Skip to content

craig/MCH2022-CTF

Folders and files

NameName
Last commit message
Last commit date

Latest commit

164f58c · Aug 3, 2022

History

71 Commits
Jul 27, 2022
Aug 3, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 29, 2022
Jul 28, 2022
Jul 27, 2022
Aug 3, 2022
Jul 27, 2022
Aug 3, 2022
Aug 3, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022
Jul 27, 2022

Repository files navigation

MCH2022-CTF

Final Scoreboard https://github.com/craig/MCH2022-CTF/blob/main/scoreboard.png

Writeup collection: https://watchdog.notion.site/MCH-CTF-May-Contain-Hackers-2b36d2a891ed441abadd75b9d2ef3ec9

While several of these writeups are done by me, please check the individual files for credit. :)

Crypto

Crypto Machine: https://www.youtube.com/watch?v=BjkOwSQ3wk8

qEXMRY^7: https://imp.ress.me/blog/2022-07-26/mch-2022-crypto/#qexmry-7

Squaring Off: https://imp.ress.me/blog/2022-07-26/mch-2022-crypto/#squaring-off & https://duksctf.github.io/2022/07/25/MCH22-squaringoff.html

Sharing is Caring: https://imp.ress.me/blog/2022-07-26/mch-2022-crypto/#sharing-is-caring

Smartblockchain: https://flag-poisoning.fr/writeup/smartblockchain-mch-2022/

Curvy: https://github.com/craig/MCH2022-CTF/blob/main/curvy-p.py (incomplete; only part 1, binary search for p implemented by craig, failed to determine a and b unfortunately)

Curvy: https://duksctf.github.io/2022/07/25/MCH22-curvy.html

Crypto machine 02: https://github.com/craig/MCH2022-CTF/blob/main/crypto_machine_02.txt

Pwnable

HipsterProgramming: https://github.com/craig/MCH2022-CTF/blob/main/HipsterProgramming.txt

rockpaperlizardspock: https://github.com/craig/MCH2022-CTF/blob/main/rockpaperlizardspock.txt

pwn me if you can (badge challenge): https://twitter.com/__spq__/status/1552386564759687175 (hints not a complete writeup)

pwn me if you can (badge challenge): https://github.com/wallabythree/mch2022-hack-me-if-you-can (full writeup)

pwn me if you can (badge challenge): https://dojoe.github.io/hackmeifyoucan/ (another full, way longer writeup)

PUPA: https://github.com/craig/MCH2022-CTF/blob/main/pupa

Forensics

Screensaver: https://github.com/craig/MCH2022-CTF/blob/main/screensaver.txt

Encrypted USB: https://github.com/craig/MCH2022-CTF/blob/main/encrypted_usb.txt

North Korean Needle: https://github.com/craig/MCH2022-CTF/blob/main/north_korean_needle.txt

Extensions: https://www.youtube.com/watch?v=kHwdguVWJJE

foraiur: https://github.com/craig/MCH2022-CTF/blob/main/forauir

Web

Coinflip: https://gist.github.com/betrisey/45882ce20c743c8e2fadff88899030e1

Coinflip: https://github.com/craig/MCH2022-CTF/blob/main/coinflip.sh

Secure Router: https://github.com/craig/MCH2022-CTF/blob/main/secure_router.txt

Captcha: https://github.com/craig/MCH2022-CTF/blob/main/captcha.txt

Cat Lovers: simple LFI, curl https://catlovers.ctf.zone/image.php?file=../../../../etc/passwd | grep catlover | cut -d: -f5

Network

For starters: https://www.youtube.com/shorts/58NhToPKro8

Misc

Perlgolf: https://github.com/craig/MCH2022-CTF/blob/main/perlgolf

Rogue Wifi: https://github.com/craig/MCH2022-CTF/blob/main/rogue_wifi.txt

Access Control 1: https://github.com/craig/MCH2022-CTF/blob/main/accesscontrol1.txt

Access Control 2: https://github.com/craig/MCH2022-CTF/blob/main/accesscontrol2.txt

Locked Locks 1: A lock in a white case, needs lockpicking.

Locked Locks 2: A lock in a black case, needs lockpicking and is hard, due to a security pin.

Lost Combination: A simple shimming challenge. https://en.wikipedia.org/wiki/Shim_(lock_pick)