NoobCTF 0x1 Write-up

Welcome — 10 pts

Memory Forensic

Mr. Pr0xy’s Gift :) — 10 pts

##Parent Process## — 80 pts

Processes in the memory dump

Malicious Process — 100 pts

Thanks To Sponsors — 7x50 = 350 pts


Open S0urc3–150 pts


Pretty Good?? — 150 pts

gpg2john message.pgp > out
john --wordlist=rockyou.txt out


It’s easy — 50 pts

05 10 19 02 00 10 4A 46 49 46 00 01
FF D8 FF E0 00 10 4A 46 49 46 00 01

Fine the tone — 250 pts


Frequency — 250 pts

Aar_Ess_Ae 2.0–200 pts




Bug Bounty Hunter | CTF player | Student

Love podcasts or audiobooks? Learn on the go with our new app.

Recommended from Medium

How RelayHealth integration makes medical claim processing easy for pharmacies

How to Code a Fantastic Batch Payment Function with Solidity: A Must Know Technique

Premia 2.0 Community Call Summary

Bloomberg Just Made a Cool Python Project

Redelivery Button Next to the Failed Order Does Not Work?

Faster Flink adoption with self-service diagnosis tool at Pinterest

Dr. Squirrel web service reads from the JobSnapshot topic, then merges in more job info from calling external data sources such as Flink REST API and YARN ResourceManager. The web service exposes APIs to the frontend built with React to allow users to explore job health more easily.

My macOS Development Environment of 2018 — End of the Year Edition

Software Engineering Internship at Centene Corporation

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Naveen Prakaasham K S V

Naveen Prakaasham K S V

Bug Bounty Hunter | CTF player | Student

More from Medium

Write-up: CORS vulnerability with trusted null origin @ PortSwigger Academy

Fuse- Hack The Box

Are Known Vulnerabilities the Biggest Threat to IoT Security? | Soracom

Ollie(MEDIUM)-THM Writeup