Operator
mitza / Tudor Mihai Alexandru
small CTF corner • notes by mitza
Hey, I'm Tudor Mihai Alexandru. This is just my relaxed blog where I drop writeups after solving challenges, mostly web stuff and whatever weird chain I run into.
mitza / Tudor Mihai Alexandru
Web exploitation, SSRF, SSTI, privilege escalation
Mostly raw notes, but clean enough to reproduce the solve path.
Reversed a stripped game binary, abused hash-only reflection lookups, reconstructed action/predicate schema, and built a collision-based JSON script that reliably reaches the remote flag state.
Read Full WriteupSlow flag generator challenge. Reversed anti-debug checks, reconstructed recursive mixers, and solved it instantly with an offline memoized reimplementation.
Read Full WriteupFun chain: SSRF filter bypass, internal Flask blog pop via SSTI, RCE as low-priv user, then root through cron + logrotate + writable script.
Read Full Writeup