Loading0%
banner

Blog

DQL Injection & SOME Attack

10/11/25

DQL Injection & SOME Attack

SMS v2 Challenge | CyCTF 2025

SROP, Stack Pivot & FSOP

09/11/25

SROP, Stack Pivot & FSOP

Pwn Challenges | CyCTF 2025

Linux Command Injection

24/09/25

Linux Command Injection

Official Writeup: Mushroom Hates Letters | IEEE Finals 2025

CSP Bypass via XSS

20/09/25

CSP Bypass via XSS

Official Writeup: Disapproved | IEEE 2025

Chaining 6 Bugs to RCE

18/09/25

Chaining 6 Bugs to RCE

Official Writeup: Full Stack Disaster | ConnectorsCTF 2025

Data Exfiltration via DNS

18/09/25

Data Exfiltration via DNS

Official Writeup: cat flag.png | ConnectorsCTF 2025

SQL Injection & JWT Exploitation

13/09/25

SQL Injection & JWT Exploitation

Official Writeup: The Promotion | ConnectorsCTF 2025

OSINT Investigation Techniques

12/09/25

OSINT Investigation Techniques

Official Writeup | ConnectorsCTF 2025

Command Injection via Source Review

12/09/25

Command Injection via Source Review

Official Writeup: Flags in the Air | ConnectorsCTF 2025

CSS Injection & Command Injection

21/08/25

CSS Injection & Command Injection

Official Writeup: Stylish Boss | CAT CTF 2025

SQL Injection & Git Exposure

03/08/25

SQL Injection & Git Exposure

Unseen Path | ASC Cyber WarGames

SSTI, SQLi & Path Traversal

29/04/25

SSTI, SQLi & Path Traversal

5 Web Challenges | CIT CTF 2025

React Router Tricks & Source Review

20/04/25

React Router Tricks & Source Review

Web Challenges | b01lersCTF 2025

SSRF, GraphQL & Cache Deception

03/03/25

SSRF, GraphQL & Cache Deception

7 Web Challenges | Fawazeer Cyber 2025

API Race Conditions & Wireshark

01/03/25

API Race Conditions & Wireshark

Methodology Walkthrough | ApoorvCTF 2025

JWT Alg Confusion & Race Condition

20/02/25

JWT Alg Confusion & Race Condition

2FA Bypass | NextGen Defence CTF 2025

JWK Forgery & OTP Bypass

16/12/24

JWK Forgery & OTP Bypass

Breaking Bank | HTB University CTF 2024

SQL Injection via PHP Filter Chains

03/11/24

SQL Injection via PHP Filter Chains

SMS Challenge | CyCTF 2024

Command Injection

03/11/24

Command Injection

Vending Machine | CyCTF 2024

Request Smuggling, SSRF & Git

05/10/24

Request Smuggling, SSRF & Git

Web Challenge Collection | Iron CTF 2024

S3 Bucket Versioning Exploitation

12/09/24

S3 Bucket Versioning Exploitation

BucketWars | CSAW CTF 2024