UIUCTF 2025
30 challenges with 70 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 20 of them also carry the solution UIUCTF 2025’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeMisc8
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Published by the organisers in sigpwny/UIUCTF-2025-Public: sol.py
Also written up in: trannghiach/ChapBaiSlayer-CTF-Writeups, DenseLance/ctf-challenges, atuc17/CTF, c240030/openArchiveCTF, DenseLance/ctf-challenges
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in sigpwny/UIUCTF-2025-Public: sol.py
Also written up in: DenseLance/ctf-challenges, atuc17/CTF, buidangduy05/ctf-writeups, DenseLance/ctf-challenges
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in sigpwny/UIUCTF-2025-Public: SOLUTION.md
Also written up in: MathVerg/WriteUp, a-p-n/CTF-solutions, MathVerg/WriteUp
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve.py
Also written up in: Nambers/ctf-writeups, Hope0351/CTF-collection
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in sigpwny/UIUCTF-2025-Public: SOLUTION.md, solve.py
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Also written up in: pawel-kojma/ctf-writeups
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Clippy
1 official solutionAlso written up in: bluuuk.github.io
Uncategorised5
The upstream scoreboard did not say, so neither do we.
Bootloader
2 official solutionsAlso written up in: Nambers/ctf-writeups, Hope0351/CTF-collection
Also written up in: Nambers/ctf-writeups, Hope0351/CTF-collection
Lua.efi
2 official solutionsAlso written up in: MathVerg/WriteUp, MathVerg/WriteUp
Also written up in: pawel-kojma/ctf-writeups
Gen Payload
1 official solutionAlso written up in: MathVerg/WriteUp
OSINT4
Answer a question about the real world from public sources. The work is pivoting between identifiers, not exploiting anything.
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/SOLVE.md
Also written up in: landoncrabtree/ctf-archive
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/SOLVE.md
Also written up in: landoncrabtree/ctf-archive
Cherryblossom
1 official solutionAlso written up in: landoncrabtree/ctf-archive
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/SOLVE.md
Reverse engineering4
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Published by the organisers in sigpwny/UIUCTF-2025-Public: SOLUTION.md
Also written up in: Nambers/ctf-writeups, Hope0351/CTF-collection
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve.py
Also written up in: landoncrabtree/ctf-archive
Published by the organisers in sigpwny/UIUCTF-2025-Public: sol.txt, solve.py
Published by the organisers in sigpwny/UIUCTF-2025-Public: solution.md
Web4
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/SOLVE.md, solve/solve.py
Also written up in: binneko/ctf-writeups, eihart123/CTF-and-Box-Writeups, landoncrabtree/ctf-archive, binneko/ctf-writeups
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/README.md
Also written up in: binneko/ctf-writeups, binneko/ctf-writeups
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/README.md, solve/solve.py
Published by the organisers in sigpwny/UIUCTF-2025-Public: solve/index.py
Binary exploitation3
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, blog.kittycar.online
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in sigpwny/UIUCTF-2025-Public: exploit.c, exploit.min.lua
Also written up in: Nambers/ctf-writeups, Hope0351/CTF-collection
Published by the organisers in sigpwny/UIUCTF-2025-Public: SOLUTION.md
Also written up in: binneko/ctf-writeups, binneko/ctf-writeups
Cryptography2
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Published by the organisers in sigpwny/UIUCTF-2025-Public: sol.py
Also written up in: trannghiach/ChapBaiSlayer-CTF-Writeups, DenseLance/ctf-challenges, atuc17/CTF, buidangduy05/ctf-writeups, c240030/openArchiveCTF, DenseLance/ctf-challenges
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Published by the organisers in sigpwny/UIUCTF-2025-Public: sol.py
Also written up in: DenseLance/ctf-challenges, buidangduy05/ctf-writeups, c240030/openArchiveCTF, DenseLance/ctf-challenges
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC