Alien Cradle
CTF

Alien Cradle

PowerShell deobfuscation
An unusual sighting
CTF

An unusual sighting

Linux. Log analysis
Artifact Of Dangerous Sighting
CTF

Artifact Of Dangerous Sighting

Disk image. Alternate Data Streams. PowerShell deobfuscation
Artifacts of Dangerous Sightings
CTF

Artifacts of Dangerous Sightings

HTB CA 2023. Disk image. Alternate Data Streams. PowerShell deobfuscation
Automation
CTF

Automation

HTTP and DNS traffic analysis. PowerShell. AES cipher
Bashic Ransomware
CTF

Bashic Ransomware

HTB CA 2023. Network traffic analysis. Bash deobfuscation. Finding cryptographic keys. AES cipher
Chase
CTF

Chase

HTTP and TCP traffic analysis
Deadly Arthropod
CTF

Deadly Arthropod

USB HID analysis. Decoding key strokes
Downgrade
CTF

Downgrade

Windows event logs. XML filters
Downgrade
CTF

Downgrade

Windows event logs. XML filters
Enhance!
CTF

Enhance!

picoCTF 2022. 100 points. SVG image
Event Horizon
CTF

Event Horizon

Windows event logs
Exif
CTF

Exif

File metadata
Export
CTF

Export

Memory dump analysis
Extraterrestrial Persistence
CTF

Extraterrestrial Persistence

Shell script analysis
Fake News
CTF

Fake News

PHP and JavaScript deobfuscation. Disc image inspection
Fake News
CTF

Fake News

HTB UniCTF 2022. PHP and JavaScript deobfuscation. Disc image inspection
Forensics 101
CTF

Forensics 101

Printable characters in files
Free Services
CTF

Free Services

Excel macros deobfuscation
Git Is Good
CTF

Git Is Good

Git commits
Glory of the Garden
CTF

Glory of the Garden

picoCTF 2019. 50 points. Printable characters in files
Halloween Invitation
CTF

Halloween Invitation

Microsoft Office VBA macros deobfuscation
Halloween Invitation
CTF

Halloween Invitation

Microsoft Office VBA macros deobfuscation
Illumination
CTF

Illumination

Git enumeration. Base64 encoding
information
CTF

information

picoCTF 2021. 10 points. File metadata
Insider
CTF

Insider

Firefox files inspection. Credentials decryption
Interstellar C2
CTF

Interstellar C2

Network traffic analysis. PowerShell deobfuscation. C# .NET decompilation. Steganography. AES cipher
Interstellar C2
CTF

Interstellar C2

HTB CA 2023. Network traffic analysis. PowerShell deobfuscation. C# .NET decompilation. Steganography. AES cipher
Keep Tryin'
CTF

Keep Tryin'

Network traffic analysis. DNS queries. RC4
Logger
CTF

Logger

USB HID analysis. Decoding key strokes
Lookey here
CTF

Lookey here

picoCTF 2022. 100 points. Find pattern
Lost Flag
CTF

Lost Flag

ImaginaryCTF 04/07/2022. 75 points. ZIP archive. macOS (.DS_Store)
Lure
CTF

Lure

Word macros deobfuscation
MarketDump
CTF

MarketDump

Network traffic analysis. Telnet
mixup
CTF

mixup

ImaginaryCTF 03/08/2022. 30 points. Unicode characters
No Place To Hide
CTF

No Place To Hide

Windows RDP image recovery
Packet Cyclone
CTF

Packet Cyclone

Rclone and chainsaw. Windows event logs
Pandora's Bane
CTF

Pandora's Bane

HTB CA 2023. Memory dump analysis. Rust reversing. PowerShell logs. C# .NET decompilation. XOR cipher
Peel Back The Layers
CTF

Peel Back The Layers

Docker image inspection. Shared library analysis
POOF
CTF

POOF

Network traffic analysis with Wireshark. Binary analysis
POOF
CTF

POOF

Network traffic analysis with Wireshark. Binary analysis
Red Miners
CTF

Red Miners

Bash. Base64
Redaction gone wrong
CTF

Redaction gone wrong

picoCTF 2022. 100 points. Hidden text in PDF
Relic Maps
CTF

Relic Maps

Malware analysis. Batch and PowerShell deobfuscation. AES cipher. C# .NET decompilation
Relic Maps
CTF

Relic Maps

HTB CA 2023. Malware analysis. Batch and PowerShell deobfuscation. AES cipher. C# .NET decompilation
Roten
CTF

Roten

HTB CA 2023. Network traffic analysis. PHP deobfuscation
Scripts and Formulas
CTF

Scripts and Formulas

VBS script. PowerShell. Windows Event logs
Snowboard
CTF

Snowboard

Printable characters in files. Base64 encoding
St3g0
CTF

St3g0

picoCTF 2022. 300 points. Steganography inside an image
Taking LS
CTF

Taking LS

Listing hidden files
Trick or Breach
CTF

Trick or Breach

Microsoft Office document internals
Urgent
CTF

Urgent

Email message analysis. Base64 and URL encodings. VBScript
Valhalloween
CTF

Valhalloween

Windows event logs. chainsaw
WOW... So Meta
CTF

WOW... So Meta

File metadata
Wrong Spooky Season
CTF

Wrong Spooky Season

Network traffic analysis with Wireshark
Wrong Spooky Season
CTF

Wrong Spooky Season

Network traffic analysis with Wireshark