Extra Credit


CSE 365 - Fall 2026.

This module contains optional extra credit challenges for CSE 365.

Each regular course module has three extra credit challenges: Easy, Medium, and Hard.

🚨 Required for Extra Credit 🚨

Solving a challenge alone does not earn credit. After every extra credit challenge you complete, you must SUBMIT THE REQUIRED CTF ARCHIVE CHALLENGE REFLECTION to receive any points.

Each reflection should take about 5 minutes and briefly describe what you did and what you learned.

Regular coursework offers up to 840 points against the course's 800-point baseline, or 105%. The Extra Credit module offers up to 40 additional credited points, bringing the maximum to 880/800 points, or 110%. More than 40 points of extra credit challenges are available for flexibility, but only 40 points may count toward your final grade. See the syllabus for more details.



Module 1: Linux Luminarium & Access Control

hello guys, I started this new service check note.txt file for a sanity check.


Author: xor and the half adder

My friend gave me some fancy text, but it was reversed, and so I tried to reverse it but I think I messed it up further. Can you find out what the text says?

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: HSN CS Club

One of these is not like the others.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: JoshDaBosh


Module 2: Dealing with Data, Talking Web & SQL

Decode using hex and see what you get...
6236343a20615735305a584a755a58526659323975646d567963326c76626c3930623239736331397962324e72

Use flagCheck to input the flag you get from the challenge to get the actual flag

If you need hint than cat /challenge/hint.txt


Author: angstromctf team

The amoeba is a fascinating creature.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: angstromctf team

Encoding is not encryption, but what if I just encode the flag with base16,32,64? If I encode my precious flag for 150 times, surely no one will be able to decode it, right?

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: Sunggwan Choi


Module 3: Web Security

Jason made a new SuperSecureâ„¢ website, but lost his password. It's displayed on the admin page. Can you login?

Use flagCheck to input the flag you get from the challenge to get the actual flag

If you need hint than cat /challenge/hint.txt


Author: angstromctf team

I created a Web application in Flask, what could be wrong?


Author: belugagemink

I tried to make my own version of cookie clicker, without all of the extra fluff. Can you beat my highscore?

Only open the localhost application on the pwn.college desktop


Author: malfuncti0nal


Module 4: Computing 101

What does asm1(0x1f3) return? Submit the flag as a hexadecimal value (starting with '0x'). NOTE: Your submission for this question will NOT be in the normal flag format.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: Sanjay C

Reading assembly language is one of the core skills for reverse engineering. Test your abilities by tracing {{code.s,this code}} and seeing what %eax contains by the end! Enter the result as an unsigned decimal integer.

Use flagCheck to input the flag you get from the challenge to get the actual flag

If you need hint than cat /challenge/hint.txt


Author: angstromctf team

What will asm4("picoCTF_75806") return? Submit the flag as a hexadecimal value (starting with '0x'). NOTE: Your submission for this question will NOT be in the normal flag format.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: Sanjay C


Module 5: Reverse Engineering


Module 6: Binary Exploitation


Module 7: Intercepting Communications


Module 8: Cryptography


30-Day Scoreboard:

This scoreboard reflects solves for challenges in this module after the module launched in this dojo.

Rank Hacker Badges Score