-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
8 changed files
with
267 additions
and
39 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,5 +1,5 @@ | ||
<!doctype html><html lang=en data-mode=dark><head><meta charset=utf-8><meta name=viewport content="width=device-width,initial-scale=1,shrink-to-fit=no"><meta name=description content='Annie Nie's personal website "full of" personal projects and CTF writeups, where I try not to break things'><title>About</title> | ||
<link rel=preload href=https://anniequus.com/fonts/AnonymousPro-Regular.ttf as=font crossorigin=anonymous><link rel=preload href=https://anniequus.com/fonts/Heebo-VariableFont_wght.ttf as=font crossorigin=anonymous><link rel=preload href=https://anniequus.com/fonts/Rubik-VariableFont_wght.ttf as=font crossorigin=anonymous><link rel=stylesheet href=https://anniequus.com/css/main.min.438d8614614734b73815278dc3c64b0220335c8c5e5168baefe118fb203f84bb.css integrity="sha256-Q42GFGFHNLc4FSeNw8ZLAiAzXIxeUWi67+EY+yA/hLs=" crossorigin=anonymous><script defer src=https://anniequus.com/js/main.min.cf29f7226a9c2b2d20303d20e6fdd133796cbbd092dfd7486f2e01b089ffe03d.js integrity="sha256-zyn3ImqcKy0gMD0g5v3RM3lsu9CS39dIby4BsIn/4D0=" crossorigin=anonymous></script></head><body><header id=navbar><h1><a href=https://anniequus.com/>Equus 🐴 (Annie)</a></h1><ul><li><a href=/about/>About</a></li><li><a href=/posts/>Posts</a></li></ul></header><a href=# id=backtotop></a><div class=content><main class=about><article><header><h1>About Me</h1></header><p>Hi I’m Annie Nie, and I do random things.</p><p>CTF-ing with <a href=https://ctftime.org/team/140575 target=_blank rel=noreferrer>skateboarding dog</a> | ||
🛹🐶.</p><p>Contact me on <a href=https://www.linkedin.com/in/annienie/ target=_blank rel=noreferrer>LinkedIn</a> | ||
🛹🐶.</p><p>Contact me on <a href=https://www.linkedin.com/in/aaannie/ target=_blank rel=noreferrer>LinkedIn</a> | ||
, <a href=https://twitter.com/ThatEquus target=_blank rel=noreferrer>X</a> | ||
or chuck an email <a href=mailto:contact@anniequus.com>[email protected]</a></p></article></main></div></body></html> | ||
or chuck an email contact[at]anniequus.com</p></article></main></div></body></html> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,8 +1,44 @@ | ||
<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>CTF on Equus 🐴 (Annie)</title><link>https://anniequus.com/categories/ctf/</link><description>Recent content in CTF on Equus 🐴 (Annie)</description><generator>Hugo</generator><language>en-au</language><lastBuildDate>Sun, 26 Sep 2021 00:00:00 +0000</lastBuildDate><atom:link href="https://anniequus.com/categories/ctf/index.xml" rel="self" type="application/rss+xml"/><item><title>Path to a crypto master, the engineer way</title><link>https://anniequus.com/posts/sub1-ductf2021/</link><pubDate>Sun, 26 Sep 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/sub1-ductf2021/</guid><description>Who knew I&rsquo;d be writing a crypto writeup. | ||
The Beginning The challenge provides a SageMath bit of code, as well as a cipher text. | ||
def encrypt(msg, f): return &#39;&#39;.join(chr(f.substitute(c)) for c in msg) P.&lt;x&gt; = PolynomialRing(ZZ) f = 13*x^2 + 3*x + 7 FLAG = open(&#39;./flag.txt&#39;, &#39;rb&#39;).read().strip() enc = encrypt(FLAG, f) print(enc) That&rsquo;s some messy looking cipher text&hellip; | ||
Understanding the sage Thankfully the SageMath here is nice and short. All that we need to know, is that each character of the flag is thrown into the encryption function f.</description></item><item><title>"Oh yeah Motorola exists" - Revelations made in CSAW CTF 2021</title><link>https://anniequus.com/posts/csaw2021-serial/</link><pubDate>Tue, 21 Sep 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/csaw2021-serial/</guid><description>A mildly interesting challenge that touches (very briefly) on serial communication. But given that the files are .sal files, we can use the trusty old Saleae&rsquo;s logic analyser to help decode everything. | ||
