Press "Enter" to skip to content

[VXCTF2017] Flag Checking Oracle 2

Question:

Solution

Firstly, we have to check the length of the flag

I found that there has 0.5 second are stopped in offset 27. So maybe the length of the flag are 27?
Also, if the length is true the program will wait for 0.5 second and then start to compare each character of input with the flag.
If the character is correct, it will wait 0.5 second. So, we can calculate the time to brute force the flag.

vxctf{3nj0y_4nd_w417_a10ne}

Comments

Be First to Comment

Leave a Reply

Your email address will not be published. Required fields are marked *