First of all, this dojo has been built around a programming challenge published by newbiecontest.org. All credits goes towards his creator, thanks to them.
Passwords have been encoded using a specific procedure, you don't know anything about it and nothing about the passwords themselves. But you managed to enter the system and get your hands on many files encoded using the same procedure. Could you revert it and get back the passwords ?
Javascript script starter can be used to quickly start investigating. It is a simple nodejs project providing gd
bindings and lodash. All you have to do is install NodeJS and run npm install.
If you do not want to install nodejs and required dependencies, you can use docker also.
> cd js-starter/
js-starter> ./docker-start.sh
/opt # node index.js
/opt # exit
An helpful command to run the script on each file change: while inotifywait -qe modify index.js; do node index.js; done
If running directly with node on mac you will need to install gd first
brew update
brew install pkg-config gd
npm install
You can use the provided script validate.sh to do it for you by running the script and giving as parameters the
file number and the password you've found.
> ./validate.sh 042 thepasswordifound
Nope, try again :)
Also, the solution.txt file is available, it contains for all the input files their corresponding passwords hashed
using md5.
Content type
Image
Digest
Size
100.9 MB
Last updated
almost 9 years ago
docker pull dsarrio/dojo-ddr-decrypt