<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Mildly secure</title><description>This is just a test. Descriptions should go here</description><link>https://cristi075.github.io/</link><item><title>BitDefender Grand Prix 2025 - Mars writeup</title><link>https://cristi075.github.io/posts/bitdefender-grand-prix-2025-mars/</link><guid isPermaLink="true">https://cristi075.github.io/posts/bitdefender-grand-prix-2025-mars/</guid><description>Writeup for the Mars challenge from BitDefender Grand Prix 2025. This challenge involved finding some hidden strings starting from a image file.</description><pubDate>Tue, 21 Jul 2026 21:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2025 - Dashboarded writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2025-dashboarded/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2025-dashboarded/</guid><description>Writeup for the Dashboarded challenge from HTB&apos;s Business CTF 2025. This challenge involved exploiting a SSRF vulnerability in an AWS app and some simple post-exploitation techniques.</description><pubDate>Sat, 24 May 2025 21:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2025 - Echoes of Authority writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2025-echoes-of-authority/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2025-echoes-of-authority/</guid><description>Writeup for the Echoes of Authority challenge from HTB&apos;s Business CTF 2025. This challenge involved decoding a RTP stream and decoding data sent over DTML.</description><pubDate>Sat, 24 May 2025 21:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2025 - Vault writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2025-vault/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2025-vault/</guid><description>Writeup for the Vault challenge from HTB&apos;s Business CTF 2025. This challenge involved exploiting a misconfigured application using s3</description><pubDate>Sat, 24 May 2025 21:00:00 GMT</pubDate></item><item><title>DCTF Quals 2023 - Awesome One</title><link>https://cristi075.github.io/posts/dctf-quals-2023-awesome-one/</link><guid isPermaLink="true">https://cristi075.github.io/posts/dctf-quals-2023-awesome-one/</guid><description>Writeup for the AwesomeOne challenge from the D-CTF Qualifiers 2023. This was very relatively simple reverse engineering.</description><pubDate>Sun, 22 Oct 2023 10:00:00 GMT</pubDate></item><item><title>TenableCTF 2023 - Cyberpunk Cafe writeup</title><link>https://cristi075.github.io/posts/tenablectf-2023-cyberpunk-cafe/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2023-cyberpunk-cafe/</guid><description>Writeup for the Cyberpunk Cafe challenge from TenableCTF 2023. This was a relatively simple steganography challenge.</description><pubDate>Thu, 10 Aug 2023 21:00:00 GMT</pubDate></item><item><title>TenableCTF 2023 - PseudoRandom writeup</title><link>https://cristi075.github.io/posts/tenablectf-2023-pseudorandom/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2023-pseudorandom/</guid><description>Writeup for the PseudoRandom challenge from TenableCTF 2023. This was a relatively simple cryptography challenge.</description><pubDate>Thu, 10 Aug 2023 21:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2023 - Langmon writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2023-langmon/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2023-langmon/</guid><description>Writeup for the Langmon challenge from HTB&apos;s Business CTF from 2023. This challenge involved exploiting a wordpress exploit and a langmon exploit.</description><pubDate>Sun, 16 Jul 2023 21:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2023 - Unveiled writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2023-unveiled/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2023-unveiled/</guid><description>Writeup for the Unveiled challenge from HTB&apos;s Business CTF from 2023. This challenge involved exploiting a misconfigured s3 service.</description><pubDate>Sun, 16 Jul 2023 21:00:00 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Web) Orbital</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-orbital/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-orbital/</guid><description>Writeup for the Orbital (Web, Easy) from HTB Cyber Apocalypse 2023. This very simple challenge involved SQL Injection and a path traversal attack.</description><pubDate>Thu, 23 Mar 2023 12:00:06 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Forensics) Relic Maps</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-relic-maps/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-relic-maps/</guid><description>Writeup for the Relic Maps (Forensics, Medium) from HTB Cyber Apocalypse 2023. This challenge involved deobfuscating some batch scripting and some powershell.