<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet href="https://thanhnc.id.vn/feed_style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="vi">
    <tabi:metadata xmlns:tabi="https://github.com/welpo/tabi">
        <tabi:base_url>https:&#x2F;&#x2F;thanhnc.id.vn</tabi:base_url>
        <tabi:separator>
            •
        </tabi:separator>
        <tabi:about_feeds>Đây là web feed (Atom feed). Đăng ký bằng cách dán URL này vào trình đọc feed của bạn. Truy cập About Feeds để biết thêm.</tabi:about_feeds>
        <tabi:visit_the_site>Truy cập trang web</tabi:visit_the_site>
        <tabi:recent_posts>Bài viết gần đây</tabi:recent_posts>
        <tabi:last_updated_on>Cập nhật lần cuối: $DATE</tabi:last_updated_on>
        <tabi:default_theme></tabi:default_theme>
        <tabi:post_listing_date>date</tabi:post_listing_date>
        <tabi:current_section>ctf</tabi:current_section>
    </tabi:metadata><link rel="extra-stylesheet" href="https://thanhnc.id.vn/skins/mint.css?h=504215cf6bc10586b487" /><title>JakeClark - Portfolio & Blog cá nhân - ctf</title>
    <link href="https://thanhnc.id.vn/tags/ctf/atom.xml" rel="self" type="application/atom+xml"/>
    <link href="https://thanhnc.id.vn/tags/ctf/" rel="alternate" type="text/html"/>
    <generator uri="https://www.getzola.org/">Zola</generator><updated>2025-02-10T00:00:00+00:00</updated><id>https://thanhnc.id.vn/tags/ctf/atom.xml</id><entry xml:lang="vi">
        <title>TryHackMe: Whiterose</title>
        <published>2025-02-10T00:00:00+00:00</published>
        <updated>2025-02-10T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-whiterose/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-whiterose/</id>
        <summary type="html">Walkthrough challenge Whiterose trên TryHackMe — SSTI (EJS), IDOR, privilege escalation via Sudo CVE.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: The Sticker Shop</title>
        <published>2025-02-08T00:00:00+00:00</published>
        <updated>2025-02-08T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-sticker-shop/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-sticker-shop/</id>
        <summary type="html">Walkthrough challenge The Sticker Shop trên TryHackMe — Stored XSS, client-side exploitation.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Silver Platter</title>
        <published>2025-02-05T00:00:00+00:00</published>
        <updated>2025-02-05T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-silver-platter/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-silver-platter/</id>
        <summary type="html">Walkthrough challenge Silver Platter trên TryHackMe — Silverpeas CVE, IDOR, credential bypass, privilege escalation.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Lookup</title>
        <published>2025-02-01T00:00:00+00:00</published>
        <updated>2025-02-01T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-lookup/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-lookup/</id>
        <summary type="html">Walkthrough challenge Lookup trên TryHackMe — Privilege Escalation (SUID, Sudo), elFinder command injection, brute-force credentials.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Pyrat</title>
        <published>2025-01-30T00:00:00+00:00</published>
        <updated>2025-01-30T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-pyrat/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-pyrat/</id>
        <summary type="html">Walkthrough challenge Pyrat trên TryHackMe — Python IDLE exploitation, Git credential leak, privilege escalation.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Linux Privilege Escalation</title>
        <published>2025-01-28T00:00:00+00:00</published>
        <updated>2025-01-28T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-linux-privesc/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-linux-privesc/</id>
        <summary type="html">Walkthrough room Linux Privilege Escalation trên TryHackMe — Kernel exploit, Sudo, SUID, Capabilities.</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Lo-Fi</title>
        <published>2025-01-25T00:00:00+00:00</published>
        <updated>2025-01-25T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-lofi/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-lofi/</id>
        <summary type="html">Walkthrough challenge Lo-Fi trên TryHackMe — Local File Inclusion (LFI).</summary>
        </entry><entry xml:lang="vi">
        <title>TryHackMe: Light</title>
        <published>2025-01-22T00:00:00+00:00</published>
        <updated>2025-01-22T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/thm-light/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/thm-light/</id>
        <summary type="html">Walkthrough challenge Light trên TryHackMe — SQL injection (SQLite).</summary>
        </entry><entry xml:lang="vi">
        <title>PicoCTF: Buffer Overflow Vulnerability Solution</title>
        <published>2023-09-15T00:00:00+00:00</published>
        <updated>2023-09-15T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/sol-pico-bof/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/sol-pico-bof/</id>
