-
Derniers articles publiés
- mongodb – RCE by databaseSpraying
- SCRT Security day : 13 Juin 2013 à Chavannes de Bogis
- NoSuchCon
- Publication de Fireforce 2.2 (plugin de Brute-force Firefox) / Release of Fireforce 2.2
- Hack in The Box Amsterdam 2013
- Insomni’hack 2013 – Armory level3
- Insomni’hack 2013 Armory level1 & level2
- Insomni’hack 2013 : Armory wargame
Archives
- juin 2013
- mai 2013
- avril 2013
- mars 2013
- février 2013
- janvier 2013
- novembre 2012
- octobre 2012
- septembre 2012
- août 2012
- juillet 2012
- juin 2012
- mai 2012
- mars 2012
- janvier 2012
- novembre 2011
- septembre 2011
- août 2011
- juillet 2011
- juin 2011
- mai 2011
- avril 2011
- mars 2011
- février 2011
- janvier 2011
- décembre 2010
- novembre 2010
- octobre 2010
- septembre 2010
- août 2010
Archives de Catégorie: Insomni’hack
Insomni’hack 2013 – Armory level3
This challenge was the last level on the ARM platform. It was a crackme with a stripped binary including a basic anti-debugging trick. Sadly, only one team managed to complete this challenge before the end of Insomni’hack and another wasn’t … Lire la suite
Publié dans Insomni'hack
Tagué arm, crackme, raspberry pi, reverse engineering
Insomni’hack 2013 Armory level1 & level2
Level1 should be pretty straightforward. Looking at the assenbly, you can see that it prints the current working directory by using system("pwd") and then strcpy user controlled data to a fixed size buffer. Stack is NX so we need to … Lire la suite
Publié dans Insomni'hack
Tagué arm, exploitation, raspberrypi
Insomni’hack 2013 : Armory wargame
As arm CPU are getting more and more used, we decided to create an arm-based wargame consisting of 4 challenges. The first one, described here, is a reverse engineering challenge that will give you the credentials to access the actual … Lire la suite
Publié dans Insomni'hack
Insomni’hack 2013 : Money money money
Money Money Money Even after "The Event", money is still the key to beat your opponents. Our scouts found an old banking server which should contain information about the accounts and the money they contain, but this old computer used … Lire la suite
Publié dans Insomni'hack
Insomnihack 2013 – Central Directory
And here I was thinking everybody knew SQL injections and that this challenge wouldn’t last an hour. And yet only one team was able to complete it before the end of the contest. o_O In the description of the challenge, … Lire la suite
Publié dans Insomni'hack
Insomni’hack 2013 – recycle.exe
The main idea behind this challenge came after reading an article in Valhalla magazine about inline JScript for implementing cryptography in malwares targeting Windows. The first thing that we can look out for is what is done with the process argument or … Lire la suite
Publié dans Insomni'hack
Insomni’hack 2013 : The game
A popular game amongst survivors is the Rock-Paper-Scissors-Lizard-Spock game. To gain their respect, we strongly encourage you to be the best at this game. This will strengthen your reputation and will attract new citizens. This challenge is all about timing. … Lire la suite
Publié dans Insomni'hack
Insomnihack 2013 – Facebookalypse
This challenge was definitely one of the harder web missions and based on a redefined session handler mechanism that was initially discovered in a relatively well-know Firewall brand. It is also very similar to the example you can find on … Lire la suite
Publié dans Insomni'hack
Insomni’hack 2013 – Life is hard(ware)
Intro For this challenge, I wanted the attendees to reverse a microcontroller firmware, but most of all, I wanted them to actually see the result "live" to prove that the code actually works on a real device. The main idea was … Lire la suite
Publié dans Hardware, Insomni'hack
Un commentaire
Insomni’hack contest wrap-up
After 8 hours of intense hacking, pycured ended up on top in this year’s Insomni’hack contest, in front of [TechnoPandas] and Int3pids. It all came down to the last hour, where they were able to solve several important challenges to … Lire la suite
Publié dans Insomni'hack