</description><pubDate>Thu, 23 Mar 2023 12:00:05 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Hardware) HM74</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-hm74/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-hm74/</guid><description>Writeup for the HM74 (Hardware, Medium) from HTB Cyber Apocalypse 2023. Here you can see my janky solution to a challenge that involved error correction codes (Hamming Codes).</description><pubDate>Thu, 23 Mar 2023 12:00:04 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Hardware) Secret Code</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-secret-code/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-secret-code/</guid><description>Writeup for the Secret Code (Hardware, Easy) from HTB Cyber Apocalypse 2023. This is how I used Excel to solve a CTF challenge about seven segment displays :)</description><pubDate>Thu, 23 Mar 2023 12:00:03 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Hardware) Debug</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-debug/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-debug/</guid><description>Writeup for the Debug (Hardware, Easy) from HTB Cyber Apocalypse 2023. This challenge involved analyzing an UART signal.</description><pubDate>Thu, 23 Mar 2023 12:00:02 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Hardware) Timed Transmission</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-timed-transmission/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-timed-transmission/</guid><description>Writeup for the Timed Transmission (Hardware, Very Easy) from HTB Cyber Apocalypse 2023. This very simple challenge involved a capture from a logic analyzer.</description><pubDate>Thu, 23 Mar 2023 12:00:01 GMT</pubDate></item><item><title>HTB Cyber Apocalypse 2023 - (Hardware) Critical Flight</title><link>https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-critical-flight/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-cyber-apocalypse-2023-critical-flight/</guid><description>Writeup for the Critical Flight (Hardware, Very Easy) from HTB Cyber Apocalypse 2023. This very simple challenge involved some PCB designs.</description><pubDate>Thu, 23 Mar 2023 12:00:00 GMT</pubDate></item><item><title>HTB RedPanda writeup</title><link>https://cristi075.github.io/posts/htb-redpanda-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-redpanda-writeup/</guid><description>Writeup for HackTheBox.eu&apos;s RedPanda machine. Notes on how I obtained the user and root flags.</description><pubDate>Sat, 03 Dec 2022 17:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Forensics) Wrong Spooky Season</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics1-wrong-spooky-season/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics1-wrong-spooky-season/</guid><description>Writeup for the Wrong Spooky Season challenge (Forensics1/5) from HackTheBoo 2022. This challenge involved some simple analysis of a pcap file.</description><pubDate>Thu, 27 Oct 2022 15:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Forensics) Trick of Breach</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics2-trick-of-breach/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics2-trick-of-breach/</guid><description>Writeup for the Trick of Breach challenge (Forensics2/5) from HackTheBoo 2022. This challenge involved analyzing some DNS traffic and reconstructing exfiltrated data.</description><pubDate>Thu, 27 Oct 2022 15:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Forensics) Halloween Invitation</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics3-halloween-invitation/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics3-halloween-invitation/</guid><description>Writeup for the Halloween Invitation challenge (Forensics3/5) from HackTheBoo 2022. This challenge involved analyzing an infected doc file.</description><pubDate>Thu, 27 Oct 2022 15:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Forensics) POOF</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics4-poof/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics4-poof/</guid><description>Writeup for the POOF challenge (Forensics4/5) from HackTheBoo 2022. This challenge involved performing both network and memory forensics for a host that was infected by ransomware.</description><pubDate>Thu, 27 Oct 2022 15:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Forensics) Downgrade</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics5-downgrade/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-forensics5-downgrade/</guid><description>Writeup for the Downgrade challenge (Forensics5/5) from HackTheBoo 2022. This challenge involved analyzing Windows evtx logs and identifying a suspicious login.