goto: writeup
Name |
Tags |
Keywords |
Genie |
Web, Crypto |
Julia deserialization, Bit flipping |
Avatar |
Web |
Redis SSRF, CRLF injection, POP chain |
Welcome to TSJ CTF |
Web, Misc, CSC |
.DS_Store, Guessing |
Name |
Category |
Keywords (intended solution) |
Estimated Difficulty |
SSRF challenge or not? |
Web |
file:// , signed pickle cookie |
β |
Happy Metaverse Year |
Web |
Union-based SQLi |
ββ |
babyphp |
Web |
.htaccess, chain php://filters |
βββ |
GistMD |
Web |
jsonp, DOM clobbering |
ββββ |
Imgura album |
Web |
Path traversal, PHP session , deserialize |
ββββ |
PM |
Web |
FPM SSRF |
β |
LeetCall |
Misc |
Python, Programming |
βββ |
babyheap |
Misc |
argument injection (wget , zip ) |
βββ |
Name |
Category |
Keywords |
WTF |
Web |
php wrapper, file command |
CYBERPUNK 1977 |
Web |
SQL injection, quine, python format string |
CTF Note |
Web |
prototype pollution, DOM clobbering, RPO |
3DUSH3LL |
Misc |
Python Sandbox |
All of my challenges in this CTF are related to Python XD
Name |
Category |
Keywords |
Estimated Difficulty |
Pikora |
Misc |
Pickle, PPC |
Hard |
Cat Translator |
Misc |
Troll, Python |
Easy |
Cat Slayer |
Reverse |
Python bytecode |
Medium ~ Hard |
Web | Reverse | Misc
Name |
Category |
Keywords |
Estimated Difficulty |
π° Peekora π₯ |
Reverse |
Pickle Bytecode |
Easy |
ⲩβ²β²§ β²β²β²β²§β²β²κ
π΅β²π°β²β² β²£β²π°β² |
Web |
JSON injection |
Baby |
γ5/22 ιθ¦ε
¬εγ |
Web |
LFI, SQL injection, Command injection |
Easy |
XSS Me |
Web |
XSS with length limit |
Easy ~ Medium |
Cat Slayerα΄΅βΏα΅α΅Κ³Λ’α΅ |
Web |
Java Deserialization, Reflection |
Easy ~ Medium |
Cat Slayer | Cloud Edition |
Misc |
Pickle, ECB Cut&Paste |
Medium |
Cat Slayer | Online Edition |
Misc |
Game, Python Sandbox |
Easy |