# ctf

Capture-the-Flag (CTF) competitions are computer security competitions where participants solve security-themed challenges to capture flags and earn points.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Caught Sleeping at Work(queue) -- Zephyr Podcast #050

DevFeed: [Caught Sleeping at Work(queue) -- Zephyr Podcast #050](<https://devfeed.tech/articles/caught-sleeping-at-work-queue-zephyr-podcast-050-38674.md>)

Original publisher: [Read original article](<https://zephyrproject.org/caught-sleeping-at-workqueue-zephyr-podcast-050/>)

Author: Benjamin Cabé

Published: 2026-09-11T12:46:06Z

Content type: news

Language: en

Sources: [Zephyr Project](<https://devfeed.tech/sources/zephyr-project-2.md>)

Topics: [WebAssembly](<https://devfeed.tech/topics/web-assembly.md>), [qemu](<https://devfeed.tech/topics/qemu.md>), [ESP32](<https://devfeed.tech/topics/esp32.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Espressif](<https://devfeed.tech/topics/espressif.md>), [Arduino](<https://devfeed.tech/topics/arduino.md>), [RISC-V](<https://devfeed.tech/topics/riscv.md>), [cortex m4](<https://devfeed.tech/topics/cortex-m4.md>), [Ethernet](<https://devfeed.tech/topics/ethernet.md>), [Modbus](<https://devfeed.tech/topics/modbus.md>), [USB](<https://devfeed.tech/topics/usb.md>), [Linux](<https://devfeed.tech/topics/linux.md>)

Tags: [blog](<https://devfeed.tech/tags/blog.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [esp32](<https://devfeed.tech/tags/esp32.md>), [espressif](<https://devfeed.tech/tags/espressif.md>), [ethernet](<https://devfeed.tech/tags/ethernet.md>), [linux](<https://devfeed.tech/tags/linux.md>), [modbus](<https://devfeed.tech/tags/modbus.md>), [perfetto](<https://devfeed.tech/tags/perfetto.md>), [podcast](<https://devfeed.tech/tags/podcast.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [risc-v](<https://devfeed.tech/tags/risc-v.md>), [usb](<https://devfeed.tech/tags/usb.md>), [webassembly](<https://devfeed.tech/tags/webassembly.md>), [zephyr](<https://devfeed.tech/tags/zephyr.md>)

### AI overview

Episode 50 of the Zephyr podcast covers the Zephyr Developer Summit schedule, Analog Devices' acquisition of Alif Semiconductor, new sensor and board support, SMP coredump improvements, CTF trace conversion to Perfetto, WebAssembly Micro Runtime documentation, and other Zephyr developments.

### Source excerpt

ADI buys Alif, WebAssembly in Zephyr, CTF traces reach Perfetto, and why you should never sleep in the system workqueue.

## How the Frontend CTF was created and what its first game involved

DevFeed: [How the Frontend CTF was created and what its first game involved](<https://devfeed.tech/articles/frontend-ctf-24861.md>)

Original publisher: [Read original article](<https://habr.com/ru/companies/yandex/articles/1051050/>)

Author: DarkMeFoDy (Яндекс)

Published: 2026-07-09T07:02:50Z

Content type: article

Language: ru

Sources: [Яндекс - Как мы делаем Яндекс / Статьи](<https://devfeed.tech/sources/source.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Front end](<https://devfeed.tech/topics/frontend.md>), [.NET Conf](<https://devfeed.tech/topics/net-conf.md>)

Tags: [ctf](<https://devfeed.tech/tags/ctf.md>), [flag](<https://devfeed.tech/tags/flag.md>), [frontend](<https://devfeed.tech/tags/frontend.md>), [tag-2c039dce53be](<https://devfeed.tech/tags/tag-2c039dce53be.md>), [tag-2cee1cb23725](<https://devfeed.tech/tags/tag-2cee1cb23725.md>), [tag-44d9110ce940](<https://devfeed.tech/tags/tag-44d9110ce940.md>), [tag-caea14e49da5](<https://devfeed.tech/tags/tag-caea14e49da5.md>)

### AI overview

The article describes the creation and development of the Frontend CTF competition held as part of the "Я 💛 Фронтенд" conference. It explains the format, the first game's origins, its challenges and flags, and the frontend, networking, and developer-tool knowledge used to solve tasks.

### Source excerpt

Привет, Хабр! Меня зовут Никита, и я один из тех, кто каждый год делает Frontend CTF в рамках конференции "Я 💛 Фронтенд". Сегодня хочу с вами поделиться, как и зачем мы ежегодно делаем соревнование для тех, кто любит пробираться сквозь загадки, секреты и спрятанные подсказки в браузерной игре. Читать далее

## Pathfinding Labs: Deploy, test, and learn from 100+ intentionally vulnerable AWS environments

DevFeed: [Pathfinding Labs: Deploy, test, and learn from 100+ intentionally vulnerable AWS environments](<https://devfeed.tech/articles/pathfinding-labs-deploy-test-and-learn-from-100-intentionally-vulnerable-aws-environments-8289.md>)

Original publisher: [Read original article](<https://securitylabs.datadoghq.com/articles/introducing-pathfinding-labs/>)

