WORMCON 0x01
29 challenges with 33 published community solutions between them. Solution links go to CTFtime’s task page, which aggregates every writeup for a challenge - individual blog posts rot, the aggregator does not.
Full task list on CTFtimeForensics10
Recover something from a file, a capture, or a disk image - often from a part of it the format says is unused.
- forensics
- thunderbird
- digital-forensics
- disk-imaging
- ftkimager
Same technique in picoCTF: Timeline 0, Timeline 1, Sleuthkit Apprentice
- iot
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- wireshark
- file_recovery
- ftp
Same technique in picoCTF: FindAndOpen, Ph4nt0m 1ntrud3r, WebNet0
- voip
- pcap2wav
- wireshark
Same technique in picoCTF: FindAndOpen, Ph4nt0m 1ntrud3r, WebNet0
- wifi_cracking
- wlan
- aircrack
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- malware
- forensics
- javascript
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- tor
- registry
- forensics
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- forensics
- logic-analyzer
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- emails
- ftkimager
- forensics
- vba
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
- malware
- forensics
- powershell
- virustotal
Same technique in picoCTF: investigation_encoded_2, FindAndOpen, Ph4nt0m 1ntrud3r
Web7
Reach data or functionality the application meant to keep from you - through its inputs, its tokens, or its trust in the client.
- htaccess
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- csrf
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- http
- wireshark
- xor
Same technique in picoCTF: Some Assembly Required 3, Live Art, secure-email-service
- php
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- web
- ssti
- flask
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
- web
Same technique in picoCTF: Live Art, secure-email-service, No FA
Cryptography5
Recover a plaintext or a key from something that was supposed to protect it. In practice: identify the scheme, find the parameter the author got wrong, exploit it.
- cryptography
- blockchain
- secp256k1
- bitcoin
- crypto
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- crypto
- xor
Same technique in picoCTF: Custom encryption, XtraORdinary, It's Not My Fault 2
- crypto
- png
- ecb
- des
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- frequency-analysis
- crypto
- substitution
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, AES-ABC
- bitcoin
- blockchain
- secp256k1
- rsa
- crypto
- cryptography
Same technique in picoCTF: It's Not My Fault 2, StegoRSA, john_pollard
OSINT5
Answer a question about the real world from public sources. The work is pivoting between identifiers, not exploiting anything.
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
- github
Same technique in picoCTF: CVE-XXXX-XXXX
- cctld
- osint
Same technique in picoCTF: CVE-XXXX-XXXX
- osint
- bitcoin
Same technique in picoCTF: CVE-XXXX-XXXX
Misc2
Everything that fits no other box: esolangs, puzzles, scripting exercises, and the jail escapes that have not yet earned their own category.
- iot
Same technique in picoCTF: PW Crack 2, Permissions, Specialer
- python3
- fernet
- iot
Same technique in picoCTF: PW Crack 2, PW Crack 1, PW Crack 3