bubu
bubu
Home
Posts
Web-Security-Class
Publications
Contact
CV
Light
Dark
Automatic
Posts
CrewCTF 2025 - Author's Writeup
Love and Hate Notes and Professor’s View Author’s Writeup.
Sep 21, 2025
12 min read
CTF
,
EN
Permission Hijacking at Scale
This article examines a concrete threat model for browser permissions, using two real-world vulnerabilities I discovered in popular support chat widgets as case studies to demonstrate the viability of large-scale permission hijacking.
Jul 21, 2025
8 min read
EN
The SAS Quals 2025
SAS CTF Quals 2025.
May 25, 2025
12 min read
CTF
,
EN
HKCERT 2025 Finals blog
HKCERT 2025 Finals blog.
Jan 23, 2025
13 min read
CTF
,
EN
HKCERT 2024 Quals
HKCERT 2024 Quals.
Nov 12, 2024
26 min read
CTF
,
EN
The SAS Finals 2024 blog
TheSASCon Finals 2024 blog.
Oct 29, 2024
19 min read
CTF
,
EN
OpenECSC 2024 (Round 1) Web Writeups
OpenECSC 2024 web writeups.
Mar 25, 2024
14 min read
CTF
,
EN
Intigriti's April Challenge 2023 Writeup
My solution for the Intigriti’s April challenge by strangeMMonkey1.
Apr 26, 2023
3 min read
CTF
,
EN
idekCTF 2022* Writeup
idekCTF 2022 SimpleFileServer writeup.
Jan 15, 2023
3 min read
CTF
,
EN
LakeCTF 2022 Writeups
LakeCTF event hosted by the top team polygl0ts of EPFL University. This time I couldn’t spend much time so I just solved 3 challenges, achiving the 58 position out of 191 teams.
Sep 26, 2022
6 min read
CTF
,
EN
»
Cite
×