<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel>
  <title>Zay Pai Htet</title>
  <link>https://zaypaihtet.com</link>
  <description>Blog and CTF writeups</description>
    <item>
      <title>SCAN 2026 CTF: how I solved it</title>
      <link>https://zaypaihtet.com/writeups/scan-2026-ctf-how-i-solved-it</link>
      <guid>https://zaypaihtet.com/writeups/scan-2026-ctf-how-i-solved-it</guid>
      <pubDate>Sun, 02 Aug 2026 18:23:00 GMT</pubDate>
      <description>All ten challenges, 55 flags, 10,000 points. Tracing stolen funds through mixers and bridges, decoding malware C2 config from memo fields, reversing unverified bytecode, and auditing two vulnerable contracts — including the two answers I got wrong first.</description>
    </item>
    <item>
      <title>Hello — this site is live</title>
      <link>https://zaypaihtet.com/blog/hello-this-site-is-live</link>
      <guid>https://zaypaihtet.com/blog/hello-this-site-is-live</guid>
      <pubDate>Sun, 02 Aug 2026 18:07:36 GMT</pubDate>
      <description>A short note on what I plan to publish here: security notes, QA practice, and CTF writeups.</description>
    </item>
</channel></rss>