The 31st PoC Hacking Camp CTF - Misc challenge
-
Updated
Sep 9, 2025 - CSS
The 31st PoC Hacking Camp CTF - Misc challenge
Validating DNS Exfiltration and Python Pickle RCE Attack Chains in AI Code Execution Sandboxes
Generic PoC for MLflow pickle deserialization RCE (CVE-2024-37054-style). Poisons a registered model via the MLflow REST API to achieve code execution when the model is loaded.
To associate your repository with the pickle-deserialization topic, visit your repo's landing page and select "manage topics."