<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><title>researchnode writeups</title><link>https://www.researchnode.net/writeups/</link><description>CTF writeups from researchnode</description><item><title>aiscrimination dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/aiscrimination-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/aiscrimination-dctf-2026-writeup/</guid><description>DefCamp D-CTF Aiscrimination writeup covering CSS injection, server-side @import processing, path traversal through resolved theme paths, and arbitrary file read to retrieve the flag.</description><pubDate>Fri, 02 Oct 2026 10:19:28 GMT</pubDate></item><item><title>bitdebit2 dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/bitdebit2-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/bitdebit2-dctf-2026-writeup/</guid><description>DefCamp D-CTF BitDebit² writeup covering a single-bit arbitrary flip, FSOP and JOP through glibc FILE structures, setcontext-based code execution, and a seccomp ABI bypass to recover the flag.</description><pubDate>Fri, 02 Oct 2026 10:15:21 GMT</pubDate></item><item><title>arbitrary funds sweep dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/arbitrary-funds-sweep-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/arbitrary-funds-sweep-dctf-2026-writeup/</guid><description>DefCamp D-CTF Arbitrary Funds Sweep writeup covering CREATE2 address reuse across L1 and L2, reproducing the owner contract at the expected address, and draining the vault through the deployed Saylor contract.</description><pubDate>Fri, 02 Oct 2026 10:12:35 GMT</pubDate></item><item><title>legacy dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/legacy-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/legacy-dctf-2026-writeup/</guid><description>DefCamp D-CTF Legacy writeup covering a localhost-only root note service, unsafe raw note uploads, a Python 2 JSON parsing DoS, cron-triggered gcore memory dumps, root password recovery from process memory, and final privilege escalation via SUID su.</description><pubDate>Thu, 01 Oct 2026 21:59:12 GMT</pubDate></item><item><title>sea of theft dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/sea-of-theft-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/sea-of-theft-dctf-2026-writeup/</guid><description>DefCamp D-CTF Sea of Theft: Pirate.io writeup covering WASM reverse engineering, hidden asset extraction, an exposed old dev release, and a client-trust bug that lets players bypass movement restrictions to obtain all three flags.</description><pubDate>Thu, 01 Oct 2026 21:57:51 GMT</pubDate></item><item><title>defcamp supply dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/defcamp-supply-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/defcamp-supply-dctf-2026-writeup/</guid><description>DefCamp D-CTF Supply writeup covering a race condition in the daily credit redemption system, bypassing the credit limit with concurrent requests from multiple IPs, purchasing the Zero Day Debugger, and exploiting command injection to retrieve the flag.</description><pubDate>Thu, 01 Oct 2026 21:56:10 GMT</pubDate></item><item><title>coreweb dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/coreweb-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/coreweb-dctf-2026-writeup/</guid><description>DefCamp D-CTF CoreWeb writeup covering Chromium version disclosure, exploitation of CVE-2025-0291, reverse shell access, and retrieving the flag from the challenge container.</description><pubDate>Thu, 01 Oct 2026 21:54:36 GMT</pubDate></item><item><title>dungeon dctf 2026 writeup</title><link>https://www.researchnode.net/writeups/dungeon-dctf-2026-writeup/</link><guid>https://www.researchnode.net/writeups/dungeon-dctf-2026-writeup/</guid><description>DefCamp D-CTF Dungeon writeup: Drupal 10 JSON:API SQL injection, PostgreSQL file read with pg_read_file, admin login token forgery, and remote code execution through a custom ArcaneLoad module.</description><pubDate>Thu, 01 Oct 2026 21:52:23 GMT</pubDate></item></channel></rss>
