
Writeup on Neonify, a relatively normal challenge focusing on regex bypass and template injection.

Analytics walkthrough, focusing on CVEs exploitation and Docker escape.

A challenge about client-side exploitation involving CSRF.

Another relatively simple challenge for LaCTF.

SQL Injection with UNION select.

An interesting challenge about broken code logic leading to race condition.

A soft landing challenge for LaCTF.

HTB Toxic writeup, focusing on PHP Insecure Deserialization.

HTB Obscurity writeup, focusing on fuzzing, weak encryption and privesc via race condition.