home.social

#ctf — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #ctf, aggregated by home.social.

fetched live
  1. 🌏 A shout out to everyone who attended Saturday's Global OSINT Search Party CTF In conjunction with #DEFCON34 and The #OSINT4GOOD Community.

    A Big thank you to all our Staff members including the Tech team and Volunteer coaches who also received lunch from our Sponsors SockPuppet , @epieos , KASM technologies and @usersearch_web

    👉 Also a special thank you to the Las Vegas Metropolitan Police Department for providing cases.

    🌐 Thank you and see you in October!

    #OSINT #CTF

  2. 🌏 A shout out to everyone who attended Saturday's Global OSINT Search Party CTF In conjunction with #DEFCON34 and The #OSINT4GOOD Community.

    A Big thank you to all our Staff members including the Tech team and Volunteer coaches who also received lunch from our Sponsors SockPuppet , @epieos , KASM technologies and @usersearch_web

    👉 Also a special thank you to the Las Vegas Metropolitan Police Department for providing cases.

    🌐 Thank you and see you in October!

    #OSINT #CTF

  3. 🌏 A shout out to everyone who attended Saturday's Global OSINT Search Party CTF In conjunction with #DEFCON34 and The #OSINT4GOOD Community.

    A Big thank you to all our Staff members including the Tech team and Volunteer coaches who also received lunch from our Sponsors SockPuppet , @epieos , KASM technologies and @usersearch_web

    👉 Also a special thank you to the Las Vegas Metropolitan Police Department for providing cases.

    🌐 Thank you and see you in October!

    #OSINT #CTF

  4. 🌏 A shout out to everyone who attended Saturday's Global OSINT Search Party CTF In conjunction with #DEFCON34 and The #OSINT4GOOD Community.

    A Big thank you to all our Staff members including the Tech team and Volunteer coaches who also received lunch from our Sponsors SockPuppet , @epieos , KASM technologies and @usersearch_web

    👉 Also a special thank you to the Las Vegas Metropolitan Police Department for providing cases.

    🌐 Thank you and see you in October!

    #OSINT #CTF

  5. 🌏 A shout out to everyone who attended Saturday's Global OSINT Search Party CTF In conjunction with #DEFCON34 and The #OSINT4GOOD Community.

    A Big thank you to all our Staff members including the Tech team and Volunteer coaches who also received lunch from our Sponsors SockPuppet , @epieos , KASM technologies and @usersearch_web

    👉 Also a special thank you to the Las Vegas Metropolitan Police Department for providing cases.

    🌐 Thank you and see you in October!

    #OSINT #CTF

  6. You can solve simple pwn challenges (ret2win in this example) with nothing but the stuff you have in a standart linux distro. :)

    #CTF #tips

    #ECSC

  7. You can solve simple pwn challenges (ret2win in this example) with nothing but the stuff you have in a standart linux distro. :)

    #CTF #tips

    #ECSC

  8. You can solve simple pwn challenges (ret2win in this example) with nothing but the stuff you have in a standart linux distro. :)

    #CTF #tips

    #ECSC

  9. You can solve simple pwn challenges (ret2win in this example) with nothing but the stuff you have in a standart linux distro. :)

    #CTF #tips

    #ECSC

  10. You can solve simple pwn challenges (ret2win in this example) with nothing but the stuff you have in a standart linux distro. :)

    #CTF #tips

    #ECSC

  11. #introduction

    Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
    hoping.

    Also grinding DSA in Java, which I am worse at than I'd like.

    Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.

    #infosec #pentesting #ctf #linux #cybersecurity #introduction

  12. #introduction

    Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
    hoping.

    Also grinding DSA in Java, which I am worse at than I'd like.

    Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.

    #infosec #pentesting #ctf #linux #cybersecurity #introduction

  13. #introduction

    Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
    hoping.

    Also grinding DSA in Java, which I am worse at than I'd like.

    Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.

    #infosec #pentesting #ctf #linux #cybersecurity #introduction

  14. #introduction

    Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
    hoping.

    Also grinding DSA in Java, which I am worse at than I'd like.

    Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.

    #infosec #pentesting #ctf #linux #cybersecurity #introduction

  15. #introduction

    Final-year CS student pivoting hard into offensive security. Currently working through the TryHackMe Jr Pentester path and learning Burp Suite properly instead of clicking buttons and
    hoping.

    Also grinding DSA in Java, which I am worse at than I'd like.

    Here to learn from people who actually do this for a living. Posting writeups, dumb questions, and things I got wrong.

