Notifications
Clear all

Open "Network Forensics Puzzle Contest" by SANS

1 Posts
1 Users
0 Reactions
286 Views
jhup
 jhup
(@jhup)
Noble Member
Joined: 16 years ago
Posts: 1442
Topic starter  

In my daily reading I ran across a contest.

https://blogs.sans.org/computer-forensics/2009/08/19/network-forensics-puzzle-contest/

Give it a try, and share with the rest how you got your answers.

“We have a packet capture of the activity,” said security staff, “but we can’t figure out what’s going on. Can you help?”

You are the forensic investigator. Your mission is to figure out who Ann was IM-ing, what she sent, and recover evidence including

1. What is the name of Ann’s IM buddy?
2. What was the first comment in the captured IM conversation?
3. What is the name of the file Ann transferred?
4. What is the magic number of the file you want to extract (first four bytes)?
5. What was the MD5sum of the file?
6. What is the secret recipe?


   
Quote
Share: