<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Forensics on izrid</title><link>https://izrid.github.io/tags/forensics/</link><description>Recent content in Forensics on izrid</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sat, 09 Mar 2024 00:00:00 +0000</lastBuildDate><atom:link href="https://izrid.github.io/tags/forensics/index.xml" rel="self" type="application/rss+xml"/><item><title>nathan-on-osu</title><link>https://izrid.github.io/posts/nathan-on-osu/</link><pubDate>Sat, 09 Mar 2024 00:00:00 +0000</pubDate><guid>https://izrid.github.io/posts/nathan-on-osu/</guid><description>Challenge Description: Here&amp;rsquo;s an old screenshot of chat logs between sahuang and Nathan on hollow&amp;rsquo;s Windows machine, but a crucial part of the conversation seems to be cropped out&amp;hellip; Can you help to recover the flag from the future?
Solving Process: We&amp;rsquo;re given a zip file that contains a cropped PNG image. Around March 2023, news circulated about the &amp;ldquo;aCropalypse&amp;rdquo; - an exploit in screenshot editing tool on the Google Pixel and later discovered to exist on Windows 10 and 11 ( CVE 2023-21036 and CVE 2023-28303 )</description></item><item><title>out-of-click</title><link>https://izrid.github.io/posts/out-of-click/</link><pubDate>Sat, 09 Mar 2024 00:00:00 +0000</pubDate><guid>https://izrid.github.io/posts/out-of-click/</guid><description>Challenge Description: I love playing this map but recently I noticed that some of the circles seem off. Can you help me find the locations of the weird circles?
Solving Process: After downloading the provided ZIP file, it appears to contain a beatmap folder that can be used in osu! itself (I don&amp;rsquo;t play, so please excuse any incorrect terminology used), so I spent a lot of time messing around with the in-game editor in osu!</description></item><item><title>volatile-map</title><link>https://izrid.github.io/posts/volatile-map/</link><pubDate>Sat, 09 Mar 2024 00:00:00 +0000</pubDate><guid>https://izrid.github.io/posts/volatile-map/</guid><description>Challenge Description: Hey osu players, our SOC team was informed that a group of spies from Mai Corp is trying to sabotage our infrastructure via their secret map in osu!.
We were able to break into their rendezvous, but they noticed we were stealing their data and they corrupted them in time. Fortunately, we managed to acquire a full memory dump from one of their machines.
Can you help us investigate what they were trying to do?</description></item></channel></rss>