Home
BatBato's Blog
Cancel

CTFs | 404CTF_2024 | Web | Le match du siecle

Le match du siecle [1/2] Here, we need to find a way to get a ticket for the match. We arrives on a basic page and we see that we can create an account so that’s what i did and I connect to it: ...

CTFs | 404CTF_2024 | Web | Exploit mag

Exploit mag The main idea here, is that we can’t access the articles from the website without paying for a subscription. But we can’t get any be cause we are redirected when we try to get one: ...

CTFs | 404CTF_2024 | Steganographie | Regarder en stereo

Regarder en stereo The image we have doesn’t look like anything I’ve ever seen: First, I searched “Regarder en stereo” online. I found this link about crossed vision and it was talking about ...

CTFs | 404CTF_2024 | Steganographie | L'absence

L’absence Here we are given the following text: bonsoir, désolé pour le déranGement. je n'ai pas pu Y aller hier pour l'épreuve de barres asyMétriques. désolé si je N'ai pas été à lA hauteur de...

CTFs | 404CTF_2024 | Retro | Intronisation du CHAUSSURE

Intronisation du CHAUSSURE The binary is available here. In the main function we see the following code: We notice the password split character by character and the order is the order of vari...

CTFs | 404CTF_2024 | Retro | Echauffement

Echauffement In this challenge, we are given the echauffement.bin file. We open it using ghidra and we see the following code in the main function: As we can see, the secret_function_dont_loo...

CTFs | 404CTF_2024 | Retro | Bugdroid Fight

Bugdroid Fight Here, we have the following apk. First I converted the apk into a JAR file using the following command: ./dex-tools-v2.4/d2j-dex2jar.sh Bugdroid_Fight_-_Part_1.apk The dex-...

CTFs | 404CTF_2024 | ROSO | Not on my watch

Not on my watch Here, we have the following image: The first thing I searched was the strings at the top of the watch waltham mass AWWCO. This gave me the website of pocketwatchdatabase. From...

CTFs | 404CTF_2024 | ROSO | Legende

Legende Here, we are given the following image: I couldn’t find anywhere this image online. But we are told that we need to find “one of the first French ski legends” and that here, he will w...

CTFs | 404CTF_2024 | Investigation Numerique | Vaut mieux sécuriser que guérir

Vaut mieux sécuriser que guérir This challenge had no sense for the first part of the flag, but we will see that later. Here we have a 2G memory dump. The fist thing, we notice is that we have ...