TL;DR: Use Saleae to extract information, be reminded that Motorola exists and created S-records, break the information down, use Ghidra to disassemble and decompile the machine code, and make sense of everything to eventually obtain the flag.</description></item><item><title>Inefficiently solving GoogleCTF 2021 with Verilog (ModelSim)</title><link>https://anniequus.com/posts/googlectf-parking/</link><pubDate>Sat, 31 Jul 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/googlectf-parking/</guid><description>I unfortunately did not solve this during the competition period, but mildly obsessed over this for about a week after the competition. Here&rsquo;s how I lost way too many hours of sleep. | ||
TL;DR - Realise this was all just one big digital logic circuit, recognise the different logic gates and connections, build it all in Verilog, solve with some ModelSim bruteforcing, and get enough sleep. | ||
Introduction The challenge provides us with a zip file containing a python script that takes in some data (level1 / level2) to build the challenge.</description></item><item><title>How HackTheBoxCTF Exposed The Marriage of Saleae And Hardware</title><link>https://anniequus.com/posts/htb-hardware-writeups/</link><pubDate>Mon, 26 Apr 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/htb-hardware-writeups/</guid><description>This will be a writeup of all the hardware challenges in HackTheBoxCTF 2021. Although half the challenges in the category was just figuring out the protocol used, there were some interesting lessons learned. | ||
The Basics The first three challenges (which I&rsquo;ll just call the basics) were best for getting used to using Saleae, its analysers, and getting a basic understanding of the protocols. This is where the heavy reliance on Saleae (logic analyser alpha) begins.</description></item></channel></rss> | ||
<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>CTF on Equus 🐴 (Annie)</title><link>https://anniequus.com/categories/ctf/</link><description>Recent content in CTF on Equus 🐴 (Annie)</description><generator>Hugo</generator><language>en-au</language><lastBuildDate>Sun, 26 Sep 2021 00:00:00 +0000</lastBuildDate><atom:link href="https://anniequus.com/categories/ctf/index.xml" rel="self" type="application/rss+xml"/><item><title>Path to a crypto master, the engineer way</title><link>https://anniequus.com/posts/sub1-ductf2021/</link><pubDate>Sun, 26 Sep 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/sub1-ductf2021/</guid><description><p> | ||
|
||
|
||
|
||
|
||
<img src="media/chall.png" alt="Challenge info" loading="lazy"/> | ||
|
||
Who knew I&rsquo;d be writing a crypto writeup.</p> | ||
<h2 id="the-beginning">The Beginning</h2> | ||
<p>The challenge provides a SageMath bit of code, as well as a cipher text.</p> | ||
<div class="highlight"><pre tabindex="0" style="color:#f8f8f2;background-color:#272822;-moz-tab-size:4;-o-tab-size:4;tab-size:4;"><code class="language-py" data-lang="py"><span style="display:flex;"><span><span style="color:#66d9ef">def</span> <span style="color:#a6e22e">encrypt</span>(msg, f): | ||
</span></span><span style="display:flex;"><span> <span style="color:#66d9ef">return</span> <span style="color:#e6db74">&#39;&#39;</span><span style="color:#f92672">.</span>join(chr(f<span style="color:#f92672">.</span>substitute(c)) <span style="color:#66d9ef">for</span> c <span style="color:#f92672">in</span> msg) | ||
</span></span><span style="display:flex;"><span> | ||
</span></span><span style="display:flex;"><span>P<span style="color:#f92672">.&lt;</span>x<span style="color:#f92672">&gt;</span> <span style="color:#f92672">=</span> PolynomialRing(ZZ) | ||
