Support hackref — star on GitHub

CTF Knowledge Index

A minimal field manual for Capture The Flag beginners. Browse categories, read guides, and find essential tools — all in one place.

domains9
guides23
tools109
browse toolsstar on github

categories

view all →
cat/web
01

Web Exploitation

Attack web applications — injection, authentication flaws, and client-side bugs that turn a browser into a weapon.

3 guidesopen
cat/crypto
02

Cryptography

Break weak ciphers, exploit bad randomness, and recover keys from flawed cryptographic implementations.

3 guidesopen
cat/rev
03

Reverse Engineering

Disassemble and decompile binaries to understand what they do and extract hidden logic or flags.

3 guidesopen
cat/pwn
04

Binary Exploitation

Exploit memory-corruption bugs — buffer overflows, format strings, and use-after-free — to hijack execution.

3 guidesopen
cat/forensics
05

Forensics

Recover hidden data from files, disk images, memory dumps, and network captures.

3 guidesopen
cat/osint
06

OSINT

Use open-source intelligence — public records, metadata, and social media — to track down information.

2 guidesopen
cat/stego
07

Steganography

Find messages hidden inside images, audio, and other media.

2 guidesopen
cat/networking
08

Networking

Analyze traffic captures and protocols to extract flags and understand attacks.

2 guidesopen
cat/misc
09

Miscellaneous

Everything that does not fit a neat box — scripting puzzles, esoteric formats, and jeopardy oddities.

2 guidesopen

New to CTF?

Start with the web category — it covers the most common beginner challenges.

Support hackref

Give a star on GitHub if you find this field manual helpful!

star repository