A Very Good Place to Start
CTF

A Very Good Place to Start

ImaginaryCTF 17/11/2022. 75 points. 64-bit binary. Buffer Overflow. Redirecting program execution
Ancient Interface
CTF

Ancient Interface

64-bit binary. Buffer Overflow. ret2libc
Antidote
CTF

Antidote

ARM 32-bit binary. Buffer Overflow. ret2csu. ret2libc
Auth-or-out
CTF

Auth-or-out

64-bit binary. Heap exploitation. Integer overflow. Heap overflow. ret2libc
Baby Note(streses)
CTF

Baby Note(streses)

HackOn CTF 2025. 64-bit binary. OOB. Buffer Overflow. Canary bypass. ret2libc
baby-talk
CTF

baby-talk

DiceCTF 2024 Quals. 64-bit binary. Heap exploitation. Null-byte poison. Overlapping chunks. Tcache poisoning
basic-file-exploit
CTF

basic-file-exploit

picoCTF 2022. 100 points. Coding bug exploit
Bat Computer
CTF

Bat Computer

64-bit binary. Buffer Overflow. Shellcode
Bizz Fuzz
CTF

Bizz Fuzz

picoCTF 2021. 500 points. 32-bit binary. Reversing. Long way to a hidden Buffer Overflow. Redirecting program execution
Blackbox
CTF

Blackbox

Blackbox testing. No debugging, no source code, no assembly
Blacksmith
CTF

Blacksmith

64-bit binary. seccomp rules. open-read-write shellcode
BOF that's too ez
CTF

BOF that's too ez

HackOn CTF 2025. 64-bit binary. Buffer Overflow. ROP. Stack Pivot. ret2dlresolve
Bon-nie-appetit
CTF

Bon-nie-appetit

64-bit binary. Heap exploitation. Off-by-one. Overlapping chunks. Tcache poisoning
Cache Me Outside
CTF

Cache Me Outside

picoCTF 2021. 70 points. 64-bit binary. Heap exploitation. Tcache poisoning
clutter-overflow
CTF

clutter-overflow

picoMini by redpwn. 150 points. 64-bit binary. Buffer Overflow. Local variable modification
Control Room
CTF

Control Room

64-bit binary. OOB. GOT overwrite
Control Room
CTF

Control Room

HTB CA 2023. 64-bit binary. OOB. GOT overwrite
CRSid
CTF

CRSid

64-bit binary. Heap exploitation. Safe-linking. Out-of-bounds write. Tcache poisoning. Exit handlers
CVE-XXXX-XXXX
CTF

CVE-XXXX-XXXX

picoCTF 2022. 100 points. CVE Search
Dead or Alive
CTF

Dead or Alive

64-bit binary. Heap exploitation. House of Spirit. Heap feng-shui. Overlapping chunks. Tcache poisoning. TLS-storage dtor_list
Dead or Alive
CTF

Dead or Alive

HTB UniCTF 2024. 64-bit binary. Heap exploitation. House of Spirit. Heap feng-shui. Overlapping chunks. Tcache poisoning. TLS-storage dtor_list
Dragon Army
CTF

Dragon Army

64-bit binary. Heap exploitation. Fast Bin dup. Messing with main_arena
Dream Diary: Chapter 3
CTF

Dream Diary: Chapter 3

64-bit binary. Heap exploitation. Null-byte poison. Overlapping chunks. Tcache poisoning. ROP chain. seccomp rules
echoland
CTF

echoland

64-bit binary. Blind Format String. Buffer Overflow. ret2libc
Entity
CTF

Entity

64-bit binary. union structure. Type confusion
Entity
CTF

Entity

64-bit binary. Union structure. Type confusion
Fake Snake
CTF

Fake Snake

Python internals. Fake object primitive
Favorite Color
CTF

Favorite Color

32-bit binary. Buffer Overflow. Calling a function with arguments
fermat-strings
CTF

fermat-strings

picoMini by redpwn. 250 points. 64-bit binary. Format String. GOT overwrite and ASLR bypass
FileStorage
CTF

