> For the complete documentation index, see [llms.txt](https://ctf.zeyu2001.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ctf.zeyu2001.com/2022/nitectf-2022.md).

# niteCTF 2022

Nice Christmas CTF with some relatively interesting XS-Leak web challenges.

Sidenote: someone registered all the top teams, so I technically beat all of them.

<figure><img src="https://3167364547-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MX1bWRlBzHpEPe1TYDD%2Fuploads%2FHozl3RJPbvMeQHxxu1pk%2Fimage.png?alt=media&amp;token=711100e1-0b61-4c3e-9be8-ef076f785ea1" alt=""><figcaption></figcaption></figure>

| Challenge                                                        | Category | Solves |
| ---------------------------------------------------------------- | -------- | ------ |
| [Undocumented js-api](/2022/nitectf-2022/undocumented-js-api.md) | Web      | 10     |
| [js-api](/2022/nitectf-2022/js-api.md)                           | Web      | 5      |

The solutions for both challenges involve creating a GitHub Pages site, so here's my exploit repository :smile:

{% embed url="<https://github.com/zeyu2001/nitectf-jsapi>" %}