Author: Seth Art

Published: 2026-05-18T00:00:00Z

Content type: article

Language: en

Sources: [Datadog Security Labs](<https://devfeed.tech/sources/datadog-security-labs.md>)

Topics: [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [AWS IAM](<https://devfeed.tech/topics/aws-iam.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>), [Go Language](<https://devfeed.tech/topics/go-language.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [Text-based user interface](<https://devfeed.tech/topics/tui.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Detection engineering](<https://devfeed.tech/topics/detection-engineering.md>), [Security & compliance, Cloud security](<https://devfeed.tech/topics/security-compliance-cloud-security.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [aws-iam](<https://devfeed.tech/tags/aws-iam.md>), [cli](<https://devfeed.tech/tags/cli.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [cloud-security](<https://devfeed.tech/tags/cloud-security.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [go](<https://devfeed.tech/tags/go.md>), [iam](<https://devfeed.tech/tags/iam.md>), [sandbox](<https://devfeed.tech/tags/sandbox.md>), [security](<https://devfeed.tech/tags/security.md>), [techniques](<https://devfeed.tech/tags/techniques.md>), [terraform](<https://devfeed.tech/tags/terraform.md>), [tool](<https://devfeed.tech/tags/tool.md>), [tools](<https://devfeed.tech/tags/tools.md>), [validation](<https://devfeed.tech/tags/validation.md>)

### AI overview

Pathfinding Labs is a collection of more than 100 intentionally vulnerable AWS environments for practicing and validating detection of IAM privilege-escalation and other cloud security misconfigurations. The project includes a web catalog with CTF-style hints and solutions, Terraform-based labs, and plabs, a Go CLI with an interactive terminal interface for deploying and exploiting the labs.

### Source excerpt

Introducing Pathfinding Labs, a collection of intentionally vulnerable AWS environments for red teamers and blue teamers to deploy, exploit, and use for detection validation.

## Fetch the Flag CTF 2026: Official Challenge Write-Ups & Community Highlights

DevFeed: [Fetch the Flag CTF 2026: Official Challenge Write-Ups & Community Highlights](<https://devfeed.tech/articles/fetch-the-flag-ctf-2026-official-challenge-write-ups-community-highlights-7919.md>)

Original publisher: [Read original article](<https://snyk.io/blog/fetch-the-flag-ctf-2026-official-challenge-write-ups/>)

Author: Ben Sadeghipour (NahamSec)

Published: 2026-02-23T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Web](<https://devfeed.tech/topics/web.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Reverse Engineering](<https://devfeed.tech/topics/reverse-engineering.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [developer](<https://devfeed.tech/tags/developer.md>), [interest](<https://devfeed.tech/tags/interest.md>), [python](<https://devfeed.tech/tags/python.md>), [reverse-engineering](<https://devfeed.tech/tags/reverse-engineering.md>), [security](<https://devfeed.tech/tags/security.md>), [security-labs](<https://devfeed.tech/tags/security-labs.md>), [web](<https://devfeed.tech/tags/web.md>)

### AI overview

Fetch the Flag CTF 2026's official challenge write-ups and community highlights cover more than 20 challenges across web security, AI, crypto, pwn, reverse engineering, and forensics. The article points readers to intended solutions, community perspectives, and hands-on opportunities to retry challenges.

### Source excerpt

Explore official write-ups and community highlights from the Fetch the Flag CTF 2026, featuring over 20 challenges in web security, AI, and crypto. Learn from the experts and dive into the technical details of this year's most intricate binary puzzles and web exploits.

## 4 Reasons Why CTFs Are One of the Best Ways to Grow in Cybersecurity

DevFeed: [4 Reasons Why CTFs Are One of the Best Ways to Grow in Cybersecurity](<https://devfeed.tech/articles/4-reasons-why-ctfs-are-one-of-the-best-ways-to-grow-in-cybersecurity-7875.md>)

Original publisher: [Read original article](<https://snyk.io/blog/ctfs-grow-cybersecurity/>)

Author: Ben Sadeghipour (NahamSec)

Published: 2026-01-27T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Network](<https://devfeed.tech/topics/network.md>), [Reverse Engineering](<https://devfeed.tech/topics/reverse-engineering.md>)

Tags: [americas](<https://devfeed.tech/tags/americas.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [career](<https://devfeed.tech/tags/career.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [developer](<https://devfeed.tech/tags/developer.md>), [interest](<https://devfeed.tech/tags/interest.md>), [network](<https://devfeed.tech/tags/network.md>), [reverse-engineering](<https://devfeed.tech/tags/reverse-engineering.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-learn](<https://devfeed.tech/tags/snyk-learn.md>)

### AI overview

The article explains how Capture The Flag competitions help people grow in cybersecurity by exposing them to diverse technical areas, encouraging hands-on learning, and creating professional connections.

### Source excerpt

Capture The Flag (CTF) competitions are a powerful way to accelerate your cybersecurity career by exposing you to real-world vulnerabilities and diverse technical niches. Discover why CTFs are one of the best methods to grow your expertise and professional network.

