SunshineCTF 2023 Challenge Writeups (1x misc, 1x crypto, 2x rev, 4x scripting, 2x web, 4x pwn)

  Рет қаралды 1,724

SloppyJoePirates CTF Writeups

SloppyJoePirates CTF Writeups

Күн бұрын

Пікірлер: 13
@PockyBum522
@PockyBum522 Жыл бұрын
All, headphone warning for the Simon noises. Just speaker warning in general lol. Fantastic writeup, thank you very much! Someone said the link labels in simon2 are base64 with a URL-safe option.
@SloppyJoePirates
@SloppyJoePirates Жыл бұрын
hey @DavidSikesll, ha thanks yeah, it came out a little loud. sigh, that would have made simon2 way easier =P
@PockyBum522
@PockyBum522 Жыл бұрын
@@SloppyJoePirates I had no idea there was URL safe base64, I just saw it in the discord. There's also like a ten line solve in there. Keeps me humble :p
@ashiri.
@ashiri. Жыл бұрын
Great video and writeups. One thing I found is that there is a playdate reverse engineering repo on GH by the user cranksters (YT does not allow putting the URL in comments). That was tremendously helpful to tackle the archive.
@SloppyJoePirates
@SloppyJoePirates Жыл бұрын
Hey @ashiri! oh thanks, yeah, that looks way easier...
@markuche1337
@markuche1337 Жыл бұрын
Great 👏
@ViênThiềuMinh
@ViênThiềuMinh Жыл бұрын
hey joe, i usually download pwn binaries and many of them require specific version of glibc, mostly 2.34. Do you know how to resolve this error?. It is giving me issues while i can't play ctf.
@SloppyJoePirates
@SloppyJoePirates Жыл бұрын
yeah it's frustrating, if you can, I'd recommend just using a modern version of ubuntu (such as 22) that has the same libc version. I use ubuntu22 in a docker. I have a video on the channel called "favorite ctf tools" that shows how to set it up.
@terraflops
@terraflops Жыл бұрын
im stuck on 1st problem. i got the file, i decoded the base64, read the message , but how did you get to the Git bundle part? Is there a detailed walkthrough somewhere? Thanks for video.
@SloppyJoePirates
@SloppyJoePirates Жыл бұрын
There's two base64 strings in the original email. Are you base64 decoding the second one? That should be the git bundle
@terraflops
@terraflops Жыл бұрын
@@SloppyJoePirates i decoded only the 1st chunk. the second one is quite long but at the end is the == which indicates base64. Okay, thanks
@kampet3438
@kampet3438 Жыл бұрын
Congrats on all the solves :D The binary actually provided a libc leak in pwn/house-of-sus inside the function `report_body` (option 2). And to avoid struggling with the one gadgets, one could overwrite the GOT entry of `malloc` with `system` and then provide the address of `/bin/sh` as an size. Nonetheless that was a nice writeup 👍
@SloppyJoePirates
@SloppyJoePirates Жыл бұрын
Hey @kampet3438! Ohhh! Thank you!!! doi. That's way better
Intigriti CTF 2023 Challenge Writeups - Pwn
29:39
SloppyJoePirates CTF Writeups
Рет қаралды 1,5 М.
When Optimisations Work, But for the Wrong Reasons
22:19
SimonDev
Рет қаралды 1,2 МЛН
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН
Сестра обхитрила!
00:17
Victoria Portfolio
Рет қаралды 958 М.
coco在求救? #小丑 #天使 #shorts
00:29
好人小丑
Рет қаралды 120 МЛН
UFC 310 : Рахмонов VS Мачадо Гэрри
05:00
Setanta Sports UFC
Рет қаралды 1,2 МЛН
Vim Tips I Wish I Knew Earlier
23:00
Sebastian Daschner
Рет қаралды 87 М.
C++ Super Optimization: 1000X Faster
15:33
Dave's Garage
Рет қаралды 333 М.
Inside the V3 Nazi Super Gun
19:52
Blue Paw Print
Рет қаралды 2,5 МЛН
Coding a Web Server in 25 Lines - Computerphile
17:49
Computerphile
Рет қаралды 360 М.
one year of studying (it was a mistake)
12:51
Jeffrey Codes
Рет қаралды 225 М.
Transformers (how LLMs work) explained visually | DL5
27:14
3Blue1Brown
Рет қаралды 4,4 МЛН
Malware Development: Processes, Threads, and Handles
31:29
GlacierCTF 2023 Challenge Writeups (4x Warmup, 3x Web, 2x Pwn)
45:01
SloppyJoePirates CTF Writeups
Рет қаралды 2,2 М.
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН