Chen Zheng WeiInternal domain names: What are you hiding and what are you leaking?Incorrect configuration of your corporate domains may lead to information disclosure.4 min read·Sep 23, 2022----
Chen Zheng WeiHTB Business CTF 2022 — TradeAWS access key compromise, 2FA circumvention, and DynamoDB injection in a single challenge.5 min read·Jul 22, 2022----
Chen Zheng WeiHTB Cyber Apocalypse 2021 — emoji votingThis was a 2-star challenge in the web category of the Cyber Apocalypse 2021 CTF. Also serves as an introduction to blind SQL injection.5 min read·Apr 24, 2021----
Chen Zheng WeiHTB Cyber Apocalypse 2021 — SoulCrabberSoulCrabber and SoulCrabber 2 were related challenges in the crypto category of the Cyber Apocalypse 2021 CTF, organised by Hack The Box…2 min read·Apr 24, 2021----
Chen Zheng WeiDocker breakout: SINCON 2020 Wonderland CTFThink twice before sharing namespaces and granting additional capabilities to Docker containers.5 min read·Jan 3, 2021----
Chen Zheng WeiStealing Bob’s ideaThis is another writeup of one of the challenges in GovTech CSG’s STACK the Flags CTF. This one appeared to be relatively easy once the…3 min read·Dec 9, 2020----
Chen Zheng WeiReverse engineering an invitationOver the last weekend I had the opportunity to take part in the STACK the Flags CTF organised by the GovTech Cyber Security Group…5 min read·Dec 8, 2020----