I was talking to a friend recently when I realized that the challenges I designed for the Pittsburgh Hacker’s Association’s first four meetings (prior to my return to Texas) were no longer readily available. If anyone still wants to play through them I’ve decided to just share them here. Enjoy!
Continue reading “PHA Challenges”Starting the 2020 eChallenge Coin Redux
There’s a designer named Bradán Lane who makes some excellent hardware, and one of my favorite things he’s created is a set of challenge coin circuits. I won’t go into too much detail on them other than to note they have a fun story line, a series of challenges, and you have to exercise some basic hardware hacking skills to participate. If you’d like more details, please check out the listing for the coin on Tindie. But what if you don’t know how to get started? Well, a friend of mine (Visual) and I recently played through this, and thought we’d document how to get started for anyone who needs a little extra help. Let’s get started!
Continue reading “Starting the 2020 eChallenge Coin Redux”QuickHit: Things to Attack
Need a quick list of things to attack? Try these. 🙂
- Buggy Web App: http://www.itsecgames.com/
- Damn Vulnerable iOS App: http://damnvulnerableiosapp.com/
- Damn Vulnerable Web Application: http://www.dvwa.co.uk/
- Damn Vulnerable Web Services: http://dvws.professionallyevil.com/
- Google Gruyere Web App: http://google-gruyere.appspot.com/
- Hack This!: https://www.hackthis.co.uk/
- Hack This Site: https://www.hackthissite.org/
DerbyCon 9 – DomainTools CTF – Reversing
Part three of the DerbyCon DomainTools CTF write-ups. You can find coverage of all the Crypto challenges here and coverage of all the Forensics challenges here. This finishes up the solutions for every challenge in the CTF, broken up by the same section names that they used. When possible, I’ll also be creating CyberChef recipes to directly solve each challenge, and linking to them following the solution description. Let’s get started!
DerbyCon 9 – DomainTools CTF – Forensics
Part two of the DerbyCon DomainTools CTF write-ups. You can find yesterday’s coverage of all the Crypto challenges here. I’ll be contributing solutions for every challenge in the CTF, broken up by the same section names that they used. When possible, I’ll also be creating CyberChef recipes to directly solve each challenge, and linking to them following the solution description. Today: the forensics challenges!
DerbyCon 9 – DomainTools CTF – Crypto
Continuing with write-ups for events from DerbyCon is the DomainTools CTF. I’ll be contributing solutions for every challenge in the CTF, broken up by the same section names that they used. When possible, I’ll also be creating CyberChef recipes to directly solve each challenge, and linking to them following the solution description. First up: the crypto challenges!
DerbyCon 9 – TrustedSec Challenge Coin Solution
This last weekend was the final DerbyCon. We’ll #TrevorForget. It was also an event filled with several quick and fun CTFs… and since I’ve been deficient in posting things lately, I figured I’d catch up by showing how to solve a whole pile of them. First up: the TrustedSec Challenge Coin! Attendees could get one of these by just showing up and asking for one, and there was a prize pack being awarded to anyone who could solve it. I was the fifth to do so, and figured others might want to know how to get to the final message.
Continue reading “DerbyCon 9 – TrustedSec Challenge Coin Solution”