cryptoProhard

Отличная кофемашина (Excellent Coffee Machine)

duckerz

Task: Buggy AES-GCM implementation with shared GLOBAL_H across tenants. Solution: Exploit GHASH linearity over GF(2) to recover SECRET_VICTIM via matrix solving, then forge valid tag to decrypt flag.

$ ls tags/ techniques/
gcm_tag_forgerygf2_matrix_solveghash_linearity_exploit

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups