Skip to content

Commit

Permalink
Removing LFS and adding MEGA drive links instead
Browse files Browse the repository at this point in the history
  • Loading branch information
stuxnet999 committed Jan 10, 2020
1 parent 7b28a72 commit db487c2
Show file tree
Hide file tree
Showing 15 changed files with 28 additions and 31 deletions.
3 changes: 0 additions & 3 deletions .gitattributes

This file was deleted.

3 changes: 0 additions & 3 deletions Lab 1/MemLabs-Lab1.7z

This file was deleted.

2 changes: 1 addition & 1 deletion Lab 1/README.md
Expand Up @@ -4,6 +4,6 @@

This challenge is composed of 3 flags.

**Challenge file**: [MemLabs_Lab1](./MemLabs-Lab1.7z)
**Challenge file**: [MemLabs_Lab1](https://mega.nz/#!6l4BhKIb!l8ATZoliB_ULlvlkESwkPiXAETJEF7p91Gf9CWuQI70)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
3 changes: 0 additions & 3 deletions Lab 2/MemLabs-Lab2.7z

This file was deleted.

2 changes: 1 addition & 1 deletion Lab 2/README.md
Expand Up @@ -4,6 +4,6 @@

This challenge is composed of 3 flags.

**Challenge file**: [MemLabs_Lab2](./MemLabs-Lab2.7z)
**Challenge file**: [MemLabs_Lab2](https://mega.nz/#!ChoDHaja!1XvuQd49c7-7kgJvPXIEAst-NXi8L3ggwienE1uoZTk)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
3 changes: 0 additions & 3 deletions Lab 3/MemLabs-Lab3.7z

This file was deleted.

8 changes: 7 additions & 1 deletion Lab 3/README.md
Expand Up @@ -4,8 +4,14 @@

This challenge is composed of only 1 flag.

You will need this additional tool to solve the challenge,

```bash
$ sudo apt install steghide
```

The flag format for this lab is: **inctf{s0me_l33t_Str1ng}**

**Challenge file**: [MemLabs_Lab3](./MemLabs-Lab3.7z)
**Challenge file**: [MemLabs_Lab3](https://mega.nz/#!2ohlTAzL!1T5iGzhUWdn88zS1yrDJA06yUouZxC-VstzXFSRuzVg)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
3 changes: 0 additions & 3 deletions Lab 4/MemLabs-Lab4.7z

This file was deleted.

2 changes: 1 addition & 1 deletion Lab 4/README.md
Expand Up @@ -6,6 +6,6 @@ This challenge is composed of only 1 flag.

The flag format for this lab is: **inctf{s0me_l33t_Str1ng}**

**Challenge file**: [MemLabs_Lab4](./MemLabs-Lab4.7z)
**Challenge file**: [MemLabs_Lab4](https://mega.nz/#!Tx41jC5K!ifdu9DUair0sHncj5QWImJovfxixcAY-gt72mCXmYrE)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
2 changes: 1 addition & 1 deletion Lab 5/Hint.txt
@@ -1 +1 @@
You'll get the second one when you have the first one :P
You'll get the second stage flag only when you have the first one :P
3 changes: 0 additions & 3 deletions Lab 5/MemLabs-Lab5.7z

This file was deleted.

6 changes: 4 additions & 2 deletions Lab 5/README.md
Expand Up @@ -2,8 +2,10 @@

## **Challenge Description**

This challenge is composed of 2 flags :).
This challenge is composed of 2 flags but do you really think so? Maybe a little flag is hiding somewhere.

**Challenge file**: [MemLabs_Lab5](./MemLabs-Lab5.7z)
**Note**: There was a small mistake when making this challenge. If you find any string which has the string "**_L4B_3_D0n3_!!**" in it, please change it to "**_L4B_5_D0n3_!!**" and then proceed.

**Challenge file**: [MemLabs_Lab5](https://mega.nz/#!Ps5ViIqZ!UQtKmUuKUcqqtt6elP_9OJtnAbpwwMD7lVKN1iWGoec)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
3 changes: 0 additions & 3 deletions Lab 6/MemLabs-Lab6.7z

This file was deleted.

2 changes: 1 addition & 1 deletion Lab 6/README.md
Expand Up @@ -6,6 +6,6 @@ This challenge is composed of 1 flag.

The flag format for this lab is: **inctf{s0me_l33t_Str1ng}**

**Challenge file**: [MemLabs_Lab6](./MemLabs-Lab6.7z)
**Challenge file**: [MemLabs_Lab6](https://mega.nz/#!C0pjUKxI!LnedePAfsJvFgD-Uaa4-f1Tu0kl5bFDzW6Mn2Ng6pnM)

Please follow the [flag submission rules](https://github.com/stuxnet999/MemLabs#flag-submission) when sending the email for solution verification.
14 changes: 12 additions & 2 deletions README.md
Expand Up @@ -2,7 +2,13 @@

MemLabs is an educational, introductory set of CTF-styled challenges which is aimed to encourage students, security researchers and also CTF players to get started with the field of **Memory Forensics**.

**Warning**: The size of the repository is over 1 GB. Please clone or download files as needed.
This repository is brought to you by [Team bi0s](https://twitter.com/teambi0s). You can view other popular open soure project from bi0s at https://github.com/teambi0s.

Team bi0s also conducts various flagship CTF events like

+ InCTF International
+ InCTF Nationals - India's first Hacking contest.
+ Amrita InCTF Junior - The only cybersecurity contest for school students in India.

## **Motivation**

Expand All @@ -21,6 +27,8 @@ I also believe these labs can be used by anyone to help others become good with
|Lab 5 | Black Tuesday | Medium - Hard |
|Lab 6 | The Reckoning | Hard |

All the memory dumps are that of a Windows system.

## **Tools and Frameworks**

I'd suggest everyone use [The Volatility Framework](https://github.com/volatilityfoundation/volatility/) for analysing the memory images.
Expand Down Expand Up @@ -72,8 +80,10 @@ I'd love the community's feedback regarding these labs. Any suggestions or impro

## **Resources**

New to CTFs? Don't know what CTFs are? Have a look at https://ctftime.org/ctf-wtf/

+ [Volatility Command Reference](https://github.com/volatilityfoundation/volatility/wiki/Command-Reference)
+ [My Personal Blog](https://volatilevirus.home.blog/category/memory-forensics/)
+ [My Personal Blog](https://volatilevirus.home.blog/tag/memoryforensics/) (You can have a look here to better understand on how to approach a CTF challenge)

## **Author**

Expand Down

0 comments on commit db487c2

Please sign in to comment.