writeup
2024 Hack The Boo: Ghostly Persistence
Analyze Windows event logs to uncover two-part flag hidden in PowerShell command execution and log artifacts
#htb
#ctf
#forensics
+3 writeup
2024 Business CTF - Vault of Hope: Caving
Windows forensics challenge analyzing PowerShell logs and obfuscated scripts to detect intrusion attempts
#htb
#ctf
#forensics
+3 writeup
2024 Cyber Apocalypse: Fake Boost
Extract obfuscated PowerShell from PCAP, deobfuscate, decrypt AES payload, and recover flag parts
#htb
#ctf
#forensics
+5