{"id":105605,"date":"2016-08-25T17:00:25","date_gmt":"2016-08-26T00:00:25","guid":{"rendered":"https:\/\/unit42.paloaltonetworks.com\/?p=105605"},"modified":"2025-08-25T04:32:40","modified_gmt":"2025-08-25T11:32:40","slug":"labyrenth-capture-the-flag-ctf-unix-track-solutions","status":"publish","type":"post","link":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/","title":{"rendered":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54"},"content":{"rendered":"<h2>\u6982\u8981<\/h2>\n<p>\u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001<a href=\"https:\/\/blog.paloaltonetworks.com\/2016\/07\/unit42-announcing-the-labyrenth-capture-the-flag-ctf-challenge\/\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8\u3001LabyREnth<\/a>\u306b\u3054\u53c2\u52a0\u3044\u305f\u3060\u304d\u3042\u308a\u304c\u3068\u3046\u3054\u3056\u3044\u307e\u3057\u305f\u3002\u30b3\u30f3\u30c6\u30b9\u30c8\u304c\u7d42\u4e86\u3044\u305f\u3057\u307e\u3057\u305f\u306e\u3067\u3001\u3044\u3088\u3044\u3088\u5404\u7a2e\u76ee\u306e\u89e3\u7b54\u3092\u767a\u8868\u3044\u305f\u3057\u307e\u3059\u3002\u9031\u306b1\u7a2e\u76ee\u305a\u3064<a href=\"https:\/\/blog.paloaltonetworks.com\/tag\/ctf\/\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">\u89e3\u7b54<\/a>\u3092\u516c\u958b\u3057\u307e\u3059\u304c\u3001\u4eca\u56de\u306fUnix\u7a2e\u76ee\u3067\u3059\u3002<\/p>\n<h3><b>Unix 1\u8ab2\u984c: \u30ec\u30a4\u30e4\u30fc\u306e\u4e0a\u306b\u30ec\u30a4\u30e4\u30fc\u304c\u3001\u305d\u306e\u3055\u3089\u306b\u4e0a\u306b...\u3068\u3044\u3046\u77e5\u6075<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Richard Wartell\u00a0<\/i><a href=\"https:\/\/twitter.com\/wartortell\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@wartortell<\/i><\/a><\/p>\n<p>perl\u30b9\u30af\u30ea\u30d7\u30c8\u304c\u4e0e\u3048\u3089\u308c\u3066\u3044\u307e\u3059\u3002\u3053\u306e\u30b9\u30af\u30ea\u30d7\u30c8\u306f\u3001\u5b9f\u884c\u3055\u308c\u308b\u3068\u4f55\u3092\u3057\u3066\u3044\u308b\u6700\u4e2d\u306a\u306e\u304b\u8868\u793a\u3057\u305f\u5f8c\u3067\u3001stahp(\u30b9\u30c8\u30c3\u30d7)\u3068\u544a\u3052\u3066\u7d42\u308f\u308b\u3088\u3046\u306b\u306a\u3063\u3066\u3044\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">$perl bowie.pl<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">You\u2019re doing a thing\u2026<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">AAAA<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">stahp<\/span><\/p>\n<p>\u3053\u306e\u30b9\u30af\u30ea\u30d7\u30c8\u306e\u30bd\u30fc\u30b9\u3092\u898b\u3066\u307f\u308b\u3068\u3001\u30cd\u30b9\u30c8\u3055\u308c\u305fif else\u6761\u4ef6\u6587\u304c\u9023\u7d9a\u3057\u3066\u3044\u307e\u3059\u3002\u30cd\u30b9\u30c8\u306e\u5404\u30ec\u30a4\u30e4\u30fc\u306b\u304a\u3044\u3066\u3001\u30b9\u30af\u30ea\u30d7\u30c8\u306f\u30e6\u30fc\u30b6\u30fc\u306b\u5165\u529b\u3092\u8981\u6c42\u3057\u3066\u3044\u307e\u3059\u304c\u3001\u3053\u306e\u5165\u529b\u304c\u4e0b\u4f4d\u306eif\u6761\u4ef6\u3067\u4f7f\u308f\u308c\u307e\u3059\u3002if\u6761\u4ef6\u304c\u771f\u3067\u3042\u308c\u3070base64\u30c1\u30e3\u30f3\u30af\u304c\u65b0\u305f\u306b\u5fa9\u53f7\u5316\u3055\u308c\u3066$a\u5909\u6570\u306e\u672b\u5c3e\u306b\u8ffd\u52a0\u3055\u308c\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">print \u201cYou\u2019re doing a thing\u2026\\n\u201d;<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">my $input = &lt;STDIN&gt;;<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">$input = trim($input);<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">if ($input eq (chr(5156 \u2013 5035) . chr(-4615 \u2013 -4716) . chr(3162 \u2013 3047))) {<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">$a = $a . MIME::Base64::decode(\u201c\u2026\u201d)<\/span><\/p>\n<p>\u3053\u308c\u304c\u4f55\u56de\u3082\u7e70\u308a\u8fd4\u3055\u308c\u3066\u3001\u3064\u3044\u306b\u306fbase64\u30d6\u30ed\u30c3\u30af\u3092\u8a55\u4fa1\u3059\u308bif\u6761\u4ef6\u306b\u81f3\u308a\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">eval MIME::Base64::decode(\u201c\u2026\u201d)<\/span><\/p>\n<p>python\u3092\u4f7f\u3063\u3066\u3053\u308c\u3089\u306e\u5404\u30d6\u30ed\u30c3\u30af\u3092base64\u5fa9\u53f7\u5316\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u8a55\u4fa1\u5bfe\u8c61\u306e\u30d6\u30ed\u30c3\u30af\u3092\u5fa9\u53f7\u5316\u3059\u308b\u3068\u3001\u3053\u306e\u30d6\u30ed\u30c3\u30af\u306b\u306f\u3001\u5fa9\u53f7\u5316\u3055\u308c\u3066\u2018$a\u2019\u5909\u6570\u306e\u672b\u5c3e\u306b\u8ffd\u52a0\u3055\u308c\u3066\u3044\u308b\u30d6\u30ed\u30c3\u30af\u3068\u3001\u305d\u308c\u3068\u306f\u5225\u306b\u8a55\u4fa1\u3055\u308c\u308b\u30d6\u30ed\u30c3\u30af\u304c\u3082\u30461\u3064\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002\u3053\u308c\u3092\u4f55\u56de\u3082\u7e70\u308a\u8fd4\u3057\u307e\u3059\u3002\u2018$a\u2019\u5909\u6570\u306e\u672b\u5c3e\u306b\u8ffd\u52a0\u3055\u308c\u308b\u5404\u30d6\u30ed\u30c3\u30af\u3092\u3064\u304b\u307e\u3048\u3066\u5fa9\u53f7\u5316\u3057\u30d5\u30a1\u30a4\u30eb\u306b\u66f8\u304d\u51fa\u3057\u3066\u307f\u308b\u3068\u3001jpg\u304c1\u3064\u5f97\u3089\u308c\u307e\u3059\u304c\u3001\u305d\u306e\u753b\u50cf\u306b\u624b\u304c\u304b\u308a\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">from base64 import b64de<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">a = b64decode(\u201cR0lGODlh2<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">a = a + b64decode(\u201cKmZRg<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">\u2026<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">a = a + b64decode(\u201c7w3jz<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">f = open(\u201cout.gif\u201d, \u201cw\u201d)<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">f.write(a)<\/span><\/p>\n<p>\u3053\u306e\u8ab2\u984c\u306b\u53d6\u308a\u7d44\u3093\u3067\u3044\u305f\u3068\u304d\u3001\u79c1\u306f\u624b\u64cd\u4f5c\u3067\u5404\u30d6\u30ed\u30c3\u30af\u3092\u5fa9\u53f7\u5316\u3057\u3066\u306f\u66f8\u304d\u51fa\u3059\u3068\u3044\u3046\u4f5c\u696d\u3092\u3001\u624b\u304c\u304b\u308a\u3092\u5f97\u3088\u3046\u3068\u3057\u3066\u7d75\u304c\u5341\u5206\u306a\u5f62\u306b\u306a\u308b\u307e\u3067\u7d9a\u3051\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_1.png\" \/><\/p>\n<\/div>\n<p>Jeff White\u304cbash\u306e\u30ef\u30f3 \u30e9\u30a4\u30ca\u30fc(1\u884c\u30d7\u30ed\u30b0\u30e9\u30e0)\u3092\u4f7f\u3063\u3066\u5b8c\u5168\u306a\u89e3\u7b54\u3092\u5f97\u307e\u3057\u305f\u304c\u3001\u3053\u306e\u30ef\u30f3 \u30e9\u30a4\u30ca\u30fc\u306f\u5b9f\u306b\u307f\u3054\u3068\u306a\u3082\u306e\u3067\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">cp bowie.pl bowie_1 &amp;&amp; for i in $(seq 1 50); do grep -E \u201c\\$a|eval\u201d bowie_$i |cut -d\u201d\\\u201d\u201d -f2 |base64 -D &gt; bowie_expr $i + 1 ; done &amp;&amp; for i in $(grep \u201c\\$a\u201d bowie_1 |cut -d\u201d\\\u201d\u201d -f2); do echo $i |base64 -D &gt;&gt; bowie.gif; done &amp;&amp; for i in $(find . -size +2k -ls |cut -d\u201d\/\u201d -f2 |grep -vE \u201cbowie_1$|bowie.pl\u201d |sort -t _ -k 2 -n); do grep \u201c\\$a\u201d $i |cut -d\u201d\\\u201d\u201d -f2 |base64 -D &gt;&gt; bowie.gif; done &amp;&amp; rm bowie_* &amp;&amp; open bowie.gif &amp;&amp; echo \u201cD4rkCryst4lz\u201d<\/span><\/p>\n<h3><b>Unix 2\u8ab2\u984c: \u6eb6\u3051\u305f\u30ab\u30a6\u30dc\u30fc\u30a4\u305f\u3061\u306b\u5b87\u5b99\u30ec\u30b9\u30ea\u30f3\u30b0\u3001\u3053\u308c\u3063\u3066\u5973\u5b50\u30d7\u30ed\u30ec\u30b9\u30e9\u30fc\u300c\u4e16\u754c\u306e\u7b2c9\u306e\u9a5a\u7570\u300d\u3058\u3083\u306a\u3044\u3088\u3002\u3082\u3057\u304b\u3057\u305f\u3089\u79c1\u305f\u3061\u306f\u307f\u3093\u306a\u3061\u3087\u3063\u3068\u30b5\u30d3\u3064\u3044\u3061\u3083\u3063\u3066\u3044\u308b(rusty)\u304b\u3089\u304b\u3082\u306d\u3002<\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Anthony Kasza\u00a0<\/i><a href=\"https:\/\/twitter.com\/anthonykasza\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@anthonykasza<\/i><\/a><\/p>\n<p>64\u30d3\u30c3\u30c8ELF\u5f62\u5f0f\u306echallenge\u3068\u3044\u3046\u30d0\u30a4\u30ca\u30ea\u304c\u4e0e\u3048\u3089\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">$file challenge<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">challenge: ELF 64-bit LSB\u00a0 shared object, x86-64, version 1 (SYSV), dynamically linked (uses shared libs), for GNU\/Linux 2.6.32, BuildID[sha1]=4570af615de39c4912c17a09f9fbf8419368572b, not stripped<\/span><\/p>\n<p>\u307e\u305a\u3053\u308c\u3092\u5b9f\u884c\u3057\u3066\u307f\u307e\u3059\u3002\u3059\u308b\u3068\u201cLet\u2019s party like it\u2019s 1999!\u201d(\u30d1\u30fc\u30c6\u30a3\u30fc\u3092\u3057\u3088\u3046\u30021999\u5e74\u307f\u305f\u3044\u3060\u304b\u3089\u3002)\u3068\u3044\u3046\u30e1\u30c3\u30bb\u30fc\u30b8\u306b\u7d9a\u3044\u3066example.com\u306eHTML\u30b3\u30f3\u30c6\u30f3\u30c4\u304c\u8868\u793a\u3055\u308c\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_1_1.png\" \/><\/p>\n<\/div>\n<p>\u3053\u306e\u30d0\u30a4\u30ca\u30ea \u30d5\u30a1\u30a4\u30eb\u306b\u5bfe\u3057\u3066strings\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3059\u308b\u3068\u3001\u65e5\u4ed8\u3001example.com\u304a\u3088\u3073rust\u306b\u95a2\u9023\u3059\u308b\u3001\u306a\u304b\u306a\u304b\u9762\u767d\u3044\u3082\u306e\u304c\u898b\u3064\u304b\u308a\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">\u2026<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">http:\/\/www.example.com<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">stream did not contain valid UTF-8<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">1\/1\/1999%d\/%m\/%Y<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">This system is obviously not a 90\u2019s kid.1\/1\/2000Possible Y2K issue.