All Writeups
Comprehensive collection of CTF challenges, solutions, and insights.
DarkNet Services Stage 3 Penetration Test
Six-machine multi-subnet compromise chaining SSRF, XML injection, ECDSA nonce reuse, LFI, TOCTOU race condition, MCP prompt injection, Docker container forensics, network pivoting, and a fresh kernel exploit to root every host and capture all five flags.
Raptor Weekly 2 - ECHELON Web 2 - 3.1 ; PHANTOM NODE
Identifying an anomalous node on a SECRET tier dashboard, exploiting an SSRF vulnerability in the node status endpoint via path traversal and query string termination, and reading an internal data response that seeds the next two challenges.
Raptor Weekly 1 - OMEGA CORP Web 1 - Raptor Riot Incident Response
Chaining prompt injection against an LLM-powered incident portal to extract a diagnostic key, pivoting through SSRF to reach a hidden internal endpoint, and leveraging RCE to comb a Windows filesystem until the flag surfaces in an abandoned exploit's source code.
DEADROP Web 5 - drone_registry.gov
Exploiting a Server-Side Request Forgery vulnerability in an operator location verification endpoint to access an internal AWS-style metadata service and exfiltrate IAM credentials containing the flag.
WHAMazon! Web 5 - Neural Backdoor
Chaining GitHub source code OSINT to discover a hidden SSRF endpoint, then using it to proxy requests to an internally-restricted AI core API.