kunte_ (@kunte_ctf) 's Twitter Profile
kunte_

@kunte_ctf

CTF Player with @FluxFingers | Ph.D. Student

ID: 40940265

calendar_today18-05-2009 19:01:16

224 Tweet

263 Followers

251 Following

OWASP Germany (@owasp_de) 's Twitter Profile Photo

Moin! In Hamburg gibt's in knapp 2 Wochen interessantes zu Browser Security -- online. Lukas Knittel (kunte_) stellt u.a. seine Forschungen zu XS-Leaks vor . Auf der ACM CCS gab's dafür einen "Best Paper Award" ! meetup.com/de-DE/OWASP-Ha… Vortrag ist wie immer frei.

terjanq (@terjanq) 's Twitter Profile Photo

#GoogleCTF is over! This year I prepared a race-condition based challenge which was a combination of #xsleaks #xss and other interesting client-side bugs. The challenge was solved by 10 teams and had unintended solutions, some of which are awesome! 😊 gist.github.com/terjanq/7c1a71…

FluxFingers (@fluxfingers) 's Twitter Profile Photo

Less than 24h until Hacklu CTF 2022 and the registration is now open! Sign up at flu.xxx and prepare yourself for the finest hacking. #Hack_lu #CTF

Less than 24h until Hacklu CTF 2022 and the registration is now open! Sign up at flu.xxx and prepare yourself for the finest hacking.
#Hack_lu #CTF
FluxFingers (@fluxfingers) 's Twitter Profile Photo

The Hacklu 2022 CTF is over! Thank you for playing! Of course special congrats to the top 3 teams! 🥳 🏆 🥇 organizers 🥈 justCatTheFish 🥉 💦 CTF: flu.xxx Challenges will still be up for a while. See you next Year! #hacklu #ctf FluxFingers

The Hacklu 2022 CTF is over!

Thank you for playing!

Of course special congrats to the top 3 teams! 🥳 🏆
🥇 organizers
🥈 justCatTheFish
🥉 💦

CTF: flu.xxx

Challenges will still be up for a while. See you next Year!

#hacklu #ctf <a href="/fluxfingers/">FluxFingers</a>
terjanq (@terjanq) 's Twitter Profile Photo

Helped justCatTheFish with yet another ctf and solved two highest scored challenges: HTPL from BitK and foodAPI from kunte_. The former was a JS sandbox escape and the latter was about 0day in #denodb. Some useful tricks 🙃 gist.github.com/terjanq/1926a1… #hacklu FluxFingers

kunte_ (@kunte_ctf) 's Twitter Profile Photo

Just for completeness here is my solve script: files.veryhax.ninja/solve-foodapi-… For anyone that wants another challenge try exploit this, with mysql instead of sqlite. 😈

- (@lambdafu) 's Twitter Profile Photo

✨Our paper "Isolated and Exhausted: Attacking Operating Systems via Site Isolation in the Browser" will appear at USENIX Security '23 and is now available as a preprint: usenix.org/conference/use… This work is by Matthias Gierlings, me (-), and Jörg Schwenk 🧵👇

pspaul (@pspaul95) 's Twitter Profile Photo

Super excited to publish this blog post! One of the most fun bugs I exploited so far, had to get creative and lose my mind reading the CSS spec for 2 days 🙃

FluxFingers (@fluxfingers) 's Twitter Profile Photo

Hacklu CTF is running at full steam with still ~23h left! 🚩 We got some great challenges waiting for you, including a 28-year-old 0-day in SSH, a Mastodon n-day, a QEMU escape, and many many more. Come try your luck 🎱👉 flu.xxx

Florian (@fh4ntke) 's Twitter Profile Photo

Can server-side scanning research be legal and ethical? For our upcoming IEEE S&P paper "Where are the red lines?" we talked to experts on law and ethics, and web operators. We discussed challenges, solutions and various fictional research scenarios. swag.cispa.saarland/papers/hantke2…

Can server-side scanning research be legal and ethical? For our upcoming <a href="/IEEESSP/">IEEE S&P</a> paper "Where are the red lines?" we talked to experts on law and ethics, and web operators. We discussed challenges, solutions and various fictional research scenarios. swag.cispa.saarland/papers/hantke2…
pspaul (@pspaul95) 's Twitter Profile Photo

Super excited to present this research at DEF CON! If you think SQL Injections have become a boring and repetitive topic, think again. There's a whole new layer to explore 👀

realansgar (@realansgar) 's Twitter Profile Photo

I found XSS in Roundcube and released a new announcement blog post about it today. Already excited to share the full details in a few weeks after people patched :)

FluxFingers (@fluxfingers) 's Twitter Profile Photo

Hacklu CTF is still running for ~23h! We still have some unsolved challenges, including: - 📱Android Flutter exploitation - 🦊 2 webs with Firefox bots - 🐒 pwning a 17 year old SpiderMonkey - ✍️ LaTeX madness Come play: flu.xxx