    #infosec #pentesting #ctf #linux #cybersecurity #introduction

  16. Now for the prizes of our placed teams!

    NGOSINT ID in third place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x Osinter plans (3 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch 2.0
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, NGOSINT ID 👍

    OSINT mindset in second place you’ve earned:
    • 4x Developer License (2 months each) from OSINTLeak
    • 4x Osinter plans (6 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, OSINT mindset! 🥳

    oSint & Giggles in first place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from OSMOSIS Association
    • 4x Forensic OSINT vouchers from Forensic OSINT
    • 4x Osinter plans (1 year) from Epieos
    • 4x Cloud VM OSINT Workspace access from Kasm Technologies
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, oSint & Giggles! 💯

    Our - Most Valuable OSINT Winner - Snack Overflow!
    you’ve earned: 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from Osmosis
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, Snack Overflow! 🕵‍♀️

    🌐 See you all at our next Global OSINT Search Party CTF in October!

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  17. Now for the prizes of our placed teams!

    NGOSINT ID in third place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x Osinter plans (3 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch 2.0
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, NGOSINT ID 👍

    OSINT mindset in second place you’ve earned:
    • 4x Developer License (2 months each) from OSINTLeak
    • 4x Osinter plans (6 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, OSINT mindset! 🥳

    oSint & Giggles in first place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from OSMOSIS Association
    • 4x Forensic OSINT vouchers from Forensic OSINT
    • 4x Osinter plans (1 year) from Epieos
    • 4x Cloud VM OSINT Workspace access from Kasm Technologies
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, oSint & Giggles! 💯

    Our - Most Valuable OSINT Winner - Snack Overflow!
    you’ve earned: 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from Osmosis
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, Snack Overflow! 🕵‍♀️

    🌐 See you all at our next Global OSINT Search Party CTF in October!

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  18. Now for the prizes of our placed teams!

    NGOSINT ID in third place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x Osinter plans (3 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch 2.0
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, NGOSINT ID 👍

    OSINT mindset in second place you’ve earned:
    • 4x Developer License (2 months each) from OSINTLeak
    • 4x Osinter plans (6 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, OSINT mindset! 🥳

    oSint & Giggles in first place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from OSMOSIS Association
    • 4x Forensic OSINT vouchers from Forensic OSINT
    • 4x Osinter plans (1 year) from Epieos
    • 4x Cloud VM OSINT Workspace access from Kasm Technologies
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, oSint & Giggles! 💯

    Our - Most Valuable OSINT Winner - Snack Overflow!
    you’ve earned: 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from Osmosis
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, Snack Overflow! 🕵‍♀️

    🌐 See you all at our next Global OSINT Search Party CTF in October!

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  19. Now for the prizes of our placed teams!

    NGOSINT ID in third place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x Osinter plans (3 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch 2.0
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, NGOSINT ID 👍

    OSINT mindset in second place you’ve earned:
    • 4x Developer License (2 months each) from OSINTLeak
    • 4x Osinter plans (6 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, OSINT mindset! 🥳

    oSint & Giggles in first place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from OSMOSIS Association
    • 4x Forensic OSINT vouchers from Forensic OSINT
    • 4x Osinter plans (1 year) from Epieos
    • 4x Cloud VM OSINT Workspace access from Kasm Technologies
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, oSint & Giggles! 💯

    Our - Most Valuable OSINT Winner - Snack Overflow!
    you’ve earned: 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from Osmosis
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, Snack Overflow! 🕵‍♀️

    🌐 See you all at our next Global OSINT Search Party CTF in October!

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  20. Now for the prizes of our placed teams!

    NGOSINT ID in third place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x Osinter plans (3 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch 2.0
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, NGOSINT ID 👍

    OSINT mindset in second place you’ve earned:
    • 4x Developer License (2 months each) from OSINTLeak
    • 4x Osinter plans (6 Months) from Epieos
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, OSINT mindset! 🥳

    oSint & Giggles in first place you’ve earned:
    • 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from OSMOSIS Association
    • 4x Forensic OSINT vouchers from Forensic OSINT
    • 4x Osinter plans (1 year) from Epieos
    • 4x Cloud VM OSINT Workspace access from Kasm Technologies
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, oSint & Giggles! 💯

    Our - Most Valuable OSINT Winner - Snack Overflow!
    you’ve earned: 4x Developer License (1 month each) from OSINTLeak
    • 4x OSC Vouchers from Osmosis
    • 4x UserSearch Premium subscriptions (1 month) from UserSearch
    • 4x Unlimited Access to On-Demand training from The OSINTion

    Congratulations, Snack Overflow! 🕵‍♀️

    🌐 See you all at our next Global OSINT Search Party CTF in October!

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  21. And finally, our Most Valuable OSINT award. 🕵‍♀️

    This award goes to the team that submits a piece of intelligence that is either highly actionable or well documented, or both.

    In this case, it was both. Congratulations to team Snack Overflow for your outstanding submission. 🥳

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  22. And finally, our Most Valuable OSINT award. 🕵‍♀️

    This award goes to the team that submits a piece of intelligence that is either highly actionable or well documented, or both.

