- Refactor examples/ctf-demo to satisfy the review_case.py contract: split evidence/E-001-E-003.md into per-record E-001/E-002/E-003.md with ### E-xxx headings and severity/status/repro_command fields - Add evidence/checksec-output.txt artifact with matching content_hash so --verify-hashes has a real object to verify - Convert report.md finding/path sections to structured F-01/P-01 blocks - New case-contract CI job runs review_case.py --verify-hashes --strict on examples/ctf-demo; local result: PASS (0 errors, 0 warnings)
313 B
313 B
E-003
- title: remote exploit success
- severity: high
- status: validated
- observed_at: 2026-08-02T01:10:00
- source_type: command
- source_ref: exploit phase
- repro_command: | python3 exploit.py REMOTE
- raw_excerpt: | ctf{{example_flag_do_not_use}}
- content_hash: n/a
- linked_workitem: WI-004