</span></span><span style="display:flex;"><span>f <span style="color:#f92672">=</span> <span style="color:#ae81ff">13</span><span style="color:#f92672">*</span>x<span style="color:#f92672">^</span><span style="color:#ae81ff">2</span> <span style="color:#f92672">+</span> <span style="color:#ae81ff">3</span><span style="color:#f92672">*</span>x <span style="color:#f92672">+</span> <span style="color:#ae81ff">7</span> | ||
</span></span><span style="display:flex;"><span> | ||
</span></span><span style="display:flex;"><span>FLAG <span style="color:#f92672">=</span> open(<span style="color:#e6db74">&#39;./flag.txt&#39;</span>, <span style="color:#e6db74">&#39;rb&#39;</span>)<span style="color:#f92672">.</span>read()<span style="color:#f92672">.</span>strip() | ||
</span></span><span style="display:flex;"><span> | ||
</span></span><span style="display:flex;"><span>enc <span style="color:#f92672">=</span> encrypt(FLAG, f) | ||
</span></span><span style="display:flex;"><span>print(enc) | ||
</span></span></code></pre></div><p> | ||
|
||
|
||
|
||
|
||
<img src="media/CipherText.png" alt="Hex output of cipher text" loading="lazy"/> | ||
|
||
That&rsquo;s some messy looking cipher text&hellip;</p> | ||
<h3 id="understanding-the-sage">Understanding the sage</h3> | ||
<p>Thankfully the SageMath here is nice and short. All that we need to know, is that each character of the flag is thrown into the encryption function <code>f</code>. So to reverse it, we just do the opposite.<br> | ||
Since the values were obtained by substituting each character into <code>13*x^2 + 3*x + 7</code>, to get x back, we solve <code>13*x^2 + 3*x + 7 = &lt;encrypted num&gt;</code>.</p></description></item><item><title>"Oh yeah Motorola exists" - Revelations made in CSAW CTF 2021</title><link>https://anniequus.com/posts/csaw2021-serial/</link><pubDate>Tue, 21 Sep 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/csaw2021-serial/</guid><description><img src="media/ChallInfo.png" alt="Challenge info" loading="lazy"/> | ||
|
||
<p>A mildly interesting challenge that touches (very briefly) on serial communication. But given that the files are .sal files, we can use the trusty old Saleae&rsquo;s logic analyser to help decode everything.</p> | ||
<p>TL;DR: Use Saleae to <a href="#extraction">extract information</a>, <a href="#research">be reminded that Motorola exists</a> and created S-records, <a href="#apply">break the information down</a>, <a href="#loading-up-ghidra">use Ghidra</a> to disassemble and decompile the machine code, and <a href="#trust-the-python">make sense of everything</a> to eventually obtain the flag.</p> | ||
<h2 id="introduction">Introduction</h2> | ||
<p>The challenge gives us two .sal files, and based solely on the challenge description, capture.sal gives us a function block, and key.sal gives us a key of some kind. This seems pretty straight forward, so time to get on extracting.</p></description></item><item><title>Inefficiently solving GoogleCTF 2021 with Verilog (ModelSim)</title><link>https://anniequus.com/posts/googlectf-parking/</link><pubDate>Sat, 31 Jul 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/googlectf-parking/</guid><description><img src="media/challenge.png" alt="Challenge info" loading="lazy"/> | ||
|
||
<p>I unfortunately did not solve this during the competition period, but mildly obsessed over this for about a week after the competition. Here&rsquo;s how I lost way too many hours of sleep.</p> | ||
<p>TL;DR - Realise this was all just <a href="#diving-deeper">one big digital logic circuit</a>, recognise the different <a href="#junction-types">logic gates and connections</a>, <a href="#building-with-verilog">build it all</a> in Verilog, solve with some <a href="#writing-the-testbench">ModelSim bruteforcing</a>, and get enough sleep.</p> | ||
<h2 id="introduction">Introduction</h2> | ||
<p>The challenge provides us with a <a href="https://github.com/google/google-ctf/tree/master/2021/quals/hw-parking/attachments" target="_blank" rel="noreferrer">zip file</a> | ||
