Rev
- Jumping
The ELF was a PyInstaller-packed Python program, so the real logic came out by extracting and decompiling the bytecode.
- Wonderland
A hidden path leaked creds, a sudo module hijack and a PATH-hijacked SUID stepped through users, and perl setuid gave root.
- Bookstore
REST API v1 fuzzing leaked a debugger PIN, the Werkzeug console gave a shell, and a SUID binary reversed to a XOR check.