hardwarePromedium
Prison Escape
hackthebox
Task: reconstruct Omega RF protocol packets from PDF spec and blueprint to disable prison alarms and lasers via a web-based RF transmitter. Solution: reverse-engineer CRC-16/CCITT with init 0x1d0f, craft self-addressed suppress/off commands for all devices, and send all 7 packets in a single HTTP session.
$ ls tags/ techniques/
session_managementpacket_craftingrf_protocolcrc16_ccittfsk_modulationomega_protocolalarm_suppressionweb_transmitter
protocol_reverse_engineeringrf_packet_reconstructioncrc_identificationself_addressed_command_injectionsession_aware_exploitation
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [web][free]Prison Pipeline— hackthebox_business_ctf_2024
- [hardware][free]Outrun— hackthebox
- [hardware][free]RFlag— hackthebox
- [misc][free]Prison Pipeline— HackTheBox Business CTF 2024
- [forensics][Pro]oBfsC4t10n— HackTheBox