Honest Write-ups

Photographers take thousands of pictures, but only show us the top 0.1%.

Reading a write-up of a box can also make us feel like we are miles behind.

Not here. I’ll tell you where I got stuck, how I got unstuck (even if it was with a hint), and what I learned. If I didn’t learn anything, I won’t write about it.

Hopefully that makes this yet-another-writeup-blog worth reading!


Latest: Titanic

I think this was the fastest user flag I’ve got so far, but root took me a while. I also wonder if I got the foothold in the intended way. Most importantly, one of the lessons learned with another (still active) box was to do my CVE research more breadth-first instead of going deep on the first option… and I probably over-compensated for this one. Let’s go through it:

Read more


All the honesty