Holiday Hack Challenge Redo (part 2)

Hello Everyone, we are about to join in ranks to battle the SANS Holiday Hack Challenge tasks again, today on dedicated Discord server. Please use the Meetup page for more details, ongoing announcements.

This post will summaries last Meetup progress and provides clues for further steps.

Let’s start we the recap. We started with:

Followed shortly by:

On the 23rd of January Meetup we have completed following tasks:

  • Objective 1 – Uncover Santa’s Gift List – clues in blog post video above
  • Objective 2a – Kringle Kiosk – clues in blog post video above
  • Objective 2b – S3 bucket – clues give at a Discord were: update the wordlist and add the searched bucket name, use ‘cat’ command to inspect the bucket. Copy and inspect in CyberChef the file. Start unpacking and remember to pipe the output whenever needed.
  • Objective 3a – Linux Primer – no clues were needed 🙂
  • Objective 3b – Point-of-Sale Password Recovery – clues give at a Discord were: download the package, no need to install the shop. Unpack the exe file, and poke around until you find app.asar and use 7zip to open Asar file.

Later today, 5-7pm GMT we will be focusing on following tasks:

  • all unfinished past tasks
  • Objective 4a – Unescape Tmux – no help needed
  • Objective 4b – Santavator operations – no help needed
  • Objective 5a – Speaker UNPrep – first clue: ‘strings door’ with some filters, more clues @Discord
  • Objective 5b – 5b: 33 Gkbps – no help needed
  • Objective 5c – Open the HID lock in the Workshop – no help needed
  • Objective 6a – Regex Toy Sorting – we will battle it together @Discord
  • Objective 6b – Splunk Challenge – clue: look for Bro.

See you later at Discord.

12 years of TOG – Holiday Hack Challenge Redo (part 1)

So, as promised we are going to start SANS Holiday Hack Challenge Redo run by Counter Hack Team. We will start with the latest 2020 challenge . You will need a valid email to create user account, which is instant. You can start straight away on your own or watch a couple helpful videos.

The first video that I would like talk about, it’s Ed Skoudis 2020 Hack Challenge Intro. Video is a great overview of this year challenge.

Second video is aimed at Hack Challenge first timers, it’s walk through the login page and the starting interface.

And don’t forget to join discussion later today at a dedicated Discord Channel https://discord.gg/MqCQkSzG. We start at 5pm today 🙂

This month we are going to focus on 2 objectives.

To help with starting the first objective you can watch this video:

Or read this article with helpful techniques. The online photo editor can be found here.

Watch the video below for the start of the second objective overview:

See you at Discord after 5pm GMT today, we will try to finish Objectives 1 &2 together.

12 years of TOG – a perfect time to do some hacking :-)

For the last five years I was getting more and more anxious the closer it was till the end of the year. Why so? The answer is very simple – the SANS Hack Challenge (https://holidayhackchallenge.com/2020/index.html) run online by Counter Hack Team (https://www.counterhack.com/expert-pen-testers). I have learnt plenty and had an immeasurable amount of fun while solving hacking challenges. This winter I found myself helping others with their tasks by giving hints and I discovered that I have learnt even more. The best part was seeing others to grow and to learn how to beat the tasks.

Unfortunately, SANS hack challenge is only once a year and I didn’t always managed to find enough spare time to solve all the puzzles. Luckily, there is a way to fix that.

So, this year to celebrate 12th birthday of Tog, there will be a pleasant surprise. A walk through a past SANS Holiday Challenges. We will start on the 23rd of January, all info will be posted online. So, keep an eye on our website and reserve time between 5 pm and 7 pm on the day to join the discussion on a dedicated Discord channel https://discord.gg/322Kw4bkQK.

TOG’s Christmas Craft Online Show And Tell

This festive season will be a bit different, but we’d still love to see you all for TOG’s annual Christmas Craft Night, so we’re going virtual this year. Drop into Discord, show us some festive crafts you are working on or get some ideas for those last-minute Christmas gifts.

We will be meeting up on Wednesday 16th from 7 pm. For more information visit our meetup page. https://www.meetup.com/Tog-Dublin-Hackerspace/events/274864923/

Athlone Community College Calling ISS, Over

Athlone Community College has a once in a lifetime opportunity to make contact through amateur radio with the International Space Station (ISS) on 7th December 2020 at 2:50 pm.
Students from ACC will have about 11 minutes to put Athlone on the astronomical map as they make contact direct with the ISS while it orbits our planet at a speed of 27,600km/hr. This once-in-a-lifetime opportunity is part of the Amateur Radio on the International Space Station programme (ARISS), which will see students from Athlone Community College speaking with U.S. Astronaut Shannon Walker onboard the ISS.

The event will be live-streamed on YouTube starting around 1:30 pm on Monday, December 7th. Watch for the live stream at: https://youtu.be/viVQBI4WzKs Contact with space station is about 2:50pm-3:00pm

Working with the students and staff of Athlone Community College will be Daniel Cussen our member the ARISS Radio Technical Co-ordinator. He will build, test and oversee the operation of the temporary “mission control” radio station EI1ISS. Daniel commented “I am thrilled that ACC has been chosen for this event. I am extremely passionate about amateur radio and technology and I am so excited to share my passion with these students and to inspire them to follow in my footsteps”

Find our more at https://www.ariss.org/upcoming-contacts.html

Science Week – November Livestream

We are delighted to be taking part in Science Week now in its 25th year. We always like to take part in these national weeks to promote science and education. We have lined up of talks for you on Thursday the 12th of November from 7 pm streaming on our Youtube channel. This year we are teaming up with the Young Engineers Society to bring you a night of interesting lightning talks.

Link To Live Steam

Talks

Project Title: Tell me more about the fungus under the kitchen table…
Project Description: After seeing an ad on twitter for a box of grow your own oyster mushrooms, TrĂ­ona is now the proud owner of a box of oyster mushrooms. Not liking mushrooms, she thought growing mushrooms would be the most interesting part of the project, but then Jeffrey asked her to talk about them for Science Week…
Speaker: Dr. TrĂ­ona O’Connell. Twitter.

Project Title: DIY Solar Install 
Project Description: In an effort to make an office unit more environmentally friendly Christian will detail his DIY Solar Install. This 4.7 KW install faced a number of challenges refitting an ageing office unit, setting up a power management system while all on a budget.
Speaker: Christian Kortenhorst. Twitter.

Project Title: IoT Weather Station
Project Description: Weather is the most talked about topic. This project aims for these chats to be more informed by having very localized weather data. This DIY IoT weather station talk will go over how to install your very own weather station and share your local data.
Speaker: Jeffrey Roe. Twitter.

There are lots of Science Week events happening all over the country you can find more of them listed here -> https://www.sfi.ie/events/

Check our friends Dublin Maker week of events featuring plenty of Tog members. -> http://www.dublinmaker.ie/maker-a-day-at-science-week/

This event is in collaboration with the Young Engineers Society