Kalmarunionen
Writeups icon
ASIS CTF - xtr BambooFox CTF: The Vault BSidesSF 2021: Log 'em All De Danske Cybermesterskaber: 80s Commitments De Danske Cybermesterskaber: Kuuuurveen FaustCTF 2021 - Attack & Defense - thelostbottle Hack.lu CTF - Nodenb LKVM Escape MidnightSun Quals: kgbfskfsb MidnightSun Quals: Revver Pwn2win - Hackus Qiling Sandbox Escape Real World CTF 4th: Secured Java Sudo Exploit Writeup Union CTF 2021: Cr0wnAir
Become a member
About
  • De Danske Cybermesterskaber: 80s Commitments

    May 9, 2021 Crypto

    Writeup by: ChrRaz 80s Commitments When opening http://80s-commitments.hkn we are greeted with the following page: We are given a public key and a “commitment”. If we enter this commitment into the “reveal” box we get redirected to the following page which shows an embedded youtube video. …

    Read More
  • BSidesSF 2021: Log 'em All

    Mar 20, 2021 c++ use-after-free

    Challenge Description (967 points) Play to win and log ’em all! Once you’ve seen all 151 Asciimon, talk to Professor Jack for the flag. We’ve included some data for the first couple rooms, you’ll have to figure out the rest yourself! nc -v logemall-a2db138b.challenges.bsidessf.net 666 (author: …

    Read More
  • Union CTF 2021: Cr0wnAir

    Feb 25, 2021

    Writeup by: Nicolai Søborg Cr0wnAir TL;DR - bypassing a filter to generate two JWTs (RS256). Finding e and N from the two signatures and forge an arbitrary JWT (HS256). Step 1: Getting two RS256 signatures To get a signature we need to bypass a filter validated by jpv (“JSON Pattern Validator”). This …

    Read More
  • Sudo Exploit Writeup

    Jan 29, 2021 sudo

    Writeup by: Zanderdk Introduction On the 2021-01-26 qualy released this article describing a “new” (actually 10 year old) bug in sudo that allows an attacker to do privilege escalation though a heap buffer overflow. Unfortunately they did not release exploit/POC so I decided to build one myself and failed. …

    Read More
  • BambooFox CTF: The Vault

    Jan 18, 2021

    The Vault The challenge is a simple HTML file with a keypad that allows you to input 4 digit pin. The file loads main.js and calls Module.ccall('validate') to check the pin. Upon beautifying the JS we see that it calls run() which in turns runs: preRun(); initRuntime(); // => __wasm_call_ctors => …

    Read More
    • ««
    • «
    • 1
    • 2
    • »
    • »»

Recent Posts

  • Welcome to Kalmarunionen
  • ASIS CTF - xtr
  • MidnightSun Quals: Revver
  • MidnightSun Quals: kgbfskfsb
  • Qiling Sandbox Escape
  • Real World CTF 4th: Secured Java
  • LKVM Escape
  • Hack.lu CTF - Nodenb

Categories

WRITEUPS 10 DDC-2021 2 MIDNIGHTSUN 2 BSIDESSF-2021-CTF 1 FAUST-CTF-2021 1 HACK.LU-CTF 1 HXP 1 REAL-CVE 1 REAL-WORLD-CTF 1

Tags

WEB 4 RACE-CONDITIONS 3 CRYPTO 2 ATTACK-DEFENSE 1 C++ 1 CLONE-AND-PWN 1 GAME 1 MISC 1 PYTHON 1 QILING 1 RCE 1 REAL-WORLD 1 REV 1 SANDBOX-ESCAPE 1 SUDO 1 SUNDHEDSKORT 1 USE-AFTER-FREE 1 XSS 1 Z3 1

Copyright KALMARUNIONEN. All Rights Reserved