## exploits.club Weekly(ish) Newsletter 92 - S23 N-Day PoCs, Printer Overflows, DNG OOB Writes, And More

DevFeed: [exploits.club Weekly(ish) Newsletter 92 - S23 N-Day PoCs, Printer Overflows, DNG OOB Writes, And More](<https://devfeed.tech/articles/exploits-club-weekly-ish-newsletter-92-s23-n-day-pocs-printer-overflows-dng-oob-writes-and-more-32635.md>)

Original publisher: [Read original article](<https://blog.exploits.club/exploits-club-weekly-ish-newsletter-92-s23-n-day-pocs-printer-overflows-dng-oob-writes-and-more/>)

Author: exploits.club

Published: 2025-11-21T16:10:47Z

Content type: article

Language: en

Sources: [exploits.club](<https://devfeed.tech/sources/exploits-club.md>)

Topics: [Hacking](<https://devfeed.tech/topics/hacking.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Linux](<https://devfeed.tech/topics/linux.md>), [Kernel](<https://devfeed.tech/topics/kernel.md>), [GPU](<https://devfeed.tech/topics/gpu.md>), [Qualcomm](<https://devfeed.tech/topics/qualcomm.md>), [samsung](<https://devfeed.tech/topics/samsung.md>), [Android](<https://devfeed.tech/topics/android.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Advent of Code](<https://devfeed.tech/topics/advent-of-code.md>)

Tags: [android](<https://devfeed.tech/tags/android.md>), [code](<https://devfeed.tech/tags/code.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [exploits](<https://devfeed.tech/tags/exploits.md>), [gpu](<https://devfeed.tech/tags/gpu.md>), [hacking](<https://devfeed.tech/tags/hacking.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [linux](<https://devfeed.tech/tags/linux.md>), [newsletter](<https://devfeed.tech/tags/newsletter.md>), [printer](<https://devfeed.tech/tags/printer.md>), [qualcomm](<https://devfeed.tech/tags/qualcomm.md>), [samsung](<https://devfeed.tech/tags/samsung.md>)

### AI overview

The 92nd exploits.club Weekly(ish) Newsletter rounds up recent developer and security content, including Advent-themed CTFs, Advent of Code 2025, Binary Ninja 5.2, conference slides, an exploit for Qualcomm GPU microcode vulnerability CVE-2025-21479 on a Samsung S23, Linux KASLR research, and printer security flaws.

### Source excerpt

We are so back. Annnnnyways 👇 In Case You Missed It... HEX ADVENT 2025: Crack the Advent, Conquer the Threat - STAR Labs has put together a Holiday Themed CTF open to women residing in Singapore or Malaysia. Advent of Code 2025 - It's almost the most wonderful time of

## The Ultimate Guide to Upcoming CTFs: From Beginner to Elite Hacker in 6 Months (October 2025 - April 2026)

DevFeed: [The Ultimate Guide to Upcoming CTFs: From Beginner to Elite Hacker in 6 Months (October 2025 - April 2026)](<https://devfeed.tech/articles/the-ultimate-guide-to-upcoming-ctfs-from-beginner-to-elite-hacker-in-6-months-october-2025-april-2026-8211.md>)

Original publisher: [Read original article](<https://snyk.io/blog/the-ultimate-guide-to-upcoming-ctfs/>)

Author: Stephen Thoemmes

Published: 2025-09-29T04:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Security](<https://devfeed.tech/topics/security.md>), [Embedded Software Dev](<https://devfeed.tech/topics/embedded-software-dev.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [2026](<https://devfeed.tech/tags/2026.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [beginner](<https://devfeed.tech/tags/beginner.md>), [blog](<https://devfeed.tech/tags/blog.md>), [career](<https://devfeed.tech/tags/career.md>), [competition](<https://devfeed.tech/tags/competition.md>), [complexity](<https://devfeed.tech/tags/complexity.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [embedded](<https://devfeed.tech/tags/embedded.md>), [embedded-systems](<https://devfeed.tech/tags/embedded-systems.md>), [guide](<https://devfeed.tech/tags/guide.md>), [hardware](<https://devfeed.tech/tags/hardware.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-open-source](<https://devfeed.tech/tags/snyk-open-source.md>)

### AI overview

This guide explains how to assess the difficulty of upcoming capture-the-flag competitions and plan a progression from beginner to elite events between October 2025 and April 2026. It discusses CTF Time Weight Ratings, voting rules, audience and prerequisites, event reputation, challenge complexity, specialized areas such as embedded systems and hardware security, prize pools, and career implications. The supplied text is truncated before the event listings are complete.

### Source excerpt

Master CTFs from beginner to elite hacker in 6 months with this ultimate guide! Discover top competitions, understand difficulty classifications, and strategize your path to success from October 2025 to April 2026.

