cryptohard

Отличная кофемашина (Excellent Coffee Machine)

duckerz

Task: Buggy AES-GCM implementation with shared GLOBAL_H across tenants. Solution: Exploit GHASH linearity over GF(2) to recover SECRET_VICTIM via matrix solving, then forge valid tag to decrypt flag.

$ ls tags/ techniques/
gcm_tag_forgerygf2_matrix_solveghash_linearity_exploit

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]