Saarsec

saarsec

Schwenk and pwn
Page 11 of 18

ENOWARS 3 WriteUp telescopy

16.07.2019 by alfink and Daniel Weber

Telescopy was a HTTP service written in Python which models an interface for storing information about planets.

Read more

ENOWARS 3 WriteUp shittr

14.07.2019 by Jonas Bushart

Shittr was a Twitter-like webservice written in bash and part of ENOWARS 3 in July 2019.

Read more

ENOWARS 3 WriteUp deaddrop

12.07.2019 by Lukas and Markus

Deaddrop was a HTTP service written in Erlang. It models a simple bulletin board system, where users can create topics and reply to them. Topics can either be public or private (where users have to know their name to access them). A logical flaw and a path traversal-like vulnerability allow attackers to list the private topics and steal data.

Read more