<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">What year is it?!<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">%a, %d %b %Y %H:%M:%S GMT<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">That Date isn\u2019t RFC compliant<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">That response was not OK<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">Let\u2019s party like it\u2019s 1999!!<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">\u2026<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">rust_builtin.c<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">rust_begin_unwind<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">rust_eh_personality<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">rust_eh_personality_catch<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">\u2026<\/span><\/p>\n<p>\u6b21\u306b\u3001IDA\u3067\u3053\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u958b\u3044\u3066\u4e2d\u3092\u898b\u3066\u307f\u307e\u3059\u3002\u8907\u96d1\u306b\u4e00\u610f\u5316\u3055\u308c\u305f\u540d\u524d\u3092\u8aad\u307f\u3084\u3059\u3044\u3088\u3046\u306b\u51e6\u7406\u3059\u308b\u3068\u3001\u304b\u306a\u308a\u5927\u304d\u306amain\u95a2\u6570\u304c\u76ee\u306b\u5165\u308a\u307e\u3059\u3002\u5148\u307b\u3069\u898b\u3064\u3051\u305f\u8208\u5473\u6df1\u3044\u65e5\u4ed8\u6587\u5b57\u5217\u306b\u95a2\u3057\u3066\u3001IDA\u306e\u76f8\u4e92\u53c2\u7167\u6a5f\u80fd\u3092\u4f7f\u3046\u3053\u3068\u304b\u3089\u59cb\u3081\u3066\u307f\u307e\u3059\u3002\u3059\u308b\u3068\u3001<a href=\"https:\/\/www.example.com\/\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">www.example.com<\/a>\u306b\u5bfe\u3059\u308bHTTP\u30ea\u30af\u30a8\u30b9\u30c8\u304c\u4f5c\u3089\u308c\u3001\u65e5\u4ed8\u306b\u95a2\u3057\u3066\u30d8\u30c3\u30c0\u30fc\u304c\u30c1\u30a7\u30c3\u30af\u3055\u308c\u308b\u3053\u3068\u304c\u5206\u304b\u308a\u307e\u3059\u3002\u4f55\u3092\u3044\u3058\u304f\u3063\u3066\u307f\u308c\u3070\u3044\u3044\u306e\u304b\u3001\u3053\u308c\u3067\u304b\u306a\u308a\u826f\u3044\u30d2\u30f3\u30c8\u304c\u5f97\u3089\u308c\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_2.png\" \/><\/p>\n<\/div>\n<p>Ubuntu\u4eee\u60f3\u30de\u30b7\u30f3\u3092\u4eee\u60f3\u306e\u30d7\u30e9\u30a4\u30d9\u30fc\u30c8 \u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u4e0a\u306b\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3057\u3001\u6b21\u306b\u5225\u306e\u30ea\u30f3\u30af \u30af\u30ed\u30fc\u30f3\u3092\u4f5c\u6210\u3057\u3066\u305d\u308c\u3092\u30b5\u30fc\u30d0\u306b\u3057\u307e\u3057\u305f\u3002\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30b7\u30b9\u30c6\u30e0\u4e0a\u306ehosts\u30d5\u30a1\u30a4\u30eb\u3092\u5909\u66f4\u3057\u3066<a href=\"https:\/\/www.example.com\/\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">www.example.com<\/a>\u304c\u3082\u3046\u4e00\u65b9\u306e\u30b5\u30fc\u30d0 \u30b7\u30b9\u30c6\u30e0\u3092\u6307\u3057\u793a\u3059\u3088\u3046\u306b\u3057\u307e\u3057\u305f\u3002\u307e\u305f\u3001\u30b5\u30fc\u30d0 \u30b7\u30b9\u30c6\u30e0\u4e0a\u306b\u306fnginx\u3092\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3066\u7c21\u5358\u306aHTTP\u30ea\u30b9\u30ca\u30fc\u3092\u7528\u610f\u3057\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_3.png\" \/><\/p>\n<\/div>\n<p>\u73fe\u5728\u306e\u65e5\u4ed8\u3067\u30d7\u30ed\u30b0\u30e9\u30e0\u3092\u5b9f\u884c\u3057\u3066\u307f\u305f\u3068\u3053\u308d\u3001nginx\u306e\u30ec\u30b9\u30dd\u30f3\u30b9\u304c\u8868\u793a\u3055\u308c\u307e\u3057\u305f\u3002\u6b21\u306bchallenge\u30d5\u30a1\u30a4\u30eb\u304c\u8a00\u3063\u3066\u304d\u305f\u3068\u304a\u308a\u3001\u65e5\u4ed8\u3092\u904e\u53bb\u306e1999\u5e74\u306b\u5909\u66f4\u3057\u3066\u307f\u305f\u3089\u30ad\u30fc\u304c\u8868\u793a\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<p>PAN{ThaddeusVenture}<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_4.png\" \/><\/p>\n<\/div>\n<h3><b>Unix 3\u8ab2\u984c: \u5730\u4e0a\u306e\u306f\u308b\u304b\u4e0a\u7a7a\u304b\u3089\u773a\u3081\u305f\u661f\u306f\u307e\u3063\u305f\u304f\u5225\u7269\u306b\u898b\u3048\u308b<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Tyler Halfpop\u00a0<\/i><a href=\"https:\/\/twitter.com\/0xtyh\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@0xtyh<\/i><\/a><\/p>\n<p>\u4e0e\u3048\u3089\u308c\u305fELF\u30d5\u30a1\u30a4\u30eb\u3092\u5b9f\u884c\u3059\u308b\u3068\u3001\u732b\u304c\u63cf\u753b\u3055\u308c\u307e\u3059\u3002<\/p>\n<p>$.\/odd8_v1<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_4_1.jpg\" \/><\/p>\n<\/div>\n<p>\u305d\u308c\u3092IDA\u3067\u958b\u3044\u3066\u3001\u30e1\u30a4\u30f3\u95a2\u6570\u3067\u30b0\u30e9\u30d5 \u30e2\u30fc\u30c9\u306b\u3059\u308b\u3068\u3001\u30ce\u30fc\u30c9\u3067\u9375\u304c\u8868\u793a\u3055\u308c\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_5.png\" \/><\/p>\n<\/div>\n<p>\u3053\u306e\u30d0\u30a4\u30ca\u30ea\u306f\u3001<a href=\"https:\/\/twitter.com\/xoreaxeaxeax\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">@xoreaxeaxeax<\/a>\u306b\u3088\u308b<a href=\"https:\/\/github.com\/xoreaxeaxeax\/REpsych\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">REpsych<\/a>\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u3092\u4f7f\u7528\u3057\u3066\u4f5c\u6210\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<h3><b>Unix 4\u8ab2\u984c: \u5947\u5999\u306a\u5834\u6240\u3067\u5927\u4e8b\u306a\u3082\u306e\u3092\u767a\u898b\u3059\u308b\u5834\u5408\u304c\u3042\u308b\u2026<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>:: karttoon\u00a0<\/i><a href=\"https:\/\/twitter.com\/noottrak\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@noottrak<\/i><\/a><\/p>\n<p>\u8ab2\u984c\u306f\u3053\u306e\u7f8e\u3057\u3044\u753b\u50cf\u304b\u3089\u59cb\u307e\u308a\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_6.png\" \/><\/p>\n<\/div>\n<p>\u304a\u6c17\u306b\u5165\u308a\u306e16\u9032\u30a8\u30c7\u30a3\u30bf\u3001010Editor\u3067\u753b\u50cf\u3092\u958b\u304f\u3068\u3001jpg\u30d5\u30a1\u30a4\u30eb\u306e FF