Showing 96 Result(s)

SwampCTF 2024 Web: Potion Seller Writeup

CTF link. My potions would kill you, traveler. You cannot handle my potions. The app allows users to borrow gold, buy rotation, and pay back the borrowed gold. To get to Flag, we need to go through certain steps. Borrow gold using the /borrow URL: The user must borrow a certain amount of gold by …

SwampCTF 2024 Forensics: New C2 Channel? Writeup

CTF link. Sometimes you can exfiltrate data with more than just plain text. Can you figure out how the attacker smuggled out the flag on our network? If we examine HTTP requests, we notice the flag in the ASCII DUMP section. swampCTF{w3lc0m3_70_7h3_l4nd_0f_7h3_pc4p} Aleyna DoğanHello, I am Aleyna Doğan. I work as a Cyber Threat Intelligence …

SwampCTF 2024 OSINT: Hidden Snack Stop Writeup

CTF link. I found this really good chips place, but I don’t want it to be crowded, so I’ve blurred everything. Hahaha! The flag is the address of this location as it’s shown on google maps. Good luck! Do not wrap the address in swampCTF{} There are two important clues in the image. If we …

SwampCTF 2024 OSINT: Aerial Attack Writeup

CTF link. Find where this photo was taken! Make sure to keep your eyes out for the hawks though! The flag is the truncated coordinate of this location to the hundredths. For example: (xx.xx, xx.xx) Since we are asked for image coordinates, we add the file to Exiftool. Find here the GPSLatitude and GPSLongitude coordinates …

SwampCTF 2024 OSINT: Lost in Space Writeup

CTF link. I think OSINT challenges are stupid! If they aren’t, prove it! How far away is this? Don’t bother giving me the unit, there’s only one that you should be using in space anyways (use Astronomical Units). The flag entry is extremely forgiving just make sure you get the integer for distance right. This a classic …

SwampCTF 2024 Misc: What the Form Writeup

CTF link. I found this form but it doesn’t go anywhere! I was told I’d find the flag after I’d gone through enough form questions but I’ve answered the same question 20 times and I’m still on the same page… If we go to Google form, no matter how much we try to send the …

TexSAW2024 Forensics: Malicious Threat Writeup

CTF link. In the wake of recent security breaches, it has become paramount to ensure the integrity and safety of our systems. A routine audit of our admin activity logs has revealed several anomalies that could suggest a breach or an attempted breach. These logs are critical to understanding the actions taken by users with …

TexSAW2024 OSINT: Geo-Location Writeup

CTF link. Find what street this picture was taken from. Format the flag as the following: The street name in all caps with the spaces replaced by underscores. Write the full word for any abbreviated parts of the name. Example: If the street was Bourbon St the flag would be: texsaw{BOURBON_STREET} When we look at the …

TexSAW2024 OSINT: Sherlock Writeup

CTF link. I need to study for a class but the quizlet I’m using has jumbled up answers that just don’t make sense. Can you figure out how to read it? https://quizlet.com/882185739/sherlock-flash-cards/?funnelUUID=acf2df22-5f5c-4a67-9131-d0b6b18047df When we go to the Quizlet application, we see the Twitter link of the creator. The Twitter account “Vigenère cipher! 🔑 HACK” shows …