Phreaky

Description

In the shadowed realm where the Phreaks hold sway, A mole lurks within, leading them astray. Sending keys to the Talents, so sly and so slick, A network packet capture must reveal the trick. Through data and bytes, the sleuth seeks the sign, Decrypting messages, crossing the line. The traitor unveiled, with nowhere to hide, Betrayal confirmed, they'd no longer abide.

Solution

We are given a pcap file which can be inspected with Wireshark. After going through some conversations we notice emails being sent back and forth.

phreaky-1

The emails can be export from Wireshark: File -> Export Objects -> IMF

One of the emails:

The emails contain Base64 blob which are zip files with password, in total of 15 parts and 15 passwords.

phreaky-2

Iterate over files, read, parse, unzip, save, sort and finally merge into one file.

phreaky-3
circle-check

Last updated