FileStorage

64-bit binary. Buffer Overflow. Format String vulnerability. FILE structure attack. GOT overwrite
filtered-shellcode
CTF

filtered-shellcode

picoCTF 2021. 160 points. 32-bit binary. Custom shellcode
Finale
CTF

Finale

64-bit binary. Buffer Overflow. open-read-write ROP chain
Finale
CTF

Finale

64-bit binary. Buffer Overflow. open-read-write ROP chain
Fleet Management
CTF

Fleet Management

64-bit binary. seccomp rules. Custom shellcode
fno-stack-protector
CTF

fno-stack-protector

Black Hat MEA CTF 2022. 64-bit binary. Buffer Overflow. Redirect program execution
Format
CTF

Format

64-bit binary. Format String vulnerability
Format muscle
CTF

Format muscle

CrewCTF 2024. Format String vulnerability. musl libc. Exit handlers
Getting Started
CTF

Getting Started

Buffer Overflow
Gloater
CTF

Gloater

HTB CA 2024. 64-bit binary. Heap exploitation. House of Spirit. Overlapping chunks. Tcache poisoning. TLS-storage dtor_list
Great Old Talisman
CTF

Great Old Talisman

64-bit binary. Partial GOT overwrite. OOB write
Great Old Talisman
CTF

Great Old Talisman

HTB UniCTF 2023. 64-bit binary. Partial GOT overwrite. OOB write
Guessing Game 1
CTF

Guessing Game 1

picoCTF 2020 Mini-Competition. 250 points. 64-bit static binary. Buffer Overflow. ROP chain
Guessing Game 2
CTF

Guessing Game 2

picoCTF 2020 Mini-Competition. 300 points. 32-bit binary. Buffer Overflow and Format String. ret2libc. Bypass ASLR and canary
Hellhound
CTF

Hellhound

64-bit binary. Heap exploitation. House of Spirit
Hello World!
CTF

Hello World!

64-bit binary. Buffer Overflow. Redirecting program execution
Here's a LIBC
CTF

Here's a LIBC

picoCTF 2021. 90 points. 64-bit binary. Buffer Overflow. ret2libc
Highlighter
CTF

Highlighter

ImaginaryCTF 06/09/2022. 50 points. 64-bit binary. Arbitrary write primitive
Highlights
CTF

Highlights

ImaginaryCTF 05/09/2022. 50 points. 64-bit binary. Arbitrary read primitive
HTB Console
CTF

HTB Console

64-bit binary. Buffer Overflow. ret2libc
Hunting
CTF

Hunting

32-bit binary. Egg Hunter
Instructive
CTF

Instructive

ImaginaryCTF 12/01/2023. 50 points. 64-bit binary. Buffer Overflow
Jeeves
CTF

Jeeves

64-bit binary. Buffer Overflow. Local variable modification
Kerbab
CTF

Kerbab

HackOn CTF 2024. Kernel exploitation. Heap exploitation. Off-by-one. seccomp rules
Kernel Adventures: Part 1
CTF

Kernel Adventures: Part 1

Kernel exploitation. Password hash cracking. Race condition. Double Fetch
knote
CTF

knote

Kernel exploitation. Heap exploitation. seq_operations. ret2user
La casa de papel
CTF

La casa de papel

HackOn CTF 2024. 64-bit binary. Heap exploitation. Large Bin attack. FILE structure attack. Stack Pivot. ROP chain
Labyrinth
CTF

Labyrinth

HTB CA 2023. 64-bit binary. Buffer Overflow. Redirecting program execution
Lazy Game Challenge
CTF

Lazy Game Challenge

Integer operations
Leet Test
CTF

Leet Test

64-bit binary. Format String vulnerability
Lesson
CTF

Lesson

Questions about binary exploitation
Math Door
CTF

Math Door

64-bit binary. Heap exploitation. Heap feng shui. Tcache poisoning. FILE structure attack
Math Door
CTF

Math Door

HTB CA 2023. 64-bit binary. Heap exploitation. Heap feng shui. Tcache poisoning. FILE structure attack
Maze
CTF

