Low Tide
A five-stage SCADA proxy chain: deobfuscate a gateway address, forge a time-derived token, walk a virtual filesystem, authenticate to a chat bridge, then issue a control command...
$ whoami
ctf writeups from the wire
CTF writeups — binary exploitation, reverse engineering, web, crypto and forensics, solved start to flag.
A five-stage SCADA proxy chain: deobfuscate a gateway address, forge a time-derived token, walk a virtual filesystem, authenticate to a chat bridge, then issue a control command...
Three answers buried in 2.7 MB of Windows security logs, a packet capture and a memory dump — most of it synthetic filler with a fingerprint that gives it away.
Four chained stages — autokey cipher, SHA-256 counter keystream, chained digest, AES-GCM vault — where each answer is the next stage key.
Rotor settings leaked in 418 response headers, fed through a three-rotor Enigma to a passphrase — then the proxy trusts a role header it should never have read.
A maze of interlinked rooms with no sitemap. The route is a Morse message hidden in the whitespace of a poem.
A Flask storefront solved black-box after the source release was pulled — unauthenticated account enumeration, an unthrottled 4-digit PIN, and a two-layer decoy built to eat you...
CSAW CTF 2026 · September 2026 · 12 writeups
CSAW CTF 2026 qualification round. Twelve challenges solved across pwn, reverse engineering, web, crypto, forensics and misc — each writeup carries the original challenge files and my solve scripts.