D9\u5f8c\u306e\u753b\u50cf\u306e\u7d42\u308f\u308a\u306b\u5927\u304d\u306aBLOB\u304c\u3042\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_7.png\" \/><\/p>\n<\/div>\n<p>\u3053\u306eBLOB\u3092\u62bd\u51fa\u3057\u3066\u3001\u30bf\u30b0\u3067\u5206\u3051\u3089\u308c\u305f\u3044\u304f\u3064\u304b\u306e\u30bb\u30af\u30b7\u30e7\u30f3\u306b\u5206\u5272\u3057\u307e\u3057\u305f\u3002\u9285\u306e\u30c8\u30f3\u30cd\u30eb\u3001\u91d1\u306e\u30c8\u30f3\u30cd\u30eb\u3001\u9280\u306e\u30c8\u30f3\u30cd\u30eb\u3001\u6c34\u6676\u306e\u30c8\u30f3\u30cd\u30eb\u3067\u3059\u3002\u5404\u30bb\u30af\u30b7\u30e7\u30f3\u306fbase64\u306b\u4f3c\u3066\u3044\u307e\u3059\u304c\u3001\u30d1\u30c7\u30a3\u30f3\u30b0\u304c\u5148\u982d\u306b\u3042\u308a\u3001=\u3067\u59cb\u307e\u308a\u307e\u3059\u3002010Editor\u306e\u7d44\u307f\u8fbc\u307f\u30ea\u30d0\u30fc\u30b9 \u30b9\u30af\u30ea\u30d7\u30c8\u3092\u4f7f\u7528\u3057\u3066\u3001\u30c6\u30ad\u30b9\u30c8\u3092\u30ea\u30d0\u30fc\u30b9\u3057\u3066\u304b\u3089\u3001010Editor\u306e\u30c7\u30b3\u30fc\u30c9base64\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u4f7f\u7528\u3057\u307e\u3057\u305f\u3002\u5f8c\u65b9\u306bbase64\u304c\u518d\u5ea6\u51fa\u73fe\u3059\u308b\u3088\u3046\u306b\u601d\u3048\u305f\u306e\u3067\u3001PK ZIP\u30d8\u30c3\u30c0\u30fc\u306b\u5230\u9054\u3059\u308b\u307e\u3067\u3053\u306e\u30b9\u30c6\u30c3\u30d7\u3092\u6570\u56de\u7e70\u308a\u8fd4\u3057\u307e\u3057\u305f\u3002ZIP\u30d5\u30a1\u30a4\u30eb\u306e\u524d\u306e\u30d5\u30a1\u30a4\u30eb\u306b\u5230\u9054\u3059\u308b\u307e\u3067\u3001\u30c8\u30f3\u30cd\u30eb\u3054\u3068\u306b\u3053\u306e\u624b\u9806\u3092\u5b9f\u884c\u3057\u3066\u304b\u3089\u3001python\u3092\u4f7f\u7528\u3057\u3066\u6700\u5f8c\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u66f8\u304d\u307e\u3057\u305f\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">from base64 import b64decode<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">ci = open(\u201ccoppertunnel.txt\u201d, \u201crb\u201d).read()<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">co = open(\u201ccopperout.zip\u201d, \u201cw\u201d)<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">co.write(b64decode(ci))<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">si = open(\u201csilvertunnel.txt\u201d, \u201crb\u201d).read()<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">so = open(\u201csilverout.zip\u201d, \u201cw\u201d)<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">so.write(b64decode(ci))<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">gi = open(\u201cgoldtunnel.txt\u201d, \u201crb\u201d).read()<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">go = open(\u201cgoldout.zip\u201d, \u201cw\u201d)<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">go.write(b64decode(ci))<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">cri = open(\u201ccrystaltunnel.txt\u201d, \u201crb\u201d).read()<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">cro = open(\u201ccrystalout.zip\u201d, \u201cw\u201d)<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">cro.write(b64decode(ci))<\/span><\/p>\n<p>\u3053\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u89e3\u51cd\u3059\u308b\u30684\u3064\u306e\u30d1\u30fc\u30c8\u304b\u3089\u6210\u308bPAR\u30a2\u30fc\u30ab\u30a4\u30d6\u3092\u53d6\u5f97\u3057\u307e\u3057\u305f\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">treasure.vol306+306 2.par2<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">treasure.vol306+306 