SwampCTF 2025

SwampCTF 2025
Aristore比赛地址:SwampCTF 2025
比赛时间:29 Mar 2025 05:00 CST - 31 Mar 2025 05:00 CST
复现的题目用🔁标注
Misc
Pretty Picture: Double Exposure
Challenge
Pretty Picture: Double Exposure
Hidden in the bits below, an image wait’s to be shown.
Solution
用 StegSolve 打开翻几下就看到了
1 | swampCTF{m3ss4g3s_0r_c0de_c4n_b3_h1dd3n_1n_1m4g3s} |
OSINT
Party Time!
Challenge
Party Time!
By: lyngo
This party house is known for its 3AM outings, but you’ve gotta work for the location if you want to come! Enter the GPS coordinates of the location!
Example: swampCTF{xx.xx.xx,xx.xx.xx}, swampCTF
Solution
在属性这里就能看到经纬度
1 | swampCTF{29.39.10,82.19.59} |
Party Time! Level 2
Challenge
Party Time! Level 2
The party just ended, but people are hungry. Find the nearest fast food spot to see where everyone went!
The flag format is swampCTF{…}. You will not need to wrap it yourself.
查看提示
The reviews love the racecar fast service.
Solution
先是找到了这个地方的实际位置蓋恩斯維爾,佛羅里達 - Google 地圖
然后搜索附近的快餐店
于是找到了这条评论
1 | swampCTF{Checkers_Yum} |
Forensics
Preferential Treatment
Challenge
Preferential Treatment
We have an old Windows Server 2008 instance that we lost the password for. Can you see if you can find one in this packet capture?
Solution
搜索 CTF
找到了这条流量
追踪流发现这段 XML 数据
1 |
|
经过搜索得知在 Windows Server 2008 及更早版本中,微软引入了组策略首选项(Group Policy Preferences, GPP)功能,允许管理员通过组策略来配置用户账户和密码。为了存储这些密码,微软选择使用 AES 加密算法对密码进行加密,并将加密后的结果存储为 cpassword
字段。然而微软使用了一个 静态的、硬编码的 AES 密钥 来加密所有 cpassword
字段,这个密钥是公开的,任何知道该密钥的人都可以解密 cpassword
。
以下是公开的 AES 密钥(以十六进制表示):
1 | 4e9906e8fcb66cc9faf49310620ffee8f496e806cc057990209b09a433b66c1b |
exp 如下
1 | import base64 |
运行得到 flag
1 | swampCTF{4v3r463_w1nd0w5_53cur17y} |