-
Notifications
You must be signed in to change notification settings - Fork 0
/
index.xml
22 lines (22 loc) · 5.72 KB
/
index.xml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Welcome! on Pwn-la-Chapelle</title><link>https://pwn-la-chapelle.eu/</link><description>Recent content in Welcome! on Pwn-la-Chapelle</description><generator>Hugo</generator><language>en-US</language><copyright>2024</copyright><lastBuildDate>Thu, 18 Jul 2024 12:00:00 +0000</lastBuildDate><atom:link href="https://pwn-la-chapelle.eu/index.xml" rel="self" type="application/rss+xml"/><item><title>Deutsche Hacking Meisterschaft 2024</title><link>https://pwn-la-chapelle.eu/posts/dhm_2024/</link><pubDate>Thu, 18 Jul 2024 12:00:00 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/dhm_2024/</guid><description><p>From July 10th to July 12th, we had the chance to participate in the first edition of the <a href="https://hacking-meisterschaft.de/">Deutsche Hacking Meisterschaft (DHM)</a> in Bonn. This is the joint finals of the <a href="https://cybersecurityrumble.de">Cyber Security Rumble</a> and the <a href="https://cscg.de">Cyber Security Challenge Germany</a>.</p></description></item><item><title>Writeup - Deutsche Hacking Meisterschaft 2024: Parse my Postgres</title><link>https://pwn-la-chapelle.eu/posts/dhm2024_parsemypostgres/</link><pubDate>Tue, 16 Jul 2024 12:00:00 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/dhm2024_parsemypostgres/</guid><description><p>A web challenge by <strong>0x4D5A</strong>, solved by <strong>Vincent</strong>, <strong>Sven</strong> and <strong>Trayshar</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>Ever found an 0-day in a 20k stars GitHub project? You can do now! A recent security advisory of the <a href="https://github.com/parse-community/parse-server/">Parse Server</a> disclosed a critical SQL injection vulnerability. The mitigation:</p></description></item><item><title>Writeup - Deutsche Hacking Meisterschaft 2024: Cute Big Cats</title><link>https://pwn-la-chapelle.eu/posts/dhm2024_cutebigcats/</link><pubDate>Tue, 16 Jul 2024 08:00:00 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/dhm2024_cutebigcats/</guid><description><p>A crypto challenge by <strong>0x4D5A</strong> and <strong>Rugo</strong>, solved by <strong>Euph0r14</strong> and <strong>Trayshar</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>Who doesn&rsquo;t love Cute Big Cats? But the most beloved cat is the &ldquo;flag cat&rdquo;, only visibile to the admin user. Go grab it!</p></description></item><item><title>Writeup - Cyber Security Rumble 2024: Conspiracy Social</title><link>https://pwn-la-chapelle.eu/posts/csr2024_conspiracysocial/</link><pubDate>Sat, 18 May 2024 16:00:00 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/csr2024_conspiracysocial/</guid><description><p>A web challenge by <strong>lukas</strong>, solved by <strong>Euph0r14, Danptr, Vincent</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>Always wanted to start your own Conspiracy but got overwhelmed managing all the secret handshakes and passwords with your fellow conspirators? Then Conspiracy Social is the solution you&rsquo;re looking for. We take all the hassle out of managing secret handshakes. With us you can always be sure that your conversation partner is who he pretends to be.</p></description></item><item><title>Writeup - Cyber Security Rumble 2024: MyFirstPythonSite</title><link>https://pwn-la-chapelle.eu/posts/csr2024_myfirstpythonsite/</link><pubDate>Sun, 12 May 2024 13:00:00 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/csr2024_myfirstpythonsite/</guid><description><p>A web challenge by <strong>lukas2511</strong>, solved by <strong>Euph0r14, Danptr, Svido, nikgame33</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>I&rsquo;ve heard PHP is insecure, so I started writing my first website in Python instead!</p></description></item><item><title>Writeup - UMDCTF 2024: TripleDES</title><link>https://pwn-la-chapelle.eu/posts/umdctf2024_tripledes/</link><pubDate>Fri, 03 May 2024 21:16:23 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/umdctf2024_tripledes/</guid><description><p>A crypto challenge by <strong>clam</strong>, solved by <strong>Trayshar</strong> and <strong>Euph0r14</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>Before the Kwisatz Haderach, the Bene Gesserit used this oracle to predict the future.</p></description></item><item><title>Writeup - UMDCTF 2024: PaddingOracle</title><link>https://pwn-la-chapelle.eu/posts/umdctf2024_paddingoracle/</link><pubDate>Fri, 03 May 2024 19:16:23 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/umdctf2024_paddingoracle/</guid><description><p>A crypto challenge by <strong>lily</strong>, solved by <strong>Trayshar</strong> and <strong>Euph0r14</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>The Baron used AES128-CBC with PKCS#7 to hide the flag. Can you recover the flag using his padding oracle?</p></description></item><item><title>Writeup - DamCTF 2024: Tarrible Storage</title><link>https://pwn-la-chapelle.eu/posts/damctf2024_tarrible/</link><pubDate>Sun, 28 Apr 2024 07:34:53 +0000</pubDate><guid>https://pwn-la-chapelle.eu/posts/damctf2024_tarrible/</guid><description><p>A web challenge by <strong>M1ll_0n</strong>, solved by <strong>Trayshar</strong></p>
<h2 id="challenge">Challenge</h2>
<blockquote>
<p>Move over google drive, there&rsquo;s a new file storage service in town: <code>http://tarrible-storage.chals.kekoam.xyz</code></p></description></item></channel></rss>