一 - What the password?
you got a sample of rick’s PC’s memory. can you get his user password? 你得到了rick电脑内存的样本。你能得到他的用户密码吗?
1.拿到内存样本,首先就是获取镜像信息
volatility.exe -f OtterCTF.vmem imageinfo2.我…
文章目录 Memory Forensics1 - What the password?2 - General Info3 - Play Time4 - Name Game5 - Name Game 26 - Silly Rick7 - Hide And Seek8 - Path To Glory9 - Path To Glory 210 - Bit 4 Bit11 - Graphics For The Weak12 - RecoveryMemory Forensics
1 - What the …
awesome-forensics 项目教程 awesome-forensics A curated list of awesome forensic analysis tools and resources 项目地址: https://gitcode.com/gh_mirrors/aw/awesome-forensics
1. 项目目录结构及介绍
awesome-forensics 项目是一个精心策划的数字取证工具和资源…
picoCTF
Forensics Glory of the Garden What is a hex editor? 根据hint,拖进winhex,最后可得flag.
shark on wire 1 shark on wire 1 Try using a tool like Wireshark;What are streams? 追踪UDP流,得flag。(MISC-AboutWireshark.md里编写了类似的思路)
extension…