DaVinciCTF 2025 🥇🔥🖼️🧙
Infinite thanks to my team! We did perfect togethers 💖
The chad list:
- Drahoxx, our Hardware and chip whisperer 🗣️💽📟
- K.L.M, our Forensic legend (and nerfed Web3 king) 🕵️🔥
- Théo, QuantumDaddy, our Crypto Alan Turing 🔐⚡
Many will say I was boosted for this CTF and I won't disagree 😅 I did my part and I'm very proud. But my team was just out of this world. 3 GCC Legends always rising to an higher prime version of themselves. I had a blast and enjoyed to the fullest the time spent with them and learned a lot.
Performance 🏆🥇
First win ! 🎉🥳 And won by a wide margin 🚀🤩
Of course this win is mostly deserved to my team than myself 😅 I didn't do bad per say, but there is such an improvement to be made here. I could have cleared the OSINT (it could be easily done and I really did shit work but we'll come back to it later) and I could have done some better work for the Reverse and Forensic. Forensic is pure skill issue and I need wayyyy more training but for the Reverse I just didn't listened to myself. I knew dnsSpy would have obliterated the challenge but I was absolutely sure and was too lazy to download the required tool. Two BIG mistakes that separate a good CTF player from a bad one in my opinion. The fear or laziness of not trying.
As always, I need to work more 🔨👨🔧 But this time I enjoy the win and party 🥳
Fun note: clutching an OSINT challenge 30 seconds before the end is so good 😎🤙
Rank: 🥇 with 10639 points 🤯🎉🚀🔥
How to improve 📝
Steganography
- Ok maybe I need to push my knowledges further in file analysis but steganography... Maybe not today...
Reverse
- I think I quite like Game Hacking. Maybe I'm influenced by my gamedev background but I really like the concepts and challenges I'm facing.
- We need to work on Game Hacking challenges in Hack The Box so maybe it's a good time to start diving in the subject 👀
OSINT
- Need to work on more traditional challenges => CVE, Malware, Process, IoCs, ...
- Do more complex challenges for RAM dumps and Disk analysis. Especially when challenges need to dive into processes, their files, how they work, how to retrieve intel from them, ...
OSINT
- HAVE YOU HEARD OF MASTODON GRANDPA ?!?! 👴
- I wrote back at Breizh CTF 2024 to work on my SOCINT Methodology. And well looks like I'm getting worse with time. I completely F-ed up and I need to start relearning SOCINT from start at this point. If I can't find a simple Mastodon account, let's not talk about Matrix, VK, Telegram, ...
- I need to reconnect and grind ⛏️
Solves
Challenge | Category | Value | Time |
---|---|---|---|
2 - Accomplice | OSINT | 500 | May 24th, 7:14:30 PM (Yes, 30s before the end 😎🤙) |
1 - Research | OSINT | 499 | May 24th, 6:15:13 PM |
Davinci Click | Reverse | 316 | May 24th, 3:28:58 PM |
C - Coordinates ? | OSINT | 100 | May 24th, 10:37:45 AM |
B - Prevent | OSINT | 100 | May 24th, 10:36:36 AM |
A - Reconnaissance | OSINT | 440 | May 24th, 10:30:33 AM |