## Accelerating adoption of AI for cybersecurity at DEF CON 33

DevFeed: [Accelerating adoption of AI for cybersecurity at DEF CON 33](<https://devfeed.tech/articles/accelerating-adoption-of-ai-for-cybersecurity-at-def-con-33-19800.md>)

Original publisher: [Read original article](<http://security.googleblog.com/2025/09/accelerating-adoption-of-ai-for.html>)

Author: Kimberly Samra (noreply@blogger.com)

Published: 2025-09-24T18:42:00Z

Content type: article

Language: en

Sources: [Google Online Security](<https://devfeed.tech/sources/google-online-security.md>)

Topics: [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Google](<https://devfeed.tech/topics/google.md>), [Large Language Model](<https://devfeed.tech/topics/llm.md>), [LLMs](<https://devfeed.tech/topics/llms.md>), [Learning](<https://devfeed.tech/topics/learning.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-cybersecurity](<https://devfeed.tech/tags/ai-cybersecurity.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [education](<https://devfeed.tech/tags/education.md>), [event](<https://devfeed.tech/tags/event.md>), [gemini](<https://devfeed.tech/tags/gemini.md>), [google](<https://devfeed.tech/tags/google.md>), [llms](<https://devfeed.tech/tags/llms.md>), [none](<https://devfeed.tech/tags/none.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

Google and Airbus hosted the GenSec Capture the Flag at DEF CON 33 to explore human-AI collaboration in cybersecurity. Nearly 500 participants completed introductory challenges, and participants reported that the event helped them learn how AI can support security workflows. The event also provided optional access to Sec-Gemini, Google's experimental cybersecurity AI.

### Source excerpt

Posted by Elie Bursztein and Marianna Tishchenko, Google Privacy, Safety and Security Team Empowering cyber defenders with AI is critical to tilting the cybersecurity balance back in their favor as they battle cybercriminals and keep users safe. To help accelerate adoption of AI for cybersecurity workflows, we partnered with Airbus at DEF CON 33 to host the GenSec Capture the Flag (CTF), dedicated to human-AI collaboration in cybersecurity. Our goal was to create a fun, interactive environment, where participants across various skill levels could explore how AI can accelerate their daily cybersecurity workflows. At GenSec CTF, nearly 500 participants successfully completed introductory challenges, with 23% of participants using AI for cybersecurity for the very first time. An overwhelming 85% of all participants found the event useful for learning how AI can be applied to security workflows. This positive feedback highlights that AI-centric CTFs can play a vital role in speeding up AI education and adoption in the security community. The CTF also offered a valuable opportunity for the community to use Sec-Gemini, Google's experimental Cybersecurity AI, as an optional assistant available in the UI alongside major LLMs. And we received great feedback on Sec-Gemini, with 77% of respondents saying that they had found Sec-Gemini either "very helpful" or "extremely helpful" in assisting them with solving the challenges. We want to thank the DEF CON community for the enthusiastic participation and for making this inaugural event a resounding success. The community feedback during the event has been invaluable for understanding how to improve Sec-Gemini, and we are already incorporating some of the lessons learned into the next iteration. We are committed to advancing the AI cybersecurity frontier and will continue working with the community to build tools that help protect people online. Stay tuned as we plan to share more research and key learnings from the CTF with the b

## exploits.club Weekly Newsletter 84 - Stealing Exploits, Competition Misconfigs, Android Physical Memory, And More

DevFeed: [exploits.club Weekly Newsletter 84 - Stealing Exploits, Competition Misconfigs, Android Physical Memory, And More](<https://devfeed.tech/articles/exploits-club-weekly-newsletter-84-stealing-exploits-competition-misconfigs-android-physical-memory-and-more-32641.md>)

Original publisher: [Read original article](<https://blog.exploits.club/exploits-club-weekly-newsletter-84-stealing-exploits-competition-misconfigs-android-physical-memory-and-more/>)

Author: exploits.club

Published: 2025-08-28T15:00:41Z

Content type: article

Language: en

Sources: [exploits.club](<https://devfeed.tech/sources/exploits-club.md>)

Topics: [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [race-condition](<https://devfeed.tech/topics/race-condition.md>), [HTTP](<https://devfeed.tech/topics/http.md>)

Tags: [analysis](<https://devfeed.tech/tags/analysis.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cve](<https://devfeed.tech/tags/cve.md>), [exploits](<https://devfeed.tech/tags/exploits.md>), [http](<https://devfeed.tech/tags/http.md>), [race-condition](<https://devfeed.tech/tags/race-condition.md>), [rce](<https://devfeed.tech/tags/rce.md>)

### AI overview

This newsletter highlights a reproduced in-the-wild CrushFTP exploit involving a race condition triggered by two HTTP requests, a HITCON CTF challenge involving AARCH64 PAC and BTI mitigations and exploitation, and a postmortem of Shellphish's AIxCC submission.

