forensicseasy

Сверхсекретный Шпион

duckerz

Task: Analyze pcap with suspicious UDP traffic to find hidden spy data. Solution: Port-based steganography — data encoded in destination port low bytes, sequence in source ports, decode with formula 256 - (dst_port & 0xFF).

$ ls tags/ techniques/
port_steganographypacket_orderingbyte_manipulation

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]