Writeups

https://docs.emile.space/books/writeups

cscg 2020 qualifying

Misc - Sanitycheck

bottom right corner of the "everything's on fire!" image CSCG{TAKE_THIS_INSTEAD}

Misc - win_eXPerience 1

First of all, find out what kind of profile to use: $ vol.py imageinfo -f memory.dmp Volatility...

Misc - Matrix

So we've got a password: Th3-R3D-P1ll?, but for what? This might indicate that there is a hidd...

Web - Local Fun Inclusion

local file inclusion path traversal in site argument get a list of mounts from /proc/self/mou...

Reversing - Intro to Reversing 1

download unzip open in radare2 [0x000007a0]> aaa [0x000007a0]> afl~main [0x000007a...

Reversing - Intro to Reversing 2

$ nc hax1.allesctf.net 9601 Give me your password: sta71c_tr4n5f0rm4710n_it_is Thats the rig...

Reversing - Intro to Reversing 3

# the password found while reversing pw = "lp`7a<qLw\x1ekHopt(f-f*,o}V\x0f\x15J" # the...

Pwn - Intro to Pwning 1

leak the return address of main using %47$p (read the 47th element from the stack) Send "Expel...

Pwn - Intro to Pwning 2

leak the canary and the address of the main function calc the base of the binary send 251 * "...

Pwn - Intro to Pwning 3

ROP CSCG{VOLDEMORT_DID_NOTHING_WRONG}

Crypto - Intro to Crypto 1

This was fairly easy: docker run -it --rm -v $PWD:/data razaborg/rsactftool --publickey /data/pu...

Crypto - Intro to Crypto 2

This was fairly easy: docker run -it --rm -v $PWD:/data razaborg/rsactftool --publickey /data/pu...

Crypto - Intro to Crypto 3

Just use existing tools such as the RSA-Chinese-Remainder tool: $ python rsaHastad.py german_gov...

Stegano - Intro to Stegano 1

$ exiftool chall.jpg ExifTool Version Number : 11.50 File Name : ...

Search Results