Maze

OverTheWire - Maze
Maze of Mist
CTF

Maze of Mist

32-bit binary. Buffer Overflow. vDSO ROP. sys_execve
Maze of Mist
CTF

Maze of Mist

HTB CA 2024. 32-bit binary. Buffer Overflow. vDSO ROP. sys_execve
Nightmare
CTF

Nightmare

64-bit binary. Format String vulnerability. GOT overwrite
No Return
CTF

No Return

64-bit static binary. JOP. sys_rt_sigreturn and sys_execve
Noleak
CTF

Noleak

HackOn CTF 2024. 64-bit binary. ROP. ret2dlresolve
Note father - Redemption
CTF

Note father - Redemption

HackOn CTF 2025. 64-bit binary. Heap exploitation. Tcache poisoning. TLS-Storage dtor_list
Notepad as a Service
CTF

Notepad as a Service

ImaginaryCTF 11/07/2022. 75 points. 64-bit binary. Buffer Overflow. ret2libc. Bypass ASLR and canary
Nowhere to go
CTF

Nowhere to go

64-bit binary. Buffer Overflow. vDSO ROP. sys_execve. seccomp rules
Old Bridge
CTF

Old Bridge

64-bit binary. Buffer Overflow. Brute force. Stack Pivot. ret2libc
Optimistic
CTF

Optimistic

64-bit binary. Buffer Overflow. Integer Overflow. Alphanumeric shellcode
Oracle
CTF

Oracle

HTB CA 2024. 64-bit binary. Heap exploitation. Buffer Overflow. ROP
Oxidized ROP
CTF

Oxidized ROP

64-bit binary. Rust. Buffer Overflow. Unicode characters. Local variable modification
Pandora's Box
CTF

Pandora's Box

HTB CA 2023. 64-bit binary. Buffer Overflow. ret2libc
Picture Magic
CTF

Picture Magic

64-bit binary. Heap exploitation. Heap feng shui. House of Einherjar. Format String vulnerability
Pixel Audio
CTF

Pixel Audio

64-bit binary. Format String vulnerability. Local variable modification
Poor Login
CTF

Poor Login

64-bit binary. Heap exploitation. Use After Free
Pumpkin Stand
CTF

Pumpkin Stand

64-bit binary. Integer Overflow
Pumpking
CTF

Pumpking

64-bit binary. seccomp rules. Custom shellcode
PwnShop
CTF

PwnShop

64-bit binary. Buffer Overflow. PIE and ASLR bypass. Special ROP chain. ret2libc
Quememu
CTF

Quememu

HackOn CTF 2024. PCI device. MMIO. qemu escape. OOB read and write. mprotect and shellcode
Questionnaire
CTF

Questionnaire

Questions about binary exploitation
Reg
CTF

Reg

64-bit binary. Buffer Overflow. Redirecting program execution
Regularity
CTF

Regularity

64-bit binary. Buffer Overflow. ret2reg. Shellcode
RIP my bof
CTF

RIP my bof

32-bit binary. Buffer Overflow. Redirecting program execution
Robot Factory
CTF

Robot Factory

64-bit binary. Buffer Overflow. Threads. Canary bypass. ret2libc
Robot Factory
CTF

Robot Factory

Black Hat MEA CTF 2022. 64-bit binary. Heap exploitation. Unsorted Bin attack. Fast Bin attack. GOT overwrite
rop-2.35
CTF

rop-2.35

SECCON CTF Quals 2023. 64-bit binary. Glibc 2.35. Buffer Overflow. ROP
SaaS
CTF

SaaS

picoMini by redpwn. 350 points. 64-bit binary. seccomp rules. Custom shellcode
Sacred Scrolls
CTF

Sacred Scrolls

HTB UniCTF 2022. 64-bit binary. Buffer Overflow. ret2libc
Sacred Scrolls: Revenge
CTF

Sacred Scrolls: Revenge

64-bit binary. Buffer Overflow. ret2libc
Sacred Scrolls' Revenge
CTF

Sacred Scrolls' Revenge

HTB UniCTF 2022. 64-bit binary. Buffer Overflow. ret2libc
scrambler
CTF

scrambler

Securinets Finals 2022. 64-bit binary. ROP. ret2libc. GOT overwrite. Stack Pivot. seccomp rules
Secret Note
CTF

Secret Note

Black Hat MEA CTF 2022. 64-bit binary. Buffer Overflow. Format String vulnerability. ret2libc. PIE and canary bypass
seed-sPRiNG
CTF

seed-sPRiNG

picoCTF 2019. 350 points. 32-bit binary. PRNG seed
Shell time!
CTF

Shell time!