### Source excerpt

Someone recently reached out any said it was supposed to be "anyway" instead of....Annnnnnyways 👇 In Case You Missed It... BSides London CFP Open Now - get-em in! Honestly...nothing else really happened this week. I finished Sword Of Kaigen Resources And Write-Ups From This Week:

## Q&A Session with Snyk & John Hammond: Your Fetch the Flag Questions, Answered

DevFeed: [Q&A Session with Snyk & John Hammond: Your Fetch the Flag Questions, Answered](<https://devfeed.tech/articles/q-a-session-with-snyk-john-hammond-your-fetch-the-flag-questions-answered-8259.md>)

Original publisher: [Read original article](<https://snyk.io/blog/your-fetch-the-flag-questions-answered-with-snyk-and-john-hammond/>)

Author: Taylor Macomber; Gina Fitzpatrick

Published: 2025-04-01T04:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [snyk](<https://devfeed.tech/topics/snyk.md>), [JavaScript](<https://devfeed.tech/topics/javascript.md>), [math](<https://devfeed.tech/topics/math.md>)

Tags: [blog](<https://devfeed.tech/tags/blog.md>), [community](<https://devfeed.tech/tags/community.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [developer](<https://devfeed.tech/tags/developer.md>), [event](<https://devfeed.tech/tags/event.md>), [interest](<https://devfeed.tech/tags/interest.md>), [python](<https://devfeed.tech/tags/python.md>), [q-a](<https://devfeed.tech/tags/q-a.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [snyk-learn](<https://devfeed.tech/tags/snyk-learn.md>)

### AI overview

This article presents a live Q&A following Snyk's Fetch the Flag CTF event. Cybersecurity educator John Hammond, challenge designer Matt Kiely, and developer advocates answer questions about getting started with CTFs, collaborating with the security community, using Netcat and pwntools, and automating challenge interactions with Python socket tools. It also introduces a challenge involving JavaScript's Math.random() and discusses securely using generative AI coding tools.

### Source excerpt

Here are five standout questions and answers from Snyk's Fetch the Flag CTF event on February 27 and 28. Sit down with cybersecurity educator and developer influencer John Hammond--along with challenge designer Matt Kiely (aka huskyhacks), and developer advocates Micah Silverman, Sonya Moisset, Vandana Verma, and Elliot Ward--for a live Q&A session.

## Fetch the Flag CTF 2025 Community Writeups

DevFeed: [Fetch the Flag CTF 2025 Community Writeups](<https://devfeed.tech/articles/fetch-the-flag-ctf-2025-community-writeups-7918.md>)

Original publisher: [Read original article](<https://snyk.io/blog/fetch-the-flag-ctf-2025-community-writeups/>)

Author: Gina Fitzpatrick

Published: 2025-03-05T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Security](<https://devfeed.tech/topics/security.md>), [Web](<https://devfeed.tech/topics/web.md>), [Discord](<https://devfeed.tech/topics/discord.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [blog](<https://devfeed.tech/tags/blog.md>), [community](<https://devfeed.tech/tags/community.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [discord](<https://devfeed.tech/tags/discord.md>), [hacking](<https://devfeed.tech/tags/hacking.md>), [learning](<https://devfeed.tech/tags/learning.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

This blog presents community write-ups from Fetch the Flag CTF 2025, showing how participants solved web, binary, and exploitation challenges. It also directs readers to official write-ups and further community insights in Discord.

### Source excerpt

Discover how players tackled the challenges in Fetch the Flag CTF 2025! This blog features community write-ups breaking down solutions to web, binary, and exploitation challenges.

## Snyk's Fetch the Flag CTF is More Than Just a CTF

DevFeed: [Snyk's Fetch the Flag CTF is More Than Just a CTF](<https://devfeed.tech/articles/snyk-s-fetch-the-flag-ctf-is-more-than-just-a-ctf-8184.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyks-fetch-the-flag-ctf/>)

Author: John Hammond

Published: 2025-02-20T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Security](<https://devfeed.tech/topics/security.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [Apache Spark](<https://devfeed.tech/topics/spark.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [API](<https://devfeed.tech/topics/api.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [access-control](<https://devfeed.tech/tags/access-control.md>), [apache](<https://devfeed.tech/tags/apache.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [azure](<https://devfeed.tech/tags/azure.md>), [blog](<https://devfeed.tech/tags/blog.md>), [community](<https://devfeed.tech/tags/community.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cve](<https://devfeed.tech/tags/cve.md>), [developer](<https://devfeed.tech/tags/developer.md>), [exploits](<https://devfeed.tech/tags/exploits.md>), [security](<https://devfeed.tech/tags/security.md>), [spark](<https://devfeed.tech/tags/spark.md>), [technical](<https://devfeed.tech/tags/technical.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Snyk's Fetch the Flag is a 12-hour CTF event run with John Hammond for security professionals, practitioners, and the DevOps community. The article explains that CTF challenges can reflect real-world vulnerabilities, including insecure access control in an application and Apache Spark shell RCE associated with CVE-2022-33891.

### Source excerpt

Check out some of the previous Fetch the Flag challenges grounded in the same technical concepts and tactical material we've seen in the industry - and get excited for the 2025 Fetch the Flag!

## Hack the Base! with Supabase

DevFeed: [Hack the Base! with Supabase](<https://devfeed.tech/articles/hack-the-base-with-supabase-386.md>)

Original publisher: [Read original article](<https://supabase.com/blog/hack-the-base>)

Author: Stephen Morgan

Published: 2024-12-06T07:00:00Z

Content type: news

Language: en

Sources: [Supabase Blog](<https://devfeed.tech/sources/supabase-blog.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Learning](<https://devfeed.tech/topics/learning.md>), [Bug Bounty](<https://devfeed.tech/topics/bugbounty.md>), [Supabase](<https://devfeed.tech/topics/supabase.md>)

Tags: [bug-bounty](<https://devfeed.tech/tags/bug-bounty.md>), [competition](<https://devfeed.tech/tags/competition.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [hacking](<https://devfeed.tech/tags/hacking.md>), [leaderboard](<https://devfeed.tech/tags/leaderboard.md>), [learning](<https://devfeed.tech/tags/learning.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Supabase announces Hack the Base, a Capture the Flag cybersecurity challenge for beginner and advanced participants. Competitors investigate an education partners news site, find flags, earn points, compete for prizes, and learn to identify security vulnerabilities. A separate Bug Bounty Program is available for year-round vulnerability research on Supabase.

### Source excerpt

Play cool games, win cool prizes.

## A commitment to future generations: Snyk's 2024 Student Edition Capture The Flag Recap

DevFeed: [A commitment to future generations: Snyk's 2024 Student Edition Capture The Flag Recap](<https://devfeed.tech/articles/a-commitment-to-future-generations-snyk-s-2024-student-edition-capture-the-flag-recap-8144.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-learn-commitment-to-future/>)

Author: Michael Biocchi

Published: 2024-11-21T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Application Security](<https://devfeed.tech/topics/application-security.md>), [snyk-learn](<https://devfeed.tech/topics/snyk-learn.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [DevSecOps](<https://devfeed.tech/topics/devsecops.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [contentlab](<https://devfeed.tech/tags/contentlab.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devsecops](<https://devfeed.tech/tags/devsecops.md>), [free](<https://devfeed.tech/tags/free.md>), [learn](<https://devfeed.tech/tags/learn.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [snyk-learn](<https://devfeed.tech/tags/snyk-learn.md>), [training](<https://devfeed.tech/tags/training.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Snyk recaps its 2024 student Capture The Flag 101 Workshop, which brought together students from more than 100 schools for hands-on cybersecurity training. The article describes CTFs as practical exercises covering application security, network vulnerabilities, cryptography, and related skills, and outlines Snyk Learn's commitment to providing free training and additional student opportunities in 2025.

### Source excerpt

Looking to boost your cybersecurity skills? Snyk's CTF 101 Workshop offers a hands-on introduction to Capture the Flag competitions, empowering students to tackle real-world security challenges. Learn about application security, network vulnerabilities, and more through free, engaging training.

## Listen to the whispers: web timing attacks that actually work

DevFeed: [Listen to the whispers: web timing attacks that actually work](<https://devfeed.tech/articles/listen-to-the-whispers-web-timing-attacks-that-actually-work-7689.md>)

Original publisher: [Read original article](<https://portswigger.net/research/listen-to-the-whispers-web-timing-attacks-that-actually-work>)

Author: James Kettle

Published: 2024-08-07T18:10:21Z

Content type: article

Language: en

Sources: [PortSwigger Research](<https://devfeed.tech/sources/portswigger-research.md>)

Topics: [Web](<https://devfeed.tech/topics/web.md>), [Server](<https://devfeed.tech/topics/server.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [configuration](<https://devfeed.tech/topics/configuration.md>), [Data structures](<https://devfeed.tech/topics/data-structures.md>)

Tags: [attacks](<https://devfeed.tech/tags/attacks.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [pdf](<https://devfeed.tech/tags/pdf.md>), [presentation](<https://devfeed.tech/tags/presentation.md>), [research](<https://devfeed.tech/tags/research.md>), [scripting](<https://devfeed.tech/tags/scripting.md>), [server](<https://devfeed.tech/tags/server.md>), [web](<https://devfeed.tech/tags/web.md>)

### AI overview

This research paper presents practical web timing attack techniques for extracting server secrets and exposing hidden attack surfaces. It describes methods involving masked misconfigurations, blind data-structure injection, hidden routes, and automated exploitation, supported by real-world case studies, open-source tools, custom scripting, and a CTF.

### Source excerpt

Websites are riddled with timing oracles eager to divulge their innermost secrets. It's time we started listening to them. In this paper, I'll unleash novel attack concepts to coax out server secrets

## Snyk Fetch the Flag CTF 2023 writeup: Off the SETUID

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: Off the SETUID](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-off-the-setuid-8130.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-off-the-setuid/>)

Author: Carlos Polop; Yago Gutiérrez

Published: 2023-11-30T10:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [snyk](<https://devfeed.tech/topics/snyk.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [Kernel](<https://devfeed.tech/topics/kernel.md>), [Processes](<https://devfeed.tech/topics/processes.md>), [qemu](<https://devfeed.tech/topics/qemu.md>), [HTTP](<https://devfeed.tech/topics/http.md>), [PHP](<https://devfeed.tech/topics/php.md>), [C](<https://devfeed.tech/topics/c.md>), [Server](<https://devfeed.tech/topics/server.md>), [Network](<https://devfeed.tech/topics/network.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [c](<https://devfeed.tech/tags/c.md>), [compiler](<https://devfeed.tech/tags/compiler.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [external](<https://devfeed.tech/tags/external.md>), [http](<https://devfeed.tech/tags/http.md>), [kernel](<https://devfeed.tech/tags/kernel.md>), [network](<https://devfeed.tech/tags/network.md>), [php](<https://devfeed.tech/tags/php.md>), [process](<https://devfeed.tech/tags/process.md>), [qemu](<https://devfeed.tech/tags/qemu.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [writeup](<https://devfeed.tech/tags/writeup.md>)

### AI overview

This Snyk Fetch the Flag CTF 2023 writeup explains how to solve the Off the SETUID challenge. It examines a minimal QEMU environment with a custom kernel, identifies PHP code injection in an HTTP server, and describes escalating privileges to read the flag from the root user's home directory.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the Off the SETUID challenge, you've come to the right place. Let's walk through the solution together!

