Welcome to the Lab
CTF writeups, malware analysis, and digital forensics adventures. Breaking things down, byte by byte.
Recent Writeups
DarkNet Services Stage 3 Penetration Test
Six-machine multi-subnet compromise chaining SSRF, XML injection, ECDSA nonce reuse, LFI, TOCTOU race condition, MCP prompt injection, Docker container forensics, network pivoting, and a fresh kernel exploit to root every host and capture all five flags.
Raptor Weekly 6 - 3lectric Igloo - Web
Three flags across a penguin colony web app. Source recon, IDOR enumeration, OS command injection through a diagnostic ping utility, and AES-CBC decryption using keys leaked from the process environment.
Raptor Weekly 2 - ECHELON Web 1 - 1.1 ; OPEN CHANNEL
Chaining HTML comment enumeration to a disallowed robots.txt entry, pivoting through an exposed staging endpoint to recover an operator username, and extracting the portal password from a JSON debug response behind a custom request header.
Raptor Weekly 2 - ECHELON CTF - Event Overview & Retrospective
A full retrospective on the ECHELON CTF - 11 challenges across 5 clearance tiers, a hard-locked chain from login portal to composite key, what happened to NODE 07, and how it led to the creation of noncechalant.
Raptor Weekly 2 - ECHELON Rev 1 - 4.1 ; REMNANT
Reversing a stripped x86-64 ELF to recover Diffie-Hellman parameters with a smooth group order, applying Pohlig-Hellman to recover the private key, and decrypting a C2 beacon payload to extract a handshake key and the flag. Or just running the binary.