Flare-On 2024 is gone and I just made a presentation about the challenge #5 at the local meetup called 0xOpoSec. I think it’s a nice challenge to introduce a few RE and forensics concepts, and a perfect candidate to present this year.
The slides are available here, and the Unicorn Engine emulator I used to extract the flag from the final shellcode here.
Last year I did the same with challenge #12, also with a Unicorn Engine emulator. Slides are available in Github and also here.
Since my loader fix was censored by Hex-Rays with a spurious DMCA takedown (not worth the trouble to fight this garbage) I’m leaving here its full and uncensored NFO :-).
We love .DS_Store
Have fun,