WhiteHat Grand Prix 2018 – Quals
34 challenges with 108 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not.
Full task list on CTFtimeUncategorised19
The upstream scoreboard did not say, so neither do we.
Giftshop
3 official solutionsAlso written up in: phieulang1993/ctf-writeups, ch4rli3kop/WRITE-UP, ch4rli3kop/WRITE-UP
Misc01
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Also written up in: pwn2expoit/ctfwriteup, ujin5/ctfwriteup
Pwn02 Bookstore
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Pwn03 Onehit
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Also written up in: p4-team/ctf, p4-team/ctf
Rev01
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Rev04
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Rev05
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Rev06
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Also written up in: p4-team/ctf
Giftshop Pwn01
1 official solutionAlso written up in: phieulang1993/ctf-writeups
Also written up in: Vlad-tri/CTFs-WriteUps
Misc04 Crt
1 official solutionAlso written up in: kuqadk3/CTF-and-Learning
Misc04 Faces
1 official solutionAlso written up in: p4-team/ctf
Also written up in: zounathtan/ctf
Quals Web02 aka Pepe sadboiz (chưa hoàn thiện)
1 official solutionAlso written up in: movrment.blogspot.com
Web01 Original
1 official solutionAlso written up in: francescolonardo/CTF-Writeups-NLP-Analysis
whitehat2018 TenDollar
1 official solutionAlso written up in: shpik-kr/ctf
Binary exploitation5
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Also written up in: p4-team/ctf, sajjadium/ctf-writeups, sajjadium/CTFium, gavz/ctf-writeups, sajjadium/ctf-writeups, sajjadium/PersianCatsCTF, p4-team/ctf, sajjadium/ctf-writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Also written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Bookstore
2 official solutionsAlso written up in: j0nathanj/CTF-WriteUps, j0nathanj/CTF-WriteUps
Onehit
2 official solutionsAlso written up in: j0nathanj/CTF-WriteUps, j0nathanj/CTF-WriteUps
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Reverse engineering5
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Also written up in: p4-team/ctf, phieulang1993/ctf-writeups, Lev9L-Team/ctf, kuqadk3/CTF-and-Learning, r00tus3r/CTF-Scripts
- csharp
- reverse
- windows
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: p4-team/ctf, Vlad-tri/CTFs-WriteUps
- windows
- reverse
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: p4-team/ctf, Vlad-tri/CTFs-WriteUps
- reverse
- windows
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: p4-team/ctf
- windows
- reverse
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Also written up in: Vlad-tri/CTFs-WriteUps
- windows
- reverse
- anti-debug
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Cryptography3
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Also written up in: perfectblue/ctf-writeups, pberba/ctf-solutions, pberba/ctf-solutions, Lev9L-Team/ctf, rollsafe/ctf-writeups, Lev9L-Team/ctf, spearphisher/CTF-Solutions
- euler
- misc
- chinese-remainder
- math
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: p4-team/ctf, kuqadk3/CTF-and-Learning
- stega
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Also written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
- crypto
- a51
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Web2
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Also written up in: p4-team/ctf, perfectblue/ctf-writeups, reznok/CTFWriteUps, rollsafe/ctf-writeups
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Also written up in: reznok/CTFWriteUps
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA