forked from SecGen/SecGen
-
Notifications
You must be signed in to change notification settings - Fork 318
/
Copy pathexpert_reversing.xml
95 lines (84 loc) · 2.95 KB
/
expert_reversing.xml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
<?xml version="1.0"?>
<scenario xmlns="http://www.github/cliffe/SecGen/scenario"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:schemaLocation="http://www.github/cliffe/SecGen/scenario">
<name>Expert Reversing</name>
<author>Thomas Shaw</author>
<author>Z. Cliffe Schreuders</author>
<description>Some advanced reverse engineering challenges.
</description>
<type>ctf</type>
<type>reversing-ctf</type>
<difficulty>hard</difficulty>
<CyBOK KA="MAT" topic="Malware Analysis">
<keyword>analysis techniques</keyword>
<keyword>STATIC ANALYSIS</keyword>
</CyBOK>
<system>
<system_name>analysis</system_name>
<base platform="linux" type="desktop" distro="Buster"/>
<utility module_path=".*/reversing_tools"/>
<utility module_path=".*/parameterised_accounts">
<input into="accounts" into_datastore="account">
<generator type="account">
<input into="username">
<generator type="random_sanitised_word">
<input into="wordlist">
<value>mythical_creatures</value>
</input>
</generator>
</input>
<input into="password">
<value>tiaspbiqe2r</value>
</input>
<input into="super_user">
<value>false</value>
</input>
</generator>
</input>
</utility>
<utility module_path=".*/kde_minimal">
<input into="autologin_user">
<datastore access="0" access_json="['username']">account</datastore>
</input>
<input into="accounts">
<datastore>account</datastore>
</input>
<input into="autostart_konsole">
<value>true</value>
</input>
</utility>
<utility module_path=".*/handy_cli_tools"/>
<utility module_path=".*/hash_tools"/>
<utility module_path=".*/dc16_amadhj">
<input into="account">
<datastore>account</datastore>
</input>
</utility>
<utility module_path=".*/dc16_b3s23">
<input into="account">
<datastore>account</datastore>
</input>
</utility>
<utility module_path=".*/dc16_feedme">
<input into="account">
<datastore>account</datastore>
</input>
</utility>
<utility module_path=".*/java_decompile">
<input into="account">
<datastore>account</datastore>
</input>
</utility>
<network type="private_network" range="dhcp"/>
<input into_datastore="spoiler_admin_pass">
<generator type="strong_password_generator"/>
</input>
<build type="cleanup">
<input into="root_password">
<datastore>spoiler_admin_pass</datastore>
</input>
</build>
</system>
<!-- TODO: further testing -->
</scenario>