SwampCTF 2025
40 challenges with 92 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not.
Full task list on CTFtimeWeb14
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Also written up in: V1rg1lee/writeups, MaaSecLab/CTF-Writeups, DavideCaldirola/CTF-Writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: V1rg1lee/writeups, akmlalff/CTF-Writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: V1rg1lee/writeups, MaaSecLab/CTF-Writeups
- web
- swampctf
Same technique in picoCTF: Live Art, secure-email-service, No FA
MaybeHappyEndingGPT
2 official solutionsAlso written up in: V1rg1lee/writeups, FrostSpades/ctf-writeups
SlowAPI
2 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, FrostSpades/ctf-writeups
Sunset Boulevard
2 official solutionsAlso written up in: V1rg1lee/writeups, MaaSecLab/CTF-Writeups
Also written up in: V1rg1lee/writeups, MaaSecLab/CTF-Writeups
Serialise
1 official solutionAlso written up in: akmlalff/CTF-Writeups
SwampCTF 2025 Web Beginner Web
1 official solutionAlso written up in: pudding483/CTF-Writeup
SwampCTF 2025 Web Contamination
1 official solutionAlso written up in: pudding483/CTF-Writeup
SwampCTF 2025 Web Editor
1 official solutionAlso written up in: pudding483/CTF-Writeup
SwampCTF 2025 Web Hidden Message Board
1 official solutionAlso written up in: pudding483/CTF-Writeup
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Forensics7
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Preferential Treatment
5 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, DavideCaldirola/CTF-Writeups, Nerumir/writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
MuddyWater
4 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, DavideCaldirola/CTF-Writeups, Nerumir/writeups, FrostSpades/ctf-writeups
Homework Help
3 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
Planetary Storage
3 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
Proto Proto
2 official solutionsAlso written up in: Nerumir/writeups, FrostSpades/ctf-writeups
Sendudpserver
1 official solutionAlso written up in: imAcni/CTF-Stuff
SwampCTF 2025 forensic
1 official solutionAlso written up in: jstQHuy/WRITEUP-CTF
Binary exploitation5
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: rerrorctf/writeups, DavideCaldirola/CTF-Writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
Also written up in: rerrorctf/writeups, akmlalff/CTF-Writeups, FrostSpades/ctf-writeups
Oh my buffer
3 official solutionsAlso written up in: rerrorctf/writeups, FrostSpades/ctf-writeups, NTUT-Is1ab/CTF-Repository
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Ret2win
1 official solutionAlso written up in: imAcni/CTF-Stuff
Cryptography4
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Also written up in: rerrorctf/writeups, DavideCaldirola/CTF-Writeups, akmlalff/CTF-Writeups
- cryptography
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: rerrorctf/writeups, rerrorctf/writeups, rerrorctf/writeups
Intercepted communications
2 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, Nerumir/writeups
SongCipher
1 official solutionAlso written up in: MaaSecLab/CTF-Writeups
Reverse engineering4
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: FrostSpades/ctf-writeups
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Midi Melody
1 official solutionAlso written up in: MaaSecLab/CTF-Writeups
You Shall Not Passss
1 official solutionAlso written up in: MaaSecLab/CTF-Writeups
You Should Not Pass
1 official solutionAlso written up in: Jenusdy/ctf-writeups
OSINT2
Answer a question about the real world from public sources. The work is pivoting between identifiers, not exploiting anything.
Also written up in: MaaSecLab/CTF-Writeups, Nerumir/writeups, akmlalff/CTF-Writeups
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
Party Time! Level 2
2 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, akmlalff/CTF-Writeups
Uncategorised2
The upstream scoreboard did not say, so neither do we.
Also written up in: yPin9/CTF-Writeup
Also written up in: yPin9/CTF-Writeup
Misc2
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Pretty Picture Double Exposure
2 official solutionsAlso written up in: MaaSecLab/CTF-Writeups, akmlalff/CTF-Writeups
Lost In Translation
1 official solutionAlso written up in: MaaSecLab/CTF-Writeups