</description><pubDate>Thu, 27 Oct 2022 15:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Web) Evaluation Deck writeup</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-web1-evaluation-deck/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-web1-evaluation-deck/</guid><description>Writeup for the Evaluation Deck challenge (Web1/5) from HackTheBoo 2022. This challenge involved exploiting a command injection vulnerability in a Flask application.</description><pubDate>Thu, 27 Oct 2022 13:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Web) Spookifier writeup</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-web2-spookifier/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-web2-spookifier/</guid><description>Writeup for the Spookifier (Web2/5) from HackTheBoo 2022. This challenge involved exploiting a template injection vulnerability in a Flask application that used Mako as its templating engine.</description><pubDate>Thu, 27 Oct 2022 13:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Web) Horror Feeds writeup</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-web3-horror-feeds/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-web3-horror-feeds/</guid><description>Writeup for the Horror Feeds challenge (Web3/5) from HackTheBoo 2022. This challenge involved exploiting a SQL Injection vulnerability in a Flask application ... with a bit of a twist.</description><pubDate>Thu, 27 Oct 2022 13:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Web) Juggling Facts writeup</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-web4-juggling-facts/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-web4-juggling-facts/</guid><description>Writeup for the Juggling Facts challenge (Web4/5) from HackTheBoo 2022. This challenge involved exploiting a type juggling vulnerability in a php application.</description><pubDate>Thu, 27 Oct 2022 13:00:00 GMT</pubDate></item><item><title>HTB HackTheBoo 2022 - (Web) Cursed Secret Party writeup</title><link>https://cristi075.github.io/posts/htb-hacktheboo-2022-web5-cursed-secret-party/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-hacktheboo-2022-web5-cursed-secret-party/</guid><description>Writeup for the Cursed Secret Party challenge (Web5/5) from HackTheBoo 2022. This challenge involved exploiting a Stored XSS vulnerability and bypassing the CSP.</description><pubDate>Thu, 27 Oct 2022 13:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2022 - Breakout writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2022-breakout/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2022-breakout/</guid><description>Writeup for the Breakout challenge from HTB&apos;s Business CTF from 2022.</description><pubDate>Sun, 17 Jul 2022 19:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2022 - Lina&apos;s Invitation writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2022-linas-invitation/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2022-linas-invitation/</guid><description>Writeup for the &apos;Lina&apos;s Invitation&apos; challenge from HTB&apos;s Business CTF from 2022.</description><pubDate>Sun, 17 Jul 2022 19:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2022 - Perseverance writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2022-perseverance/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2022-perseverance/</guid><description>Writeup for the Perseverance challenge from HTB&apos;s Business CTF from 2022.</description><pubDate>Sun, 17 Jul 2022 19:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2022 - Trade writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2022-trade-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2022-trade-writeup/</guid><description>Writeup for the Trade challenge from HTB&apos;s Business CTF from 2022. This challenge involved interacting with and exploiting two AWS services (AWS SNS and DynamoDB)</description><pubDate>Sun, 17 Jul 2022 19:00:00 GMT</pubDate></item><item><title>TenableCTF 2022 Characters of Shakespeare&apos;s Plays Writeup</title><link>https://cristi075.github.io/posts/tenablectf-2022-characters-of-shakespeares-plays/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2022-characters-of-shakespeares-plays/</guid><description>A short writeup for &quot;Characters of Shakespeare&apos;s Plays&quot; (TenableCTF 2022)</description><pubDate>Mon, 13 Jun 2022 17:00:00 GMT</pubDate></item><item><title>TenableCTF 2022 Data Exfil (Forensics) Writeup</title><link>https://cristi075.github.io/posts/tenablectf-2022-data-exfil-forensics/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2022-data-exfil-forensics/</guid><description>Writeups for the &quot;Data Exfil&quot; challenge from TenableCTF 2022</description><pubDate>Mon, 13 Jun 2022 17:00:00 GMT</pubDate></item><item><title>TenableCTF 2022 OSINT Challenges Writeup</title><link>https://cristi075.github.io/posts/tenablectf-2022-osint/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2022-osint/</guid><description>Writeups for 3 out of 4 OSINT challenges from TenableCTF 2022</description><pubDate>Mon, 13 Jun 2022 17:00:00 GMT</pubDate></item><item><title>HTB Paper writeup</title><link>https://cristi075.github.io/posts/htb-paper-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-paper-writeup/</guid><description>Writeup for HackTheBox.eu&apos;s Paper machine. Notes on obtaining the user and root flags for this machine.