3.par2<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">treasure.vol306+306 4.par2<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">treasure.vol306+306.par2<\/span><\/p>\n<p>\u00a0Google\u3067\u691c\u7d22\u3059\u308b\u3068\u3001MultiPar\u304c\u3053\u308c\u3089\u306e\u30d5\u30a1\u30a4\u30eb\u3092\u51e6\u7406\u3067\u304d\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002Repair\u95a2\u6570\u3092\u4f7f\u7528\u3057\u3066\u3001 chest.zip\u30d5\u30a1\u30a4\u30eb\u3092\u5fa9\u5143\u3067\u304d\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_8.png\" \/><\/p>\n<\/div>\n<p>chest.zip\u30d5\u30a1\u30a4\u30eb\u306f\u6697\u53f7\u5316\u3055\u308c\u3066\u3044\u308bzip\u30d5\u30a1\u30a4\u30eb\u3067\u3042\u308b\u305f\u3081\u3001\u5143\u306e\u753b\u50cf\u3067\u30d1\u30b9\u30ef\u30fc\u30c9\u3092\u63a2\u3057\u307e\u3057\u305f\u3002steghide\u3092\u8a66\u3057\u306b\u4f7f\u7528\u3059\u308b\u3068\u3001bards_song\u304c\u51fa\u529b\u3055\u308c\u307e\u3057\u305f\u3002\u3053\u308c\u306f\u30c6\u30ad\u30b9\u30c8 \u30d5\u30a1\u30a4\u30eb\u3067\u3001\u3088\u308a\u65e9\u3044\u6bb5\u968e\u304b\u3089\u5f79\u306b\u7acb\u3063\u305f\u3068\u601d\u308f\u308c\u308b\u9069\u5207\u306a\u6307\u793a\u3068\u3001zip\u30d5\u30a1\u30a4\u30eb\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3057\u305f\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">steghide.exe extract -sf labyrinth_entrance.jpg<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">Enter passphrase:<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">wrote extracted data to \u201cbards_song\u201d.<\/span><\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">Over the hills and through the grass<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">By dawn of light in the mountain pass<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">The goblins treasure awaits the steadfast<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">Walking in REVerse, the eye opens as you go past<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">A smell leads you onward, luring you to follow<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">At the end of each tunnel, a PARt of treasure in the hollow<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">Combine them to find a door hidden by rhyme<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">Opened once with the words \u201caintnobodygottime\u201d<\/span><\/p>\n<p>\u3053\u308c\u306b\u3088\u308achest.zip\u3092\u89e3\u51cd\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u308a\u3001\u305d\u306e\u7d50\u679c\u3001jareths_maze\u3068\u3044\u3046\u540d\u524d\u306eMachO\u30d5\u30a1\u30a4\u30eb\u3092\u53d6\u5f97\u3057\u307e\u3057\u305f\u3002\u3053\u306e\u30d5\u30a1\u30a4\u30eb\u3092VM\u3067\u5b9f\u884c\u3059\u308b\u3068\u3001\u4ee5\u4e0b\u306e\u6050\u308d\u3057\u3044\u30a2\u30b9\u30ad\u30fc \u30a2\u30fc\u30c8\u304c\u8868\u793a\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_9.png\" \/><\/p>\n<\/div>\n<p>\u304b\u3089\u304b\u308f\u308c\u305f\u307e\u307e\u306b\u3057\u3066\u304a\u304f\u3053\u3068\u306f\u3067\u304d\u307e\u305b\u3093\u306e\u3067\u3001\u3053\u306e\u30d5\u30a1\u30a4\u30eb\u3092IDA\u3067\u958b\u304f\u5fc5\u8981\u304c\u3042\u308a\u307e\u3057\u305f\u3002\u30e1\u30a4\u30f3\u3092\u30c7\u30b3\u30f3\u30d1\u30a4\u30eb\u3059\u308b\u3068\u3001\u3088\u308a\u3075\u3056\u3051\u305f\u5185\u5bb9\u306b\u306a\u308a\u307e\u3057\u305f\u304c\u3001\u30e1\u30c3\u30bb\u30fc\u30b8\u304c\u5909\u308f\u308a\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_10.png\" \/><\/p>\n<\/div>\n<p>\u305d\u3057\u3066\u8868\u793a\u3055\u308c\u305f\u4ee5\u4e0b\u306e\u95a2\u6570\u540d\u306e\u6587\u5b57\u5217\u306b\u5727\u5012\u3055\u308c\u3001\u5c11\u3057\u9a5a\u304d\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_11.png\" \/><\/p>\n<\/div>\n<p>\u3053\u306e\u30d7\u30ed\u30b0\u30e9\u30e0\u306f\u3001\u3053\u308c\u3089\u306e\u95a2\u6570\u5b9f\u884c\u5f8c\u306b\u30a2\u30b9\u30ad\u30fc \u30a2\u30fc\u30c8\u3092\u5370\u5237\u3057\u307e\u3057\u305f\u3002\u6700\u521d\u306e\u30e1\u30c3\u30bb\u30fc\u30b8\u304c\u6b63\u3057\u304f\u306a\u3044\u3053\u3068\u3001\u307e\u305f\u6700\u5f8c\u306e\u30e1\u30c3\u30bb\u30fc\u30b8\u304c\u6b63\u3057\u304f\u306a\u3044\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u5404\u95a2\u6570\u306f\u30e1\u30c3\u30bb\u30fc\u30b8\u5185\u306e1\u6587\u5b57\u3092\u4e0a\u66f8\u304d\u3057\u3066\u304a\u308a\u3001\u95a2\u6570\u306e\u30b0\u30eb\u30fc\u30d7\u306f\u95a2\u6570\u306eb\u30b0\u30eb\u30fc\u30d7\u304c\u66f8\u304d\u8fbc\u3093\u3060\u3082\u306e\u306b\u3088\u3063\u3066\u4e0a\u66f8\u304d\u3055\u308c\u3066\u3044\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_12.png\" \/><\/p>\n<\/div>\n<p>IDA\u3092\u4f7f\u7528\u3057\u3066\u5404\u95a2\u6570\u306b\u30b8\u30e3\u30f3\u30d7\u3057\u3001a\u95a2\u6570\u3092\u4f7f\u7528\u3057\u305f\u5834\u5408\u306b\u30e1\u30c3\u30bb\u30fc\u30b8\u3067\u60f3\u5b9a\u3055\u308c\u308b\u6587\u5b57\u306e\u5e8f\u6570\u3092\u53d6\u5f97\u3057\u3066\u304b\u3089\u3001python\u3092\u4f7f\u7528\u3057\u3066\u3001\u305d\u306e\u5e8f\u6570\u3092\u6587\u5b57\u306b\u5909\u63db\u3057\u9375\u3092\u53d6\u5f97\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>PAN{D4nKkry5t4l}<\/p>\n<h3><b>Unix 5\u8ab2\u984c: \u3042\u306a\u305f\u306e\u30d5\u30a1\u30a4\u30eb\u306f\u3059\u3079\u3066\u79c1\u305f\u3061\u306b\u5e30\u5c5e\u3057\u3066\u3044\u308b<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Tyler Halfpop\u00a0<\/i><a href=\"https:\/\/twitter.com\/0xtyh\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@0xtyh<\/i><\/a><\/p>\n<p>krypto.danger\u3068\u547c\u3070\u308c\u308b\u30d0\u30a4\u30ca\u30ea\u304c\u4e0e\u3048\u3089\u308c\u3066\u3044\u307e\u3059\u3002\u30d5\u30a1\u30a4\u30eb\u3092\u8d77\u52d5\u3059\u308b\u3068\u3001\u305d\u308c\u304c64\u30d3\u30c3\u30c8Mach-O\u3067\u3042\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002<\/p>\n<p style=\"padding-left: 40px;\"><span style=\"font-family: 'courier new', courier, monospace;\">file krypto.danger<\/span><br \/>\n<span style=\"font-family: 'courier new', courier, monospace;\">krypto.danger: Mach-O 64-bit executable x86_64<\/span><\/p>\n<p>Mach-O\u3092\u8abf\u3079\u308b\u5834\u5408\u306e\u9069\u5207\u306a\u7b2c1\u30b9\u30c6\u30c3\u30d7\u306f\u3001<a href=\"https:\/\/github.com\/gdbinit\/MachOView\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">MachOView\u306eosxreverser\