bi0s
  •  Home
  •  Categories
  •  Archives
  •  Tags
  •  Home
  •  Categories
  •  Archives
  •  Tags

TarAnalyzer - 2020 Defenit CTF

c3rb3ru5
2020-06-07
Web Exploitation

tl;dr

  • Zip Slip Vulnerability + YAML Deserialization Attack + Race Condition
  • Unintended Solution: Upload symlink leading to arbitarary file reads
Read More
Defenit YAML Zip Slip Race Condition Symlink

USB 2 - 2020 Defenit CTF

stuxn3t
2020-06-07
Forensics / Registry

tl;dr

  • Digging into windows registry to find process run counts.
  • Extracting and parsing AmCache to find the hash of process images
Read More
Windows Registry Analysis Defenit

golf.so - PlaidCTF 2020

d4rk_kn1gh7
2020-04-29
Misc / Linux / ELF

tl;dr

  • Hand-crafting a linux shared object file with a size of less than 194 bytes
Read More
Plaid

Strange PCAP - HackTM CTF Quals 2020

g4rud4
2020-02-10
Forensics / Network

tl;dr

  • Disk Dump extraction.
  • USB leftover Capture data extraction.
  • Zip file cracking.
Read More
HackTM Wireshark

Think twice before speaking once - HackTM CTF Quals 2020

slashb4sh
2020-02-10
Pwn / Linux / ELF

tl;dr

  • Linux userspace exploitation by parsing ELF for symbol addresses with an arbitrary read
Read More
HackTM

Find My Pass - HackTM CTF Quals 2020

stuxn3t
2020-02-09
Forensics / Memory

tl;dr

  • Memory dump analysis using Volatility.
  • Extracting Keepass Master Password from the memory.
  • Extracting flag from ZIP archive attached in the Keepass database.
Read More
Windows Memory Analysis HackTM

RR - HackTM CTF Quals 2020

stuxn3t
2020-02-09
Forensics / Disk

tl;dr

  • RAID recovery
  • JPEG image extraction from lost disk
Read More
HackTM RAID Recovery

Falcon Badge

securehardware
2020-01-21
Hardware

In this blog, we are going to share the experience of creating our first electronic badge.

Read More
Badge Life IoT Hardware Badge

Fuzzer gets us new functions to bypass PHP disable_functions

SpyD3r
2019-10-26
Web Exploitation

In this blog, we will be discussing the new functions we got to bypass PHP disable_functions and also the other tricks to do the same.

Read More
PHP disable_functions fuzzer

TCalc - Hack.lu CTF 2019

slashb4sh
2019-10-26
Pwn

tl;dr

  • Linux heap exploitation with arbitary free vulnerability
Read More
Writeup CTF Pwn

 Previous 

14 / 18

 Next 

Official blog of team bi0s

  Projects
  •   bi0s-wargame
    (Unraveling)
  •   bi0s-wiki
    (Free Encyclopedia)
  •   InCTF
    (Nationals CTF)
  •   InCTFj
    (Juniors CTF)

Made With Love and Coffee



Blog content follows the Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0) License

Use Material X as theme, total visits times.