BLOG

Blog Archives

Zozo

Link: https://wargame.whitehat.vn/Challenges/DetailContest/136 Author: WhiteHat Wargame Points: 100 Category: pwn Description ssh pwnguest@118.70.80.143 1094 68bZ$wRn Resources the binary (gzipped) Walkthrough part 1 We have been given shell access to a remote machine. The pwnguest user was extremely limited – no access

Read more ›

Tagged with:

WYGINWYS(what you get is not what you see)

Link: https://wargame.whitehat.vn/Challenges/DetailContest/143 Points: 200 Category: Forensics Description http://material.wargame.whitehat.vn/contests/11/for1_206e72e52f2f73fa1a1080b70d528657.zip nc 118.70.80.143 7337 tl;dr https://codisec.com/veles/. Zip archive containing disk image. Mount it with ntfs-3g. There is a binary file and after looking for deleted files you can also find a .pyc file. Turns out the

Read more ›

Whitehat11 RE3

Link: https://wargame.whitehat.vn/Challenges/DetailContest/143 Points: 100 Category: RE Description http://material.wargame.whitehat.vn/contests/11/digital_fortrees.exe flag = SHA1(FirstRoom:SecondRoom:ThridRoom) tl;dr Simple python program packed with py2exe. After recovering python code back from it, turns out all you need to do is factorize 28-digit number made of 3 primes. Solution

Read more ›

Tagged with:

Whitehat11 RE1

Link: https://wargame.whitehat.vn/Challenges/DetailContest/141 Points: 100 Category: RE Description http://material.wargame.whitehat.vn/contests/11/re1_d3309936b177b41dada3796c4c3acadf.zip tl;dr see below Solving the task When executed the program asks for input. It seems that regardless of what is being provided the answer is always “wrong“. Simplified reversed C code for

Read more ›

Tagged with: