AI Provider Settings
Keys are stored only for your session
Models are fetched from the selected provider after validating your API key.

Category: Writeups

All posts in the "Writeups" category

Lookey here

Jan 1 1 min read

Description Attackers have hidden information in a very large mass of data in the past, maybe they are still doing it. Download the data here. …

Writeups
picoCTF Writeups Forensics

Milkslap

Jan 1 2 min read

Description 🥛http://mercury.picoctf.net:16940/ Info Went to website: http://mercury.picoctf.net:16940/ Right Click and download image / html / css / …

Writeups
picoCTF Writeups Forensics

Operation Oni

Jan 1 1 min read

Description Download this disk image, find the key and log into the remote machine. Note: if you are using the webshell, download and extract the disk …

Writeups
picoCTF Writeups Forensics

Operation Orchid

Jan 1 1 min read

Description Download this image and find the flag. https://artifacts.picoctf.net/c/216/pico.flag.png Info gunzip disk.img.gz Mounted disk.img to /mnt …

Writeups
picoCTF Writeups Forensics

Redaction gone wrong

Jan 1 1 min read

Description Now you DON’T see me. This report has some critical data in it, some of which have been redacted correctly, while some were not. Can you …

Writeups
picoCTF Writeups Forensics

Shark on wire 1

Jan 1 1 min read

Description We found this packet capture. Recover the flag. …

Writeups
picoCTF Writeups Forensics

SideChannel

Jan 1 1 min read

Description There’s something fishy about this PIN-code checker, can you figure out the PIN and get the flag? Download the PIN checker program …

Writeups
picoCTF Writeups Forensics

Sleuthkit Apprentice

Oct 1 1 min read

Description Download this disk image and find the flag. Note: if you are using the webshell, download and extract the disk image into /tmp not your …

Writeups
picoCTF Writeups Forensics

Sleuthkit Intro

Oct 1 2 min read

Description Download the disk image and use mmls on it to find the size of the Linux partition. Connect to the remote checker service to check your …

Writeups
picoCTF Writeups Forensics

So Meta

Oct 1 1 min read

Description Find the flag in this picture. https://jupiter.challenges.picoctf.org/static/916b07b4c87062c165ace1d3d31ef655/pico_img.png Info First …

Writeups
picoCTF Writeups Forensics

St3g0

Oct 1 1 min read

Description Download this image and find the flag. https://artifacts.picoctf.net/c/216/pico.flag.png Info Zsteg from bash 9 lines …

Writeups
picoCTF Writeups Forensics

Who is it

Oct 1 1 min read

Description Someone just sent you an email claiming to be Google’s co-founder Larry Page but you suspect a scam. Can you help us identify whose …

Writeups
picoCTF Writeups Forensics

Dream Server - DFIR

May 21 7 min read

Example Direction: Lock Picking Lawyer Server Category Item Blue 1 Gmail in session of browser Blue 2 Email in URL of the payload download Blue 3 …

Writeups
NorthSec DFIR CTF

Key Replicator

May 21 1 min read

Example Direction: Lock Picking Lawyer

Writeups
NorthSec DFIR CTF

Neck Tie Connection

May 21 1 min read

Serial Connection Connection Type: Serial Baud Rate/Speed: 115200 Port: COM3 Client: PuTTY Reference Reverse Engineering of ESP32 Flash Dumps with …

Writeups
NorthSec DFIR CTF

Neck Tie QR Code

May 21

Writeups
NorthSec DFIR CTF

NorthSec 2023

May 21 1 min read

NorthSec < NSEC 2023

Writeups
CTF NorthSec NSEC

The Clock

May 21 3 min read

Other Write-Up See SD Card Data for more information. Challenge Walkthrough 1. Splash Screen Flag When the device boots, a flag flashes very quickly …

Writeups
NorthSec DFIR CTF

The Rules

May 21

Writeups
NorthSec DFIR CTF

Warmups

May 21 2 min read

Download mypcap.pcap Spoiler Command: bash 5 lines tshark -r mypcap.pcap -Tfields -e data \ | cut -c -2 \ | sed ':a;N;$!ba;s/\n/ /g' \ | sed …

Writeups
NorthSec DFIR CTF

A Flag

Jun 1 1 min read

Context: @0xstatic is spoiling us with another challenge. Here’s a flag for you. Can you flag the flag? txt 1 lines …

writeups
nsec Writeups montreal

Hackademy – Authorization 1

Jun 1 1 min read

Check the html Or in the PCAP:

Writeups
northsec nsec dfir

NorthSec 2022

Jun 1 1 min read

NorthSec < NSEC 2022 - Extra Information Data

Writeups
CTF NorthSec NSEC

Portobello 53 - Denial (2 of 2)

Jun 1 3 min read

Context Why do you need DNS logs anyway? We both know that DNS servers are just address books of Internet resources and I’ve never seen anyone abuse a …

Writeups
NorthSec DFIR PCAP

Portobello-53-Anger (2/2)

Jun 1 2 min read

Part 1 - Version 1 3232::3 had base64 encoded strings. After decoding, found a flag. ID3 is the magic number for MP3 files, but can’t get it to …

Writeups
NorthSec DFIR PCAP

Portobello-53-Bargaining

Jun 1 2 min read

Packet Analysis Within your method of looking through the packets (using Wireshark), searching for the word flag- brought me directly to the flag. …

Writeups
NorthSec DFIR PCAP

Portobello-53-Depression

Jun 1 3 min read

Part 1 – PunnyCode After noticing multiple xn-- CNAMES in the PCAP, I narrowed down to host 9 and observed many of these entries. After removing the …

Writeups
NorthSec DFIR CTF

Warm-up - MONTREAL (Semi-Solved)

Jun 1 1 min read

Context I play this tune every time I’m headed home and land at Montréal-Pierre Elliott Trudeau International Airport! It has a special meaning …

Writeups
nsec 2022 montreal

Rule One, There Isn't any rules!

May 21 1 min read

Step 1: Download the challenge

Writeups
nsec 2022 rules

VFCrypter

May 21 2 min read

Step 1: Extract Step 2: Download decode-vbe Get it from: https://github.com/DidierStevens/DidierStevensSuite/blob/master/decode-vbe.py Alternatively, …

Writeups
nsec 2022 malware