CTF Write-ups & Cyber Security Research


Hacking
is the finest art.

CTF challenges Write-ups, vulnerability research, and offensive security techniques. All write-ups include full methodology, not just the flag.

44
Write-ups
12
Categories
6
Platfroms/CTFs

Recent Write-ups

View all →
Misc Sep 21, 2026

Solstice 9

Rebuilding a device fixture from flash storage and bus captures to sign a maintenance request.

Read more →
Crypto Sep 21, 2026

Power with Errors

Recovering fifteen XOR keys from noisy matrix powers using commutators and lattice reduction.

Read more →
Forensics Sep 21, 2026

Kanji

Tracing an IRC botnet through a large packet capture to identify its bots, victim, and flood attacks.

Read more →
Forensics Sep 21, 2026

Gnome Breaker

Fixing a keyring extraction error, cracking the login password, and recovering the secret stored inside.

Read more →
Blockchain Sep 21, 2026

Arbitrary Funds Sweep

Recreating an L1 contract at the same address on L2 to take ownership of a five-ETH vault.

Read more →
Misc Sep 21, 2026

aethergate

Using a telemetry URL validation bug to overwrite an init script and retrieve the router flag.

Read more →
Forensics Sep 09, 2026

oBfsC4t10n

Recovering a payload split across an Excel picture, UserForm, and worksheet cell, then decoding VBA and XOR-obfuscated shellcode.

Read more →
Forensics Sep 09, 2026

FishyHTTP

Analyzing a bundled .NET executable and decoding commands hidden in HTML tags and command output disguised as words in HTTP traffic.

Read more →
Reverse Engineering Sep 08, 2026

PartialEncryption

Reversing a Windows PE that decrypts small runtime code chunks with AES-NI before validating the flag byte by byte.

Read more →
Reverse Engineering Sep 08, 2026

ARMs Race

Automating a 50-level ARM emulation challenge by decoding ARM instructions and recovering the final value of r0.

Read more →
Forensics Jul 08, 2026

RedTrails

Analyzing a multi-stage attack through Redis exploitation, reverse shell deployment and AES-256-CBC decryption.

Read more →
Reverse Engineering Jul 07, 2026

Snakecode

Extracting layered Python bytecode obfuscation through base64 decoding, zlib decompression, and marshal deserialization.

Read more →