forensicseasy
Тот сайт с GitHub (That site from GitHub)
hackerlab
Task: Analyze a suspicious website archive cloned from GitHub. Solution: Found hidden malicious code in update.sh script (97KB with empty lines hiding base64-encoded Python that creates and executes a hidden ELF binary), extracted the binary and found the flag using strings.
$ ls tags/ techniques/
strings_analysissupply_chainshell_script_analysisbase64_encodinghidden_binaryelf_extractionmalware_hidinggithub_clone
Suspicious shell script analysisBase64 decoding of hidden payloadsEmbedded binary extraction from scriptsELF binary strings analysis
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Create a free account with GitHub, then upgrade to Pro.
$ssh [email protected]