Posts
All the articles I've posted.
How I (accidentally) hacked ImaginaryCTF infra
Published: at 12:00 AM"this is what i get for writing an instancer from scratch the day before the ctf" - Eth007
ex – HSCTF 2023 Writeup
Published: at 12:00 AMLeaking libc with traditional buffer overflow to gain RCE via a one_gadget.
Filestore – ångstromCTF 2023 Writeup
Published: at 12:00 AMExploiting PHP uniqid() predictability, local file inclusion, and SUID binaries to achieve remote code execution and privilege escalation.
The DEW – Space Heroes CTF 2023 Writeup
Published: at 12:00 AMChaining file upload vulnerability, XSS, and CSP bypass to steal admin cookies. Exploits insecure file extension checking and leverages server-side file hosting to execute malicious JS.