    In this case, it was both. Congratulations to team Snack Overflow for your outstanding submission. 🥳

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  23. And finally, our Most Valuable OSINT award. 🕵‍♀️

    This award goes to the team that submits a piece of intelligence that is either highly actionable or well documented, or both.

    In this case, it was both. Congratulations to team Snack Overflow for your outstanding submission. 🥳

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  24. And finally, our Most Valuable OSINT award. 🕵‍♀️

    This award goes to the team that submits a piece of intelligence that is either highly actionable or well documented, or both.

    In this case, it was both. Congratulations to team Snack Overflow for your outstanding submission. 🥳

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  25. And finally, our Most Valuable OSINT award. 🕵‍♀️

    This award goes to the team that submits a piece of intelligence that is either highly actionable or well documented, or both.

    In this case, it was both. Congratulations to team Snack Overflow for your outstanding submission. 🥳

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  26. 💯 In first place for this CTF is team oSInt & Giggles, with 101 submissions and 6650 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  27. 💯 In first place for this CTF is team oSInt & Giggles, with 101 submissions and 6650 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  28. 💯 In first place for this CTF is team oSInt & Giggles, with 101 submissions and 6650 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  29. 💯 In first place for this CTF is team oSInt & Giggles, with 101 submissions and 6650 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  30. 💯 In first place for this CTF is team oSInt & Giggles, with 101 submissions and 6650 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  31. 🌏 In second place for this CTF is team OSINT MINDSET, with 97 submission and 6590 points.

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  32. 🌏 In second place for this CTF is team OSINT MINDSET, with 97 submission and 6590 points.

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  33. 🌏 In second place for this CTF is team OSINT MINDSET, with 97 submission and 6590 points.

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  34. 🌏 In second place for this CTF is team OSINT MINDSET, with 97 submission and 6590 points.

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  35. 🌏 In second place for this CTF is team OSINT MINDSET, with 97 submission and 6590 points.

    #OSINT4GOOD #OSINT #CTF #TraceLabs #DEFCON34

  36. 👉 In third place for this CTF is team NGOSINAT ID, with 77 submissions and 4730 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  37. 👉 In third place for this CTF is team NGOSINAT ID, with 77 submissions and 4730 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  38. 👉 In third place for this CTF is team NGOSINAT ID, with 77 submissions and 4730 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  39. 👉 In third place for this CTF is team NGOSINAT ID, with 77 submissions and 4730 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  40. 👉 In third place for this CTF is team NGOSINAT ID, with 77 submissions and 4730 points.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  41. 👉 First, a big thank you to all of our sponsors for this CTF, but in particular to @SockPuppet.io, Kasm Technologies, @epieos and @usersearch_web for your generous cash contributions to make sure our volunteer staff and coaches got lunch money! Double thank-you to SockPuppet for being a double sponsor and sending actual socks and stickers for participants.

    👇 Stats for this CTF:
    110 Teams
    3192 submissions
    2290 accepted submissions.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  42. 👉 First, a big thank you to all of our sponsors for this CTF, but in particular to @SockPuppet.io, Kasm Technologies, @epieos and @usersearch_web for your generous cash contributions to make sure our volunteer staff and coaches got lunch money! Double thank-you to SockPuppet for being a double sponsor and sending actual socks and stickers for participants.

    👇 Stats for this CTF:
    110 Teams
    3192 submissions
    2290 accepted submissions.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  43. 👉 First, a big thank you to all of our sponsors for this CTF, but in particular to @SockPuppet.io, Kasm Technologies, @epieos and @usersearch_web for your generous cash contributions to make sure our volunteer staff and coaches got lunch money! Double thank-you to SockPuppet for being a double sponsor and sending actual socks and stickers for participants.

    👇 Stats for this CTF:
    110 Teams
    3192 submissions
    2290 accepted submissions.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  44. 👉 First, a big thank you to all of our sponsors for this CTF, but in particular to @SockPuppet.io, Kasm Technologies, @epieos and UserSearch 2.0 for your generous cash contributions to make sure our volunteer staff and coaches got lunch money! Double thank-you to SockPuppet for being a double sponsor and sending actual socks and stickers for participants.

    👇 Stats for this CTF:
    110 Teams
    3192 submissions
    2290 accepted submissions.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  45. 👉 First, a big thank you to all of our sponsors for this CTF, but in particular to @SockPuppet.io, Kasm Technologies, @epieos and @usersearch_web for your generous cash contributions to make sure our volunteer staff and coaches got lunch money! Double thank-you to SockPuppet for being a double sponsor and sending actual socks and stickers for participants.

    👇 Stats for this CTF:
    110 Teams
    3192 submissions
    2290 accepted submissions.