containing a python script that takes in some data (level1 / level2) to build the challenge. run.sh just serves as an easy way to progress from level1 to level2.</p></description></item><item><title>How HackTheBoxCTF Exposed The Marriage of Saleae And Hardware</title><link>https://anniequus.com/posts/htb-hardware-writeups/</link><pubDate>Mon, 26 Apr 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/htb-hardware-writeups/</guid><description><p>This will be a writeup of all the hardware challenges in HackTheBoxCTF 2021. Although half the challenges in the category was just figuring out the protocol used, there were some interesting lessons learned.</p> | ||
<h2 id="the-basics">The Basics</h2> | ||
<p>The first three challenges (which I&rsquo;ll just call the basics) were best for getting used to using Saleae, its analysers, and getting a basic understanding of the protocols. This is where the heavy reliance on Saleae (logic analyser alpha) begins.</p></description></item></channel></rss> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1,8 @@ | ||
<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Projects on Equus 🐴 (Annie)</title><link>https://anniequus.com/categories/projects/</link><description>Recent content in Projects on Equus 🐴 (Annie)</description><generator>Hugo</generator><language>en-au</language><lastBuildDate>Mon, 25 Oct 2021 00:00:00 +0000</lastBuildDate><atom:link href="https://anniequus.com/categories/projects/index.xml" rel="self" type="application/rss+xml"/><item><title>The password manager to cure lockdown woes</title><link>https://anniequus.com/posts/arduino-password-manager/</link><pubDate>Mon, 25 Oct 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/arduino-password-manager/</guid><description>If you see this (without inspecting source), video tags don't seem to work on your browser mate. Introduction I&rsquo;ll be introducing a roughly two week project that I worked on with two other group mates for a uni subject. The theme we were given was to build something that makes our home smarter or more fun. As a team, we started off with the idea of a password manager and decided to add some small fun elements, that would make this password manager the most fun password manager out there (hopefully).</description></item></channel></rss> | ||
<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Projects on Equus 🐴 (Annie)</title><link>https://anniequus.com/categories/projects/</link><description>Recent content in Projects on Equus 🐴 (Annie)</description><generator>Hugo</generator><language>en-au</language><lastBuildDate>Mon, 25 Oct 2021 00:00:00 +0000</lastBuildDate><atom:link href="https://anniequus.com/categories/projects/index.xml" rel="self" type="application/rss+xml"/><item><title>The password manager to cure lockdown woes</title><link>https://anniequus.com/posts/arduino-password-manager/</link><pubDate>Mon, 25 Oct 2021 00:00:00 +0000</pubDate><guid>https://anniequus.com/posts/arduino-password-manager/</guid><description><video controls> | ||
<source src="media/FinalPresVideo.mp4" type="audio/mp4"> | ||
If you see this (without inspecting source), video tags don't seem to work on your browser mate. | ||
</video> | ||
|
||
<h2 id="introduction">Introduction</h2> | ||
<p>I&rsquo;ll be introducing a roughly two week project that I worked on with two other group mates for a uni subject. The theme we were given was to build something that makes our home smarter or more fun. As a team, we started off with the idea of a password manager and decided to add some small fun elements, that would make this password manager the most fun password manager out there (hopefully). | ||
This page will talk about the technical side of the password manager system itself in more detail than the video, as well as a bit about editing (with a tiny bit of animating) a video.</p></description></item></channel></rss> |
Oops, something went wrong.