Avatar

Smyler.net

Hacking, software development, networking and everything in between

Gamer

CTF writeup: 0xL4ugh CTF 2024

2024/02/11
Illustration
DFIR Windows Malware Autopsy CTF

A writeup of the five Gamer challenges from the 2024 edition of the 0xL4ugh CTF. The challenges required the use of multiple Windows forensics technics to understand an attack delivered via Discord.

Shadow of the Undead

CTF writeup: HackTheBox UniCTF 2023

2023/12/10
Illustration
DFIR Malware CTF

A writeup of the Shadow of the Undead hard forensics challenge from Hack The Box's University CTF 2023. As the zombie invasion rages, suspicious activity is detected from the account of the biohazard waste removal team. Let's decrypt some meterpreter traffic and analyze its Windows shellcode...

Challenges in the challenge: CTFs, K8S, SSRF and the cloud

Lessons learnt from 404 CTF 2023

2023/11/29
Illustration
Cloud Kubernetes Network filtering CTF

Playing a role in the organization of the 404 CTF is probably what taught me the most out of all the projects I worked on. One thing that was especially formative during the 2023 In 2023 was a minor security issue we experienced. It was caused by an SSRF vulnerability that was not covered properly by the security measures we had put in place. This article talks in detail about the issue and the fixes we deployed.

Memdump

CTF writeup: HackSecuReims 2023

2023/03/27
Illustration
DFIR Volatility Linux CTF

A writeup of the four Memdump challenges from the 2023 edition of the HackSecuReims. These challenges mainly involved Volatility, with the small twist that the memory dump was performed on a very recent Debian machine, just after the packaging of the kernel's debug symbols had changed. There was absolutely no documentation online on building Volatility profiles for these Debian versions, meaning one had to really understand the process and not just copy-paste a tutorial.

Keep the steam activated

CTF writeup: HackTheBox UniCTF 2021 qualifiers

2021/12/18
Illustration
DFIR Active Directory Malware CTF

A writeup of the Keep the steam activated forensics challenge from the 2021 HackTheBox UniCTF qualifiers. It was the forensics challenge rated the most difficult of the CTF, and had the player analyse a network capture to understand how an Active Directory domain had been compromised.