Flare-On 2024 is gone and I just made a presentation about the challenge #5 at the local meetup called 0xOpoSec. I think it’s a nice challenge to introduce a few RE and forensics concepts, and a perfect candidate to present this year.

The slides are available here, and the Unicorn Engine emulator I used to extract the flag from the final shellcode here.

Last year I did the same with challenge #12, also with a Unicorn Engine emulator. Slides are available in Github and also here.

Since my loader fix was censored by Hex-Rays with a spurious DMCA takedown (not worth the trouble to fight this garbage) I’m leaving here its full and uncensored NFO :-).

We love .DS_Store :))))))))))))

Have fun,
fG!

fuck you ilfak nfo