## Snyk Fetch the Flag CTF 2023 writeup: Honey Baked Messages

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: Honey Baked Messages](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-honey-baked-messages-8128.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-honey-baked-messages/>)

Author: John Hammond

Published: 2023-11-30T09:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [coding](<https://devfeed.tech/topics/coding.md>), [Script](<https://devfeed.tech/topics/script.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [coding](<https://devfeed.tech/tags/coding.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [external](<https://devfeed.tech/tags/external.md>), [python](<https://devfeed.tech/tags/python.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>)

### AI overview

A solution write-up for Snyk's 2023 Fetch the Flag CTF Honey Baked Messages challenge. It explains how to recognize and use (7, 4) Hamming codes to error-correct a file and recover the flag.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the Honey Baked Messages challenge, you've come to the right place. Let's walk through the solution together!

## Snyk Fetch the Flag CTF 2023 writeup: I Do Math

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: I Do Math](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-i-do-math-8129.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-i-do-math/>)

Author: John Hammond

Published: 2023-11-30T09:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [math](<https://devfeed.tech/topics/math.md>), [JavaScript](<https://devfeed.tech/topics/javascript.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [external](<https://devfeed.tech/tags/external.md>), [javascript](<https://devfeed.tech/tags/javascript.md>), [math](<https://devfeed.tech/tags/math.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>)

### AI overview

A write-up for Snyk's 2023 Fetch the Flag CTF explains the solution to the "I Do Math" challenge. It describes logging in with a username and PIN and using JavaScript-related challenge logic, but the supplied text omits the actual values.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the I Do Math challenge, you've come to the right place. Let's walk through the solution together!

## Snyk Fetch the Flag CTF 2023 writeup: Protect The Environment

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: Protect The Environment](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-protect-the-environment-8131.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-protect-the-environment/>)

Author: John Hammond

Published: 2023-11-30T08:00:00Z

Content type: tutorial

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Flask](<https://devfeed.tech/topics/flask.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [external](<https://devfeed.tech/tags/external.md>), [flask](<https://devfeed.tech/tags/flask.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>)

### AI overview

This Snyk writeup explains the solution to the Protect The Environment challenge from the 2023 Fetch the Flag CTF. The challenge involves a hand-rolled Base64 encoding layer for paths that interferes with Flask's static-file handling and enables a file inclusion attack. The supplied article text is incomplete and omits parts of the exploitation details.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the Protect The Environment challenge, you've come to the right place. Let's walk through the solution together!

## Snyk Fetch the Flag CTF 2023 writeup: Silent Cartographer

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: Silent Cartographer](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-silent-cartographer-8132.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-silent-cartographer/>)

Author: John Hammond

Published: 2023-11-30T06:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [C2](<https://devfeed.tech/topics/c2.md>), [JSON Web Tokens](<https://devfeed.tech/topics/jwt.md>), [web applications](<https://devfeed.tech/topics/web-applications.md>), [Server](<https://devfeed.tech/topics/server.md>)

Tags: [apis](<https://devfeed.tech/tags/apis.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [c2](<https://devfeed.tech/tags/c2.md>), [code](<https://devfeed.tech/tags/code.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [exploits](<https://devfeed.tech/tags/exploits.md>), [external](<https://devfeed.tech/tags/external.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [web](<https://devfeed.tech/tags/web.md>), [web-app](<https://devfeed.tech/tags/web-app.md>)

### AI overview

This Snyk writeup explains the solution to the Silent Cartographer challenge from the 2023 Fetch the Flag CTF. The challenge involves exploiting Covenant, a C2 web application, by forging a JWT with a default secret key, obtaining administrative access, modifying the exploit to use an available port, and handling the resulting reverse shell through a tunneling service.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the Silent Cartographer challenge, you've come to the right place. Let's walk through the solution together!

## Snyk Fetch the Flag CTF 2023 writeup: Audiopolis

DevFeed: [Snyk Fetch the Flag CTF 2023 writeup: Audiopolis](<https://devfeed.tech/articles/snyk-fetch-the-flag-ctf-2023-writeup-audiopolis-8127.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-fetch-the-flag-ctf-2023-writeup-audiopolis/>)

Author: John Hammond

Published: 2023-11-30T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [asr](<https://devfeed.tech/topics/asr.md>), [web applications](<https://devfeed.tech/topics/web-applications.md>), [App](<https://devfeed.tech/topics/app.md>)

Tags: [app](<https://devfeed.tech/tags/app.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [external](<https://devfeed.tech/tags/external.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [speech](<https://devfeed.tech/tags/speech.md>), [web](<https://devfeed.tech/tags/web.md>), [web-app](<https://devfeed.tech/tags/web-app.md>)

### AI overview

This Snyk Fetch the Flag CTF 2023 write-up explains the Audiopolis challenge. The challenge uses a web app that accepts a .wav file and returns a speech-to-text transcript. The article shows how echoing generated transcript text creates a command-injection vulnerability and how a sleep test confirms command execution before locating the flag.

### Source excerpt

If you were at Snyk's 2023 Fetch the Flag and are looking for the answer to the Audiopolis challenge, you've come to the right place. Let's walk through the solution together!

## Our favorite 2023 Snyk Fetch the Flag CTF writeups from the community

DevFeed: [Our favorite 2023 Snyk Fetch the Flag CTF writeups from the community](<https://devfeed.tech/articles/our-favorite-2023-snyk-fetch-the-flag-ctf-writeups-from-the-community-7765.md>)

Original publisher: [Read original article](<https://snyk.io/blog/2023-snyk-fetch-the-flag-ctf-writeups/>)

Author: Danielle Bradford

Published: 2023-11-21T17:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Security](<https://devfeed.tech/topics/security.md>), [Cryptography](<https://devfeed.tech/topics/cryptography.md>), [Web](<https://devfeed.tech/topics/web.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [community](<https://devfeed.tech/tags/community.md>), [cryptography](<https://devfeed.tech/tags/cryptography.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [hacking](<https://devfeed.tech/tags/hacking.md>), [security](<https://devfeed.tech/tags/security.md>), [web](<https://devfeed.tech/tags/web.md>)

### AI overview

This Snyk article presents community writeups from Fetch the Flag CTF 2023. The event featured more than 30 hacking challenges spanning web and cryptography, and the writeups describe how participants approached selected challenges.

### Source excerpt

Fetch the Flag CTF 2023 took place October 27-28, bringing together thousands of players worldwide to compete to solve 30+ hacking challenges, ranging from web to cryptography. In this blog, we're excited to share some of our favorite community writeups for these challenges.

## How to keep an HTTP connection alive for 9 hours

DevFeed: [How to keep an HTTP connection alive for 9 hours](<https://devfeed.tech/articles/how-to-keep-an-http-connection-alive-for-9-hours-7958.md>)

Original publisher: [Read original article](<https://snyk.io/blog/how-to-keep-http-connection-alive-9-hours/>)

Author: Micah Silverman

Published: 2023-10-23T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [HTTP](<https://devfeed.tech/topics/http.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [API](<https://devfeed.tech/topics/api.md>), [ctf](<https://devfeed.tech/topics/ctf.md>), [CRUD](<https://devfeed.tech/topics/crud.md>)

Tags: [api](<https://devfeed.tech/tags/api.md>), [apis](<https://devfeed.tech/tags/apis.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [code](<https://devfeed.tech/tags/code.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devrel](<https://devfeed.tech/tags/devrel.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [http](<https://devfeed.tech/tags/http.md>), [java](<https://devfeed.tech/tags/java.md>), [open-source](<https://devfeed.tech/tags/open-source.md>)

### AI overview

This article explains how Snyk's open source ctfd-account-hook project evolved to support a long-running, secured HTTP request that emails nearly 4,000 pre-registered Capture the Flag participants. It describes integrating a custom registration flow with CTFd and handling the platform's email API rate limits.

### Source excerpt

In this post, I'll cover how the open source project I created -- ctfd-account-hook -- evolved to support a long-running, secured HTTP request to notify nearly 4,000 registered participants over email.

## An Introduction to capture the flag

DevFeed: [An Introduction to capture the flag](<https://devfeed.tech/articles/an-introduction-to-capture-the-flag-7816.md>)

Original publisher: [Read original article](<https://snyk.io/blog/an-introduction-to-capture-the-flag/>)

Author: Sonya Moisset

Published: 2023-09-13T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [ctf](<https://devfeed.tech/topics/ctf.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Code](<https://devfeed.tech/topics/code.md>)

Tags: [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [code](<https://devfeed.tech/tags/code.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devrel](<https://devfeed.tech/tags/devrel.md>), [learn](<https://devfeed.tech/tags/learn.md>), [skills](<https://devfeed.tech/tags/skills.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

An introduction to Capture the Flag (CTF) competitions, covering their history, value for cybersecurity professionals, and role in developing practical security, critical-thinking, and problem-solving skills.

### Source excerpt

Discover the world of Capture the Flag (CTF) competitions and why they're essential for mastering cybersecurity skills. Explore the history, significance, and unique challenges of CTFs that prepare both beginners and professionals for real-world digital threats. Learn how CTFs can transform your problem-solving and critical thinking abilities, setting you apart in the cybersecurity field.

[Next page](<https://devfeed.tech/topics/ctf.md?cursor=WyIyMDIzLTA5LTEzVDA1OjAwOjAwKzAwOjAwIiwgImU2OTAzZjNjLTY4NWEtNDZkYy1hMjlhLWI3ZDk0Mjk0NzAxOSJd>)