Phantomfeed - HTB University CTF 2023 Winters 2023-12-16 Web tl;dr Leak JWT token through Race Condition. Leak authorization token via an open redirect. Chaining XSS & CSRF in the oauth pipeline to leak the Admin’s oauth access token. RCE via CVE-2023-33733. Read More Race Condition HTBUniversityCTF Oauth RCE Web
TarAnalyzer - 2020 Defenit CTF c3rb3ru5 2020-06-07 Web Exploitation tl;dr Zip Slip Vulnerability + YAML Deserialization Attack + Race Condition Unintended Solution: Upload symlink leading to arbitarary file reads Read More Defenit YAML Zip Slip Race Condition Symlink