UIUCTF 2020
47 challenges with 120 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not.
Full task list on CTFtimeUncategorised10
The upstream scoreboard did not say, so neither do we.
Also written up in: goswami-rahul/ctf
Freaky File Descriptors
1 official solutionAlso written up in: nikosChalk/ctf-writeups
Getting Started
1 official solutionAlso written up in: nikosChalk/ctf-writeups
Kernel Exploitation
1 official solutionAlso written up in: D4nch3n/Cyber-Competitions
Kernel Memory Leak
1 official solutionAlso written up in: nikosChalk/ctf-writeups
Patch
1 official solutionAlso written up in: theoremoon/writeups
Payload
1 official solutionAlso written up in: schrislambert/personal_writeups
Spoockies
1 official solutionAlso written up in: A0su/CTF-Writeups
Syscalls
1 official solutionAlso written up in: nikosChalk/ctf-writeups
Zip Heck (350pts)
1 official solutionAlso written up in: ptomerty.xyz
Web7
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Also written up in: srikavin/ctf-writeups, b6a.black
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: SuperStormer/writeups, Eth007/CTF-Writeups, matdaneth/uiuctf-writeups, ranguli/writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: CTF-STeam/ctf-writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: SuperStormer/writeups, ranguli/writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: b6a.black
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: rpm0618/writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Binary exploitation6
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: nikosChalk/ctf-writeups, nikosChalk/ctf-writeups, nikosChalk/ctf-writeups, nikosChalk/ctf-writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: nikosChalk/ctf-writeups, Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
- kernel
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
- kernel
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: schrislambert/personal_writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: nikosChalk/ctf-writeups
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
OSINT6
Answer a question about the real world from public sources. The work is pivoting between identifiers, not exploiting anything.
Also written up in: srixivas/SecurityNuggets, Srinivas11789/SecurityNuggets
- warmup
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
Cryptography5
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Also written up in: kos0ng/ctf-writeups, SuperStormer/writeups, goswami-rahul/ctf
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: theoremoon/writeups
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: mystiz.hk, b6a.black
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Isabelle
1 official solutionAlso written up in: SuperStormer/writeups
Isabelles File Encrypt
1 official solutionAlso written up in: signifi3d/ctf-writeups
Forensics5
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Raymond's Recovery
4 official solutionsAlso written up in: Eth007/CTF-Writeups, srixivas/SecurityNuggets, matdaneth/uiuctf-writeups, Srinivas11789/SecurityNuggets
Also written up in: signifi3d/ctf-writeups
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Also written up in: poortho/ctf-writeups
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- warmup
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Reverse engineering4
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: signifi3d/ctf-writeups, signifi3d/ctf-writeups
- re
- x86
- reverse_engineering
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: kos0ng/ctf-writeups, rpm0618/writeups, theoremoon/writeups
- reverse_engineering
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- reverse_engineering
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
- reverse_engineering
- warmup
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Misc4
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Also written up in: Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
- survey
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: nikosChalk/ctf-writeups, Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: Eth007/CTF-Writeups, matdaneth/uiuctf-writeups
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: srixivas/SecurityNuggets, Srinivas11789/SecurityNuggets
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer