ctf
trezor-firmware
ctf | trezor-firmware | |
---|---|---|
11 | 889 | |
1,743 | 1,262 | |
0.3% | 2.2% | |
2.5 | 9.8 | |
about 1 year ago | 1 day ago | |
Python | C | |
- | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ctf
-
Audio Steganography
Audio can contain dial tones, or it can contain binary/morse code on some particular frequency, or it's not really "audio" but radio-transmission which needs to be decoded, or the audio can contain sounds of keyboard typing or even 3d printer head moving (like https://github.com/p4-team/ctf/tree/master/2020-05-10-spam-and-flags-teaser/3d_printer ), or maybe audio has multiple sources interleaved and you need to separate them and one has the flag, or maybe the audio file itself has specific format and some information can be passed there. There are infinite possibilities and it's impossible to say anything without analysing the file.
-
Failing to understand a flag
It's hard to say anything without actually seeing the page. Was there something inside the CSS files? You can do some crazy stuff there :) You can also do some fancy stuff like bypassing CSRF with CSS injection like in: https://github.com/p4-team/ctf/tree/master/2018-01-20-insomnihack/web_css
- CTF Question - reverse engineering keyboard Morse code
- Question about ECDSA
-
Stuck on a forensics challenge
One thing that immediately comes into mind is that archives are "weird", and an archive file can be also a totally different type of file at the same time. Just to clarify what I mean see: https://github.com/p4-team/ctf/blob/master/2016-04-15-plaid-ctf/web_pixelshop/README.md and specifically the magic file https://github.com/p4-team/ctf/blob/master/2016-04-15-plaid-ctf/web_pixelshop/exploit.png this is totally valid PNG file but at the same time it's also totally valid ZIP file with PHP shell inside.
-
Initial impact report about this week's EdDSA Double-PubKey Oracle attack in 40 affected crypto libs
Funny part is that even in CTF challenges made around this problem challenge authors were introducing some intentional bugs to account for this scenario, because they thought it would be too unrealistic otherwise :D See for example: https://github.com/p4-team/ctf/tree/master/2018-12-08-hxp/crypto_uff
-
Reduced Round AES CTR Attacks
See: https://github.com/p4-team/ctf/tree/master/2016-03-12-0ctf/peoples_square and also https://github.com/TFNS/writeups/tree/master/2020-06-05-DefenitCTF/spn (this one is not AES but some toy SPN, but the idea is exactly the same and maybe easier to understand)
-
Hey I was wondering if anyone knew a good place to post a challenge, a challenge with a reward
If it's some serious interesting cryptography (just to give you an example: https://github.com/p4-team/ctf/tree/master/2019-11-02-google-ctf/fractorization ), then perhaps consider talking to some CTF team to feature your challenge during an upcoming CTF
-
Help with factorizing n=p*q in an vulnerable RSA implementation
Also what you need doesn't require that much code, it's very similar to: https://github.com/p4-team/ctf/tree/master/2017-09-02-tokyo/crypto_rsa
- Cryptopals 2:12 - What real-world application of crypto does the solution actually break?
trezor-firmware
-
¿How to start in bitcoin?
https://trezor.io/ - Easy to use, no matter how new in Bitcoin you're.
- Trezor unveils Trezor Safe family of devices
- New to the Crypto? 10 tips I wish I knew when entering the space
-
Trezor Suite added and later removed AOPP supporty
Added (November 2021): https://github.com/trezor/trezor-firmware/pull/1903
-
With what's happening with Binance, Coinbase, and others lately, I think we should switch to DeFi Platforms and Hard Wallets ASAP.
Next thing to have is a hard wallet if you haven’t already like a Ledger or a Trezor and let it sit there. That’s the safest thing to do! Also, there’s always been a risk of KYC (Know Your Customer) on CEXes as mentioned several times. This was all meant to be decentralized and keep our identity under wraps and retain that anonymity that crypto was originally designed for… and you get a hold of your keys.
- Trezor developer confirms private keys can be extracted if firmware is corrupt
-
Getting started
https://trezor.io/ - Easy to use, no matter how new in Bitcoin you're.
-
Trezor model 1 not recognized
where "x.y.z" is the VERSION of trezor (aka TrezorCTL) you are trying to install. See the version history when picking a version. "Oldest" is not necessarily "best". You'll want to pick a version that was released around the same time your Trezor-1 was last updated.
- Does the Bitbox02 Firmware Repo include a Simulator / Emulator?
-
Daily General Discussion - June 19, 2023
I've purchased a Trezor model T from what I believe is the official Trezor website (https://trezor.io/). Is it rational for me to have a slight fear that it isn't a legit trezor and maybe the chip is compromised, possibly being able to send off my seed to an unknown party?
What are some alternatives?
CTFd - CTFs as you need them
solana - Web-Scale Blockchain for fast, secure, scalable, decentralized apps and marketplaces.
RootTheBox - A Game of Hackers (CTF Scoreboard & Game Manager)
trezor-suite - :candy: Trezor Suite Monorepo
ed25519-unsafe-libs - List of unsafe ed25519 signature libs
BlueWallet - Bitcoin wallet for iOS & Android. Built with React Native
pwntools - CTF framework and exploit development library
bisq - A decentralized bitcoin exchange network
libsodium - A modern, portable, easy to use crypto library.
metamask-extension - :globe_with_meridians: :electric_plug: The MetaMask browser extension enables browsing Ethereum blockchain enabled websites
pwndbg - Exploit Development and Reverse Engineering with GDB Made Easy
bitbox02-firmware - Firmware code of the BitBox02 hardware wallet