logo

Capture The Flag Solution: reversing the password

ID: 3b24ac4f-bb3a-59f6-b00a-0fe396c66b1c

STIX ID: report--3b24ac4f-bb3a-59f6-b00a-0fe396c66b1c

Feed Name: HackerOne Blog

Date Published: 2024-03-15

Date Updated: 2026-06-11

...
...

This write-up documents a CTF challenge where a hex-encoded JSON blob contained every fourth byte corrupted by an inverted MSB; the author explains how to fix the bytes, recover the JSON (including username "bcollin"), extract 16-byte MD5 digests for old and new passwords, reverse the digests and lookup the plaintexts (p4ssw0rd and thisiscrazy), and verify the timestamp. The post is an educational/CTF solution walkthrough and not a report of an active breach or malware.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.