UTCTF 2023
24 challenges with 43 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 6 of them also carry the solution UTCTF 2023’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised11
The upstream scoreboard did not say, so neither do we.
Really Looks Wrong tom E
2 official solutionsAlso written up in: atuc17/CTF, atuc17/CTF
Sandbox
2 official solutionsAlso written up in: bochmkrzysztof/ctf-writeups, bochmkrzysztof/ctf-writeups
A Tribute To Bataille
1 official solutionAlso written up in: RiceSec/writeups
Affinity
1 official solutionAlso written up in: atuc17/CTF
Published by the organisers in utisss/UTCTF-23: exploit.py
Published by the organisers in utisss/UTCTF-23: solve.py
Looks Wrong tom E
1 official solutionAlso written up in: atuc17/CTF
Medium Volatility
1 official solutionAlso written up in: RiceSec/writeups
Provably Insecure
1 official solutionAlso written up in: atuc17/CTF
Redacted Text
1 official solutionAlso written up in: solocshaw/yet-another-ctf-writeups
Utctf Adventure Rom 5
1 official solutionAlso written up in: solocshaw/yet-another-ctf-writeups
Binary exploitation4
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: nobodyisnobody/write-ups, MUWASEC/ctf-writeups, MUWASEC/ctf-writeups
- vm-escape
- sandbox
- pwn
- unicorn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in utisss/UTCTF-23: solution.py
Also written up in: nobodyisnobody/write-ups
- pwn
- loongarch
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: nobodyisnobody/write-ups
Working.Exploit
1 official solutionAlso written up in: nobodyisnobody/write-ups
Forensics3
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Also written up in: sekai.team
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
A Network Problem - Part 2
1 writeupAlso written up in: daffainfo/ctf-writeup
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
A Network Problem - Part 1
1 writeupSame technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Misc3
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
Published by the organisers in utisss/UTCTF-23: solution.py
Also written up in: MUWASEC/ctf-writeups, bochmkrzysztof/ctf-writeups, bochmkrzysztof/ctf-writeups, MUWASEC/ctf-writeups
- fsb
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Published by the organisers in utisss/UTCTF-23: exploit.py
Also written up in: RiceSec/writeups, cataliniuga/Writeups, sekai.team
- misc
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Reading List
1 writeupAlso written up in: daffainfo/ctf-writeup, solocshaw/yet-another-ctf-writeups
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
Web2
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
- python-jail
- web
- random
- pyjail
Same technique in picoCTF: secure-email-service, Live Art, No FA
Published by the organisers in utisss/UTCTF-23: solution.js
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Reverse engineering1
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Welcome
1 official solutionAlso written up in: ret2school.github.io