reversemedium

Infekterad BIOS

undutmaning

Task: UEFI EFI runtime driver with XOR-encrypted flag, SecureBoot hook malware. Solution: Known plaintext attack using 'undut{' prefix to recover 5-byte repeating XOR key derived from kernel base address.

$ ls tags/ techniques/
known_plaintext_attackxor_key_recoveryutf16le_string_extractionuefi_runtime_analysis

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]