    #OSINT4GOOD #OSINT #TraceLabs #CTF #DEFCON34

  46. Leaderboard pressure is building. 🚩Here's the count as of 16:10 today.

    🥇 TheSnorIx — 552 pts | 5 solves
    🥈 STUMBLEDORE — 437 pts | 4 solves
    🥉 Forge — 321 pts | 4 solves

    The gap is getting tighter. One more flag could change the board fast.

    #DEFCON34 #CTF #RoboticHackingCommunity #PhysicalAI

  47. Leaderboard pressure is building. 🚩Here's the count as of 16:10 today.

    🥇 TheSnorIx — 552 pts | 5 solves
    🥈 STUMBLEDORE — 437 pts | 4 solves
    🥉 Forge — 321 pts | 4 solves

    The gap is getting tighter. One more flag could change the board fast.

    #DEFCON34 #CTF #RoboticHackingCommunity #PhysicalAI

  48. «Bro, what…?» #1. Первый контакт с crackme на Linux x86-64

    Вы запускаете программу, о которой ничего не знаете. Она вежливо просит строку, а в ответ на ваш ввод насмешливо отвечает: «Bro, what are you trying to do?» И правда, что мы пытаемся сделать? Пытаемся понять ее. Перед нами crackme – программа-головоломка, написанная для тренировки навыков обратной разработки: бинарник под Linux x86-64 без исходников и документации, который издевается над каждым, кто не смог его разгадать. Это первая статья цикла из трех о гибридном анализе крякми Getting Started Keygen (Mazzottis). Мы осмотрим файл штатными утилитами, найдем main в Ghidra, расшифруем «бессмысленные» имена переменных в реальную раскладку стека и подтвердим гипотезы в GDB. По пути встретим оптимизированный пролог без RBP, «хитрое» беззнаковое условие и std::string , спрятавшийся в трех переменных, которые на первый взгляд никак не связаны. Во второй части цикла – мутационное тестирование и реконструкция скрытой структуры, в третьей – полный разбор хеш-функции и восстановление алгоритма на Python. Читать первую часть

    habr.com/ru/articles/1068160/

    #реверсинжиниринг #Ghidra #GDB #ассемблер #x8664 #crackme #CTF #отладка #Linux #C++

  49. «Bro, what…?» #1. Первый контакт с crackme на Linux x86-64

    Вы запускаете программу, о которой ничего не знаете. Она вежливо просит строку, а в ответ на ваш ввод насмешливо отвечает: «Bro, what are you trying to do?» И правда, что мы пытаемся сделать? Пытаемся понять ее. Перед нами crackme – программа-головоломка, написанная для тренировки навыков обратной разработки: бинарник под Linux x86-64 без исходников и документации, который издевается над каждым, кто не смог его разгадать. Это первая статья цикла из трех о гибридном анализе крякми Getting Started Keygen (Mazzottis). Мы осмотрим файл штатными утилитами, найдем main в Ghidra, расшифруем «бессмысленные» имена переменных в реальную раскладку стека и подтвердим гипотезы в GDB. По пути встретим оптимизированный пролог без RBP, «хитрое» беззнаковое условие и std::string , спрятавшийся в трех переменных, которые на первый взгляд никак не связаны. Во второй части цикла – мутационное тестирование и реконструкция скрытой структуры, в третьей – полный разбор хеш-функции и восстановление алгоритма на Python. Читать первую часть

    habr.com/ru/articles/1068160/

    #реверсинжиниринг #Ghidra #GDB #ассемблер #x8664 #crackme #CTF #отладка #Linux #C++

  50. «Bro, what…?» #1. Первый контакт с crackme на Linux x86-64

    Вы запускаете программу, о которой ничего не знаете. Она вежливо просит строку, а в ответ на ваш ввод насмешливо отвечает: «Bro, what are you trying to do?» И правда, что мы пытаемся сделать? Пытаемся понять ее. Перед нами crackme – программа-головоломка, написанная для тренировки навыков обратной разработки: бинарник под Linux x86-64 без исходников и документации, который издевается над каждым, кто не смог его разгадать. Это первая статья цикла из трех о гибридном анализе крякми Getting Started Keygen (Mazzottis). Мы осмотрим файл штатными утилитами, найдем main в Ghidra, расшифруем «бессмысленные» имена переменных в реальную раскладку стека и подтвердим гипотезы в GDB. По пути встретим оптимизированный пролог без RBP, «хитрое» беззнаковое условие и std::string , спрятавшийся в трех переменных, которые на первый взгляд никак не связаны. Во второй части цикла – мутационное тестирование и реконструкция скрытой структуры, в третьей – полный разбор хеш-функции и восстановление алгоритма на Python. Читать первую часть

    habr.com/ru/articles/1068160/

    #реверсинжиниринг #Ghidra #GDB #ассемблер #x8664 #crackme #CTF #отладка #Linux #C++