfs, vakzz/ctfs
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: 0ops/ctfs, 0x01f/pwn_repo, b1gtang/writeups, bash-c/pwn_repo
Classic Pwn
3 official solutionsAlso written up in: PDKT-Team/ctf, tripoloski1337/writeup-ctf, rafiem/CTF
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.c, exploit.py
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Cryptography5
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Published by the organisers in SECCON/SECCON2018_online_CTF: src/sol/deploy.sh, src/sol/deploy.txt, src/sol/lv1/Gacha-abi.txt, src/sol/lv1/Gacha-bytecode.txt, src/sol/lv1/Gacha.sol, src/sol/lv1/GachaFactory-abi.txt, src/sol/lv1/GachaFactory-bytecode.txt, src/sol/lv1/GachaFactory.sol
Also written up in: jaidTw/ctf-writeups, PDKT-Team/ctf, PDKT-Team/ctf
- blockchain
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: jaidTw/ctf-writeups
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- ethereum
- blockchain
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- ethereum
- blockchain
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Reverse engineering4
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: PDKT-Team/ctf
- re
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: jaidTw/ctf-writeups
- re
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: PDKT-Team/ctf
- apk
- re
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- re
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Web2
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Also written up in: w181496/CTF, PDKT-Team/ctf, PDKT-Team/ctf
- web
- rev
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: w181496/CTF, jesux/ctf-write-ups, jesux/ctf-write-ups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Forensics2
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Published by the organisers in SECCON/SECCON2018_online_CTF: exploit.py
Also written up in: PDKT-Team/ctf
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Also written up in: jaidTw/ctf-writeups, PDKT-Team/ctf
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Misc2
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
- misc
- media
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- qr
Same technique in picoCTF: PW Crack 2, Permissions, Specialer