</description><pubDate>Mon, 14 Mar 2022 09:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2021 - Rocket writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2021-rocket-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2021-rocket-writeup/</guid><description>Writeup for the Rocket challenge from HTB&apos;s Business CTF from 2021. This was part of their full pwn category which involved getting user and root flags from machines.</description><pubDate>Thu, 29 Jul 2021 17:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2021 - BadRansomware writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2021-badransomware-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2021-badransomware-writeup/</guid><description>Writeup for the BadRansomware challenge from HTB&apos;s Business CTF from 2021. This challenge showcased some techniques used by real malware.</description><pubDate>Wed, 28 Jul 2021 17:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2021 - NoteQL writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2021-noteql-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2021-noteql-writeup/</guid><description>Writeup for the NoteQL challenge from HTB&apos;s Business CTF from 2021. The challenge involved an unsecured GraphQL endpoint.</description><pubDate>Tue, 27 Jul 2021 17:00:00 GMT</pubDate></item><item><title>HTB Business CTF 2021 - Theta writeup</title><link>https://cristi075.github.io/posts/htb-business-ctf-2021-theta-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-business-ctf-2021-theta-writeup/</guid><description>Writeup for the Theta challenge from HTB&apos;s Business CTF from 2021. This challenge involved a unsecured aws Lambda service.</description><pubDate>Tue, 27 Jul 2021 17:00:00 GMT</pubDate></item><item><title>HTB Bucket writeup</title><link>https://cristi075.github.io/posts/htb-bucket-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-bucket-writeup/</guid><description>Writeup for HackTheBox.eu&apos;s Bucket machine. Notes on obtaining the user and root flags.</description><pubDate>Sun, 09 May 2021 15:00:00 GMT</pubDate></item><item><title>TenableCTF 2021 Tenable challenges writeup</title><link>https://cristi075.github.io/posts/tenablectf-2021-tenable-challenges/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2021-tenable-challenges/</guid><description>This is my writeup for the Tenable challenges that I could solve at TenableCTF 2021 and some of my thoughts on the one that I could not solve..</description><pubDate>Tue, 23 Feb 2021 17:00:00 GMT</pubDate></item><item><title>TenableCTF 2021 Netrunner Encryption writeup</title><link>https://cristi075.github.io/posts/tenablectf-2021-netrunner-encryption-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/tenablectf-2021-netrunner-encryption-writeup/</guid><description>This is my writeup for the Netrunner Encryption challenge from TenableCTF 2021. It involves a chosen plaintext attack against AES-ECB-128.</description><pubDate>Mon, 22 Feb 2021 15:00:00 GMT</pubDate></item><item><title>HTB Worker writeup</title><link>https://cristi075.github.io/posts/htb-worker-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-worker-writeup/</guid><description>Writeup for HackTheBox.eu&apos;s Worker machine. Notes on obtaining the user and root flags and also some failures in trying to get a root shell.</description><pubDate>Sun, 07 Feb 2021 15:00:00 GMT</pubDate></item><item><title>HTB Tabby writeup</title><link>https://cristi075.github.io/posts/htb-tabby-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/htb-tabby-writeup/</guid><description>This is my first attempt at making a writeup for a HackTheBox machine. It contains my notes on how I obtained both the user and root flag on the Tabby machine.</description><pubDate>Tue, 08 Dec 2020 15:00:00 GMT</pubDate></item><item><title>De1CTF 2019 Mine Sweeping Writeup</title><link>https://cristi075.github.io/posts/de1ctf-2019-mine-sweeping-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/de1ctf-2019-mine-sweeping-writeup/</guid><pubDate>Tue, 06 Aug 2019 17:00:00 GMT</pubDate></item><item><title>De1CTF 2019 SSRF Me Writeup</title><link>https://cristi075.github.io/posts/de1ctf-2019-ssrf-me-writeup/</link><guid isPermaLink="true">https://cristi075.github.io/posts/de1ctf-2019-ssrf-me-writeup/</guid><description>This is my writeup for the SSRF Me challenge. This challenge was part of De1CTF 2019. We only got an URL that we should access as part of the challenge. Accessing that URL returns some python code.</description><pubDate>Tue, 06 Aug 2019 15:00:00 GMT</pubDate></item></channel></rss>