bi0s
  •  Home
  •  Categories
  •  Archives
  •  Tags
  •  Home
  •  Categories
  •  Archives
  •  Tags

Just Do It - InCTF Internationals 2019

stuxn3t
2019-09-24
Forensics / Memory

tl;dr

  • Master File Table Analysis
  • Deleted file data recovery
Read More
InCTFi Volatility Windows Memory Analysis

SecurinetsQuals2019-Contact_Me

stuxn3t
2019-08-24
Forensics / Memory

tl;dr

  1. Analysis of memory dump using Volatility framework.
  2. Using mac_contacts plugin to get relevant data.
  3. Base64 decode to get flag.

Solved by: stuxn3t

Read More
MacOS Memory Analysis

FakeTCP - CyBRICS Quals 2019

f4lc0n
2019-07-25
Forensics / Network

tl;dr

  1. Open a raw socket.
  2. Craft the outgoing packets with the byte order of S-PORT, D-PORT, SEQ, ACK reversed.
  3. Establish the three way handshake in this fashion.
  4. Send “GET_FLAG” to the server.
Read More
CustomTCP

Acronym - ISITDTU Quals 2019

stuxn3t
2019-07-08
Forensics / Steganography

Full solution of Acronym challenge from ISITDTU Quals 2019.
tl;dr - Steganography

Read More
Steganography

Easy Husky - ISITDTU Quals 2019

stuxn3t
2019-07-08
Forensics / Memory

tl;dr - Volatility + Corrupted file analysis
Full solution of Easy Husky challenge from ISITDTU Quals 2019.

Read More
Windows Memory Analysis

 Previous 

4 / 4

Official blog of team bi0s

  Projects
  •   bi0s-wargame
    (Unraveling)
  •   bi0s-wiki
    (Free Encyclopedia)
  •   InCTF
    (Nationals CTF)
  •   InCTFj
    (Juniors CTF)

Made With Love and Coffee



Blog content follows the Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0) License

Use Material X as theme, total visits times.