Author's posts

Gits 2012 # – Crypto 400

files running at hellothere.final2012.ghostintheshellcode.com Summary: MITM attack

Continue reading

Gits 2012 #14 Pwnable (300)

Jacked file running at jacked.final2012.ghostintheshellcode.com:2121 Summary: weak random, BlackJack bot, format string

Continue reading

Gits 2012 #7 – Reversing (300)

Question: Fanatic 300 Points Remeber the past. (Link) Here we have a NES emulator written on javascript. ROM can easily be dumped from there.

Continue reading

Gits 2012 #5 – Forensics (400)

Question: VoxVeritas 400 Points Find the secret passage. (File)

Continue reading

Gits 2012 #11 Packet (300)

Question: Noughts and crosses 300 Points Solve the puzzle! tictactoe.final2012.ghostintheshellcode.com:9797

Continue reading

Gits 2012 #19 – Crypto 250

Question: SuperSecure 250 Points Use your team name and generate a valid answer. (File) Summary: xor-chained sha256 and sha512

Continue reading

MozillaCTF 2012 SecureFileLock (250) Writeup

This very secure locking mechanism encloses files and only gives them to you when you know the passphrase. Find it and you will have the flag. Category: reversing Summary: find out a xor cipher, use xortool to get the key

Continue reading

GitS 2012 Teaser Hackquest

Find the key. (File running at hackquest.ghostintheshellcode.com:7331) Category: exploitation Hint: source binary

Continue reading

GitS 2012 Teaser TelAviv

What is the password? Category: packets Hint: TeLaViv is a packet forensics challenge. file

Continue reading

GitS 2012 Teaser AL’s Revenge

Category: reverse, crypto Summary: LLVM bytecode with polynomial inversion file

Continue reading

EnoWars CTF – Get On Board (500)

Category: crypto There is also this nice new spaceship in the hangar just waiting for us. Some old-school mobil terminal describes it as: “The Heart of Gold is the sleekest, most advanced, coolest spaceship in the galaxy. “Its stunning good looks mirror its awesome speed and power. It is powered by the revolutionary new Infinite …

Continue reading

rwth2011 CTF – mastermind

Mastermind was an easy service, written on Ruby. Download (mmd.rb and mmd.db) Summary: SQL Injection, guessable id’s, guessable flag (by id)

Continue reading

hack.lu CTF 2011 Wipe out the Klingons (400)

Category: crypto We already made it. The evil Klingons agression is nearly fended. But their final mothership is well protected and even sacrifing a huge number of battleships caused only minor damage. Spies told us an unclear message caused most technical operators and the commander to leave the ship. Unfortunately we are unable to locate …

Continue reading

hack.lu CTF 2011 Spy Aboard! (300)

Category: crypto We have a spy aboard! For around 5 minutes ago we intercepted an encrypted transmission to an enemy outpost. It seems like we interrupted the mole in the act because we found an open transmission program on our terminals. We are 100% sure that he sent the position of our fleet to the …

Continue reading

hack.lu CTF 2011 Simplexor (200)

Category: crypto To get a better security we deceided to encrypt our most secret document with the secure xor-algorithm. Unfortunately we lost the key. Now we are sad. Can you help us recovering the key? Download Summary: recovering multibyte xor-key, using autocorrelation

Continue reading