Salaheldin

March 14, 2019

Data Repo Analysis

Main Challenge @ The 2018 SANS Holiday Hack Challenge [ Kringlecon ]

CTF Writeup


solution-icon.png

1- Watch to Brian Hostetlerโ€™ talk about Trufflehog : https://www.youtube.com/watch?v=myKrWVaq3Cw

2- Install Trufflehog tool from here : https://github.com/dxa4481/truffleHog

3- Run the Trufflehog with following arguments in terminal :

truffleHog --regex --entropy=true https://git.kringlecastle.com/Upatree/santas_castle_automation.git

8-terminal-1.jpg

4- Analysis the output { you can save it in notepad for easy lookup } to find the password:

8-terminal-2.jpg

+Password = โ€˜Yippee-ki-yayโ€™

5- Download encrypted zip file and test the password :

8-img-1.jpg


๐Ÿ“Ÿ Go to your Badge > Objectives > Enter Yippee-ki-yay