SunshineCTF 2017
21 challenges with 13 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 16 of them also carry the solution SunshineCTF 2017’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeCryptography4
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md, solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Misc4
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Also written up in: sikula/ctf_writeups_2017
- scripting
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: solution.py
Binary exploitation3
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md, exploit.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: readme.md
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
Reverse engineering3
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
Steganography3
Find the payload hidden inside a carrier that looks ordinary. Bit planes, appended data, metadata, and audio spectrograms.
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md, solution.py
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: README.md
Web2
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Forensics1
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Also written up in: sikula/ctf_writeups_2017
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Uncategorised1
The upstream scoreboard did not say, so neither do we.
Published by the organisers in SunshineCTF/SunshineCTF-2017-Public: SunshineCTF-ShirtChallenge_Solution.pdf