zer0pts CTF 2020
41 challenges with 154 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not. 23 of them also carry the solution zer0pts CTF 2020’s own organisers published, which is linked on the challenge itself.
Full task list on CTFtimeUncategorised16
The upstream scoreboard did not say, so neither do we.
Also written up in: perfectblue/ctf-writeups, perfectblue/ctf-writeups, rollsafe/ctf-writeups, rollsafe/ctf-writeups
Also written up in: pr0cf5/CTF-writeups, pr0cf5/CTF-writeups, ch0rse/CTF-writeups, ch0rse/CTF-writeups
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups, kimtruth.github.io
Exploit
3 official solutionsAlso written up in: jinnzoo/ctf, jinnzoo/ctf, jinnzoo/ctf
Also written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Grimore
2 official solutionsAlso written up in: smallkirby/pwn-writeups, SolarDebris/writeups
Raindropper
2 official solutionsAlso written up in: perfectblue/ctf-writeups, rollsafe/ctf-writeups
Read Arbitrary File
2 official solutionsAlso written up in: smallkirby/pwn-writeups, SolarDebris/writeups
Also written up in: smallkirby/pwn-writeups, SolarDebris/writeups
Also written up in: smallkirby/pwn-writeups, SolarDebris/writeups
Commented Chall
1 official solutionAlso written up in: TFNS/writeups
Locked
1 official solutionAlso written up in: TFNS/writeups
Also written up in: TFNS/writeups
Server
1 official solutionAlso written up in: TFNS/writeups
Strcmp
1 official solutionAlso written up in: TFNS/writeups
Syscall
1 official solutionAlso written up in: TFNS/writeups
Binary exploitation8
Turn a memory-safety bug in a native binary into control of execution. Usually a stack overflow, a format string, or a heap primitive.
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: TFNS/writeups, smallkirby/pwn-writeups, arty-hlr/CTF-writeups, yu1hpa/ctf-writeup, shift-crops/CTFWriteups, SolarDebris/writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.c, solution/solve.py
Also written up in: mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, TFNS/writeups, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, mito753/Kernel-Exploit-Dojo, HexRabbit/CTF-writeup
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: TFNS/writeups, smallkirby/pwn-writeups, ironore15/ctf, shift-crops/CTFWriteups, SolarDebris/writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: pr0cf5/CTF-writeups, smallkirby/pwn-writeups, ironore15/ctf, ch0rse/CTF-writeups, shift-crops/CTFWriteups, SolarDebris/writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: TFNS/writeups, smallkirby/pwn-writeups, shift-crops/CTFWriteups, SolarDebris/writeups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: TFNS/writeups, smallkirby/pwn-writeups, shift-crops/CTFWriteups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: pr0cf5/CTF-writeups, ch0rse/CTF-writeups, shift-crops/CTFWriteups
- pwn
Same technique in picoCTF: lockdown-horses, Guessing Game 1, Bizz Fuzz
Hipwn Volken
1 official solutionAlso written up in: SinHackTeam/writeup
Web6
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/shell.py, solution/solve.py
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: w181496/CTF
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: w181496/CTF
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Artisanal Handcraft
1 official solutionAlso written up in: beerpwn/ctf
Reverse engineering5
Work out what a compiled program does without its source, then work backwards from the check to the input that passes it.
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: pcw109550/write-up, ironore15/ctf
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: perfectblue/ctf-writeups, TFNS/writeups, rollsafe/ctf-writeups, ironore15/ctf
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/log.txt, solution/solve.py
Also written up in: TFNS/writeups, perfectblue/ctf-writeups, rollsafe/ctf-writeups
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: TFNS/writeups, perfectblue/ctf-writeups, ironore15/ctf, rollsafe/ctf-writeups
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.sh
- reversing
Same technique in picoCTF: Checkpass, WinAntiDbg0x100, WinAntiDbg0x200
Cryptography4
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solver.py
Also written up in: pcw109550/write-up, TFNS/writeups, pcw109550/write-up, TFNS/writeups
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/fglg.py, solution/solve.py
Also written up in: TFNS/writeups, perfectblue/ctf-writeups, TFNS/writeups, rollsafe/ctf-writeups
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: pcw109550/write-up, TFNS/writeups, pcw109550/write-up
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.py
Also written up in: pcw109550/write-up, pcw109550/write-up
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
Forensics2
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
Published by the organisers in zer0pts/zer0pts-CTF-2020: solution/solve.c
Also written up in: pcw109550/write-up
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Locked KitKat volken
1 official solutionAlso written up in: SinHackTeam/writeup