        <summary type="html">Giải chi tiết các bài tập Buffer Overflow trên PicoCTF, từ cơ bản (kiểm soát địa chỉ trả về) đến nâng cao (brute-force Stack Canary).</summary>
        </entry><entry xml:lang="vi">
        <title>CryptoHack - Crypto on the Web</title>
        <published>2023-09-12T00:00:00+00:00</published>
        <updated>2023-09-12T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-cryptohack-web/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-cryptohack-web/</id>
        <summary type="html">Giải bài RSA or HMAC? Part 2 trên CryptoHack — kỹ thuật leak public key để giả mạo JWT.</summary>
        </entry><entry xml:lang="vi">
        <title>PicoCTF: Web App Solutions</title>
        <published>2023-09-10T00:00:00+00:00</published>
        <updated>2023-09-10T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/sol-pico-web/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/sol-pico-web/</id>
        <summary type="html">Tổng hợp lời giải các bài tập Web Security trên PicoCTF, từ Cookies, Header (GET aHEAD) đến WebAssembly (Some Assembly Required).</summary>
        </entry><entry xml:lang="vi">
        <title>School Lab: PicoCTF Android Challenges</title>
        <published>2023-08-30T00:00:00+00:00</published>
        <updated>2023-08-30T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/lab-pico-challenge/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/lab-pico-challenge/</id>
        <summary type="html">Write-up giải các thử thách Android trên PicoCTF (one.apk đến five.apk), áp dụng kiến thức về Logcat, Frida Hooking và Smali Patching.</summary>
        </entry><entry xml:lang="vi">
        <title>School Lab: EVABSv5 Android Challenge</title>
        <published>2023-08-25T00:00:00+00:00</published>
        <updated>2023-08-25T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/lab-evabs-v5/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/lab-evabs-v5/</id>
        <summary type="html">Write-up chi tiết giải 12 levels của EVABSv5 — một lab thực hành bảo mật ứng dụng Android, từ Logcat, Shared Preferences đến Smali Injection và Frida Hooking.</summary>
        </entry><entry xml:lang="vi">
        <title>Pwn - Format String</title>
        <published>2023-08-22T00:00:00+00:00</published>
        <updated>2023-08-22T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-format-string/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-format-string/</id>
        <summary type="html">Giải bài thực hành Format String cơ bản — kỹ thuật leak flag từ stack sử dụng hàm printf.</summary>
        </entry><entry xml:lang="vi">
        <title>CryptoHack - Elliptic Curves</title>
        <published>2023-08-21T00:00:00+00:00</published>
        <updated>2023-08-21T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-cryptohack-curves/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-cryptohack-curves/</id>
        <summary type="html">Series giải các bài tập về Elliptic Curves trên CryptoHack, từ cơ bản đến nâng cao (Pohlig-Hellman, Baby-step Giant-step).</summary>
        </entry><entry xml:lang="vi">
        <title>Reverse Engineering - Basic Problems</title>
        <published>2023-08-18T00:00:00+00:00</published>
        <updated>2023-08-18T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-re-basic/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-re-basic/</id>
        <summary type="html">Series giải các bài tập Reverse Engineering cơ bản, tập trung vào việc viết script dịch ngược (solve script) từ mã giả (pseudo-code) của IDA.</summary>
        </entry><entry xml:lang="vi">
        <title>Pwn - Stack Buffer Overflow</title>
        <published>2023-08-18T00:00:00+00:00</published>
        <updated>2023-08-18T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-stack-bof/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-stack-bof/</id>
        <summary type="html">Hướng dẫn chi tiết về khai thác lỗi Stack Buffer Overflow trên Linux x64, bao gồm phân tích checksec, gdb và vượt qua PIE bằng cách ghi đè từng phần (partial overwrite).</summary>
        </entry><entry xml:lang="vi">
        <title>CryptoHack - Hash Functions</title>
        <published>2023-08-14T00:00:00+00:00</published>
        <updated>2023-08-14T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/ex-cryptohack-hash/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/ex-cryptohack-hash/</id>
        <summary type="html">Giải các bài tập về hàm băm (Hash Functions) trên CryptoHack, bao gồm Jack&#x27;s Birthday, MD5 collisions và Length Extension Attack.</summary>
        </entry><entry xml:lang="vi">
        <title>School Lab: First Test - Web App &amp; Forensics</title>
        <published>2023-07-23T00:00:00+00:00</published>
        <updated>2023-07-23T00:00:00+00:00</updated>
        <author>
            <name>Unknown</name>
        </author>
        <link rel="alternate" href="https://thanhnc.id.vn/blog/ctf/lab-first-test/" type="text/html"/>
        <id>https://thanhnc.id.vn/blog/ctf/lab-first-test/</id>
        <summary type="html">Write-up cho bài kiểm tra đầu tiên với các thử thách Web (Command Injection, Blind SQL Injection) và Forensics (Fixing PNG header).</summary>
        </entry>
</feed>
