HTB - Crypto: Shambles

Challenge Summary

  • Name: Shambles
  • Category: Crypto
  • Difficulty: Medium
  • Goal: Trigger the withdraw condition that drops target balance to zero and get the flag.
 

Zero

CTF notes by Zero


Exploiting a CBC padding oracle in token login to decrypt account data and drain balance to zero.

2026-02-28


Tags

#ctf #htb #cry