32-bit binary. Buffer Overflow. ret2libc
Shooting star
CTF

Shooting star

64-bit binary. Buffer Overflow. ret2libc
show-me-what-you-got
CTF

show-me-what-you-got

ImaginaryCTF 08/08/2022. 75 points. 64-bit binary. Format String vulnerability. GOT overwrite
Sick ROP
CTF

Sick ROP

64-bit static binary. Buffer Overflow. SROP and sys_mprotect
Simple bof
CTF

Simple bof

32-bit binary. Buffer Overflow. Local variable modification
Sound of Silence
CTF

Sound of Silence

64-bit binary. Glibc 2.35. Buffer Overflow. ROP
Sound of Silence
CTF

Sound of Silence

HTB CA 2024. 64-bit binary. Glibc 2.35. Buffer Overflow. ROP
Space
CTF

Space

32-bit binary. Buffer Overflow. Custom shellcode
Space pirate: Entrypoint
CTF

Space pirate: Entrypoint

64-bit binary. Format String vulnerability. Local variable modification
Space pirate: Going Deeper
CTF

Space pirate: Going Deeper

64-bit binary. Buffer Overflow. Redirecting program execution
Space pirate: Retribution
CTF

Space pirate: Retribution

64-bit binary. Buffer Overflow. ret2libc. Bypass PIE and ASLR
speedpwn
CTF

speedpwn

SekaiCTF 2024. Uninitialized values. Oracle. FILE structure attack. GOT overwrite
Spellbook
CTF

Spellbook

64-bit binary. Heap exploitation. Use After Free. Fast Bin attack
Spellbook
CTF

Spellbook

HTB UniCTF 2022. 64-bit binary. Heap exploitation. Use After Free. Fast Bin attack
Spooky Time
CTF

Spooky Time

64-bit binary. Format String vulnerability. GOT overwrite
Spooky Time
CTF

Spooky Time

64-bit binary. Format String vulnerability. GOT overwrite
Stonks
CTF

Stonks

picoCTF 2021. 20 points. 32-bit binary. Format String. Memory leaks
The Office
CTF

The Office

picoCTF 2021. 400 points. 32-bit binary. Heap exploitation. Heap overflow. PRNG. Use After Free
Trick or Deal
CTF

Trick or Deal

64-bit binary. Heap exploitation. Use After Free
Unsubscriptions Are Free
CTF

Unsubscriptions Are Free

picoCTF 2021. 100 points. 32-bit binary. Heap exploitation. Use After Free
Vault-breaker
CTF

Vault-breaker

64-bit binary. Bug abuse. XOR cipher
Void
CTF

Void

64-bit binary. Buffer Overflow. ret2dlresolve
Void
CTF

Void

HTB CA 2023. 64-bit binary. Buffer Overflow. ret2dlresolve
zero_to_hero
CTF

zero_to_hero

picoCTF 2019. 500 points. 64-bit binary. Heap exploitation. Null-byte poison. Tcache poisoning
Zombiedote
CTF

Zombiedote

64-bit binary. Heap exploitation. OOB read and write. Integer Overflow. Floating point numbers. TLS-storage dtor_list
Zombiedote
CTF

Zombiedote

HTB UniCTF 2023. 64-bit binary. Heap exploitation. OOB read and write. Integer Overflow. Floating point numbers. TLS-storage dtor_list
Zombienator
CTF

Zombienator

64-bit binary. Heap exploitation. Buffer Overflow. Floating point numbers. Canary bypass. ret2libc. Oracle
Zombienator
CTF

Zombienator

HTB UniCTF 2023. 64-bit binary. Heap exploitation. Buffer Overflow. Floating point numbers. Canary bypass. ret2libc. Oracle