<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>writeup on CHERIEF Yassine</title>
    
    
    
    <link>https://omega-coder.github.io/tags/writeup/</link>
    <description>Recent content in writeup on CHERIEF Yassine</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-us</language>
    <copyright>Yassine CHERIEF</copyright>
    <lastBuildDate>Sun, 05 May 2019 18:03:05 +0200</lastBuildDate>
    
	<atom:link href="https://omega-coder.github.io/tags/writeup/index.xml" rel="self" type="application/rss+xml" />
    
    
    <item>
      <title>INShAck 2019 :: You Shall Not Pass :: Forensics 330 Writeup</title>
      <link>https://omega-coder.github.io/posts/inshack-you-shall-not-pass-forensics-330-writeup/</link>
      <pubDate>Sun, 05 May 2019 18:03:05 +0200</pubDate>
      
      <guid>https://omega-coder.github.io/posts/inshack-you-shall-not-pass-forensics-330-writeup/</guid>
      <description>
        
          
          
          
        
        
        
          Challenge details.    Category Points Solves     Forensics 330 11    1. Challenge description  One of my friends is a show-off and I don&amp;rsquo;t like that.Help me find the backdoor he just boasted about! :DYou&amp;rsquo;ll find an image of his USB key here.And one last thing, my friend owns you-shall-not-pass.ctf.insecurity-insa.fr.
 2. Solution 2.1 Data Extraction Part By extracting the compressed file that was given to us, we find a raw image of an NTFS filesystem, you can verify that using the file command on linux.
          
        
        </description>
    </item>
    
    <item>
      <title>AngstromCTF 2019 | No SEQUELS and No SEQUELS 2 Web Writeup</title>
      <link>https://omega-coder.github.io/posts/angstromctf-2019-no-sequels-and-no-sequels2-web-writeup/</link>
      <pubDate>Fri, 26 Apr 2019 01:49:01 +0200</pubDate>
      
      <guid>https://omega-coder.github.io/posts/angstromctf-2019-no-sequels-and-no-sequels2-web-writeup/</guid>
      <description>
        
          
          
          
        
        
        
          This blog post contains the writeup for two challenges (No SEQUELS &amp;amp; No SEQUELS 2), because they are related.
So let&amp;rsquo;s start with No SEQUELS first.
1. No SEQUELS 1 Category: Web
Points: 50
 1.2 Challenge Description  The prequels sucked, and the sequels aren&amp;rsquo;t much better, but at least we always have the original trilogy.
  Hint said : MongoDB is a safer alternative to SQL, right?
          
        
        </description>
    </item>
    
    <item>
      <title>Hacklab ESGI 2019 |  Rookie Web100 Writeup</title>
      <link>https://omega-coder.github.io/posts/hacklab-esgi-2019-rookie-web-writeup/</link>
      <pubDate>Mon, 08 Apr 2019 10:59:30 +0200</pubDate>
      
      <guid>https://omega-coder.github.io/posts/hacklab-esgi-2019-rookie-web-writeup/</guid>
      <description>
        
          
          
          
        
        
        
          Challenge Description    Category Points Solves     web 100 18    This is the URL for the challenge.
URL:http://ctf.hacklab-esgi.org:8082/
So, as soon as we visit the given URL, we get a simple web page saying Website Checker and the title saying super curling (this gonna be fun!!). we notice that there is one input in the page, whatever you give as input gets passed to curl as a parameter.
          
        
        </description>
    </item>
    
    <item>
      <title>Securinets CTF 2k19 Lost Flag Writeup</title>
      <link>https://omega-coder.github.io/posts/securinets-ctf-2019-lost-flag-writeup/</link>
      <pubDate>Tue, 26 Mar 2019 17:37:37 +0200</pubDate>
      
      <guid>https://omega-coder.github.io/posts/securinets-ctf-2019-lost-flag-writeup/</guid>
      <description>
        
          
          
          
        
        
        
          Description    Category Points Solves     Forensics 994 19    Description : Help me get back my flag !
URL: https://web8.ctfsecurinets.com/
After visiting the link above, we get a login page.We can login using admin/admin, but unfortunately the flag is deleted.
Then I started searching in the website for any other infos, but with no success. the admin of the challenge (Tr&#39;GFx) said that bruteforcing directories is enough to solve the challenge, so I used dirsearch.
          
        
        </description>
    </item>
    
  </channel>
</rss>