Description
A friend of yours is suspicious of conventional passwords and the usual cryptographic primitives used to validate them. A good developer, he has coded in his spare time a customized “password” validation system (of sorts…). He claims that his exotic system is inviolable and challenges you to retrieve his credentials from the authentication binary he uses on his own server. Can you prove to him that his system is fallible?
Files
-
docker-compose.yml
152 B – 40301874f5d23822958b65f0f05b4828b188daf73a354d52dd6f197cc6e4821f -
Dockerfile.kraken
1.28 KiB – 993cb354003fd6eea0fc64ac5516e3bb208b97f9cea258ccf22aebf082b4d637 -
kraken
3.06 MiB – f4607da25fd955b7668f2077d1cb140bdb2d2737048327c05eee91b550c93717 -
Makefile
70 B – 96a95189001875f2cbe3bcd63735d419f0b0c69b1bd9b028be54c3705feb31ce -
README.md
305 B – 21db27671bfc9301c013d2a55465356f0634b259e2ed6195f49e302648cbf7ed
Author
Flag
Submit your solution
You can submit your writeup for this challenge. Read the FAQ to learn how to proceed.
You need to be logged in to submit a writeup.