CHALLENGES
-
Start
100 pts
Solved 6848 times. sces60107Just a start.
Don't know how to start?
Check GEF 101 - Solving pwnable.tw/start by @_hugsy
nc chall.pwnable.tw 10000
-
orw
100 pts
Solved 5104 times. sces60107Read the flag from
/home/orw/flag
.Only
open
read
write
syscall are allowed to use.nc chall.pwnable.tw 10001
-
CVE-2018-1160
100 pts
Solved 120 times. c2w2m2There is an old version Netatalk with some vulnerabilities, such as CVE-2018-1160.
Can you develop a 1-day exploit for this challenge? :p
The Kernel version is:
Linux ubuntu 4.9.0-x86_64-linode79 #1 SMP Mon Dec 12 13:17:30 EST 2016 x86_64 x86_64 x86_64 GNU/Linux
Hint:
Notice, Kernel version may be changed after the environment updated.
You can get the current version from the the other challenge.nc chall.pwnable.tw 10002
-
-
-
-
-
-
applestore
200 pts
Solved 1152 times. jinmo123tomcr00se rooted the galaxy S5, but we need you to jailbreak the iPhone8!
nc chall.pwnable.tw 10104
-
-
-
-
-
Starbound
250 pts
Solved 561 times. nneonneoLet's play starbound together!
multi-player features are disabled.
nc chall.pwnable.tw 10202
-
Spirited Away
300 pts
Solved 722 times. nneonneoThanks for watching Spirited Away !
Please leave some comments to help us improve our next movie !
nc chall.pwnable.tw 10204
-
-
CVE-2018-10387
250 pts
Solved 95 times. NextLineSingled-threaded TFTP Server Open Source Freeware Windows/Unix for PXEBOOT, firmware load, support tsize, blksize, timeout, server port ranges, block number rollover for large files, and remote code execution.
nc chall.pwnable.tw 10206
-
Bounty Program α
300 pts
Solved 65 times. NextLineOnly PPP got a bounty in HITCON CTF final 2019. :p
flag:
/home/bounty_program/flag
nc chall.pwnable.tw 10208
-
-
-
BookWriter
350 pts
Solved 524 times. CharoI fixed some bug of memo from bkp CTF 2017 and modified some control flow, but it's still pwnable.
Can you pwn it again?
nc chall.pwnable.tw 10304
-
-
-
-
-
-
-
WannaHeap
400 pts
Solved 127 times. CharoDo you like heap challege?
This challenge is running on Ubuntu 17.04
nc chall.pwnable.tw 10305
-
-
HITCON FTP
400 pts
Solved 29 times. perniciousNobody find all vulnerabilities in HITCON CTF final 2019. :'(
flag:/home/hitcon_ftp/flag
nc chall.pwnable.tw 10309
-
Stupid Robot
400 pts
Solved 19 times. RiatreCreate your own robot and capture the flag!
Note:
/tmp
will be cleaned up every 5 minutes.nc chall.pwnable.tw 10311
-
-
Ghost Party
450 pts
Solved 198 times. xellosWelcome to ghost island and enjoy the ghost party.
nc chall.pwnable.tw 10401
-
-
unexploitable
500 pts
Solved 507 times. xellosThe original challenge is on pwnable.kr and it is solvable.
This time we fix the vulnerability and now we promise that the service is unexploitable.
nc chall.pwnable.tw 10403
-
BabyAllocator
500 pts
Solved 69 times. xellosDo you like memory allocator?
Love, Service , Responsibility, Discipline !
nc chall.pwnable.tw 10404
-
OmegaGo
500 pts
Solved 75 times. xellosWant to fight with AlphaGo?
Beat OmegaGo first.
Note: The game rule has been simplified to make life easier.
nc chall.pwnable.tw 10405
-
Food Store
500 pts
Solved 44 times. l4w.ioWelcome to my food store!
This challenge is running on Ubuntu 17.04
nc chall.pwnable.tw 10406
-
Bounty Program β
500 pts
Solved 47 times. perniciousSome team and me patched some bug in
bounty program alpha
, but it's still pwnable :(Can you pwn it again?
flag:
/home/bounty_program/flag
nc chall.pwnable.tw 10410
-
-
Bash Revenge
500 pts
Solved 38 times. mrbaconguyThere is an old version bash with some vulnerabilities, such as CVE-2016-9401.
Can you develop a 1-day exploit for this challenge? :pnc chall.pwnable.tw 10407
-
-
-
criticalheap
200 pts
Solved 237 times. xellosThere are some secrets . Try to capture
/home/critical_heap++/flag
.We recommend you to use the provided docker environment to develop your exploit:
nc chall.pwnable.tw 10500
-
criticalheap++
600 pts
Solved 87 times. lucasIt's very crazy! Don't do it!!
You need to get a shell !!
We recommend you to use the provided docker environment to develop your exploit:
nc chall.pwnable.tw 10500
-
Digimon
600 pts
Solved 23 times. xellosWelcome to the world of digimon!
Try to catch as many as possible! :P
nc chall.pwnable.tw 10501
2024-12-04 05:53:54
hakai5905
unexploitable
2024-12-03 22:50:39
Galsh
calc
2024-12-03 18:41:36
kubistika
Spirited Away
2024-12-03 16:46:29
nigmaz
Alive Note
2024-12-03 16:40:22
M4zh4tt2r
De-ASLR
2024-12-03 16:18:59
buptpostman
orw
2024-12-03 14:57:10
Cyberangel_
hacknote
2024-12-03 13:27:58
Cyberangel_
calc
2024-12-02 16:48:47
Galsh
orw
2024-12-02 12:26:08
poniponiponiponiponiponiponiponi
orw
2024-12-02 12:15:36
poniponiponiponiponiponiponiponi
Start
2024-12-02 08:50:49
moiz
Re-alloc
2024-12-01 20:53:57
Galsh
Start
2024-12-01 14:12:23
南行
Start
2024-12-01 14:09:47
南行
orw
2024-12-01 13:45:48
dynhlucw
BookWriter
2024-12-01 01:25:08
Sy Joon
orw
2024-11-30 23:33:37
poiko
Re-alloc
2024-11-30 21:43:49
c0raline
BookWriter
2024-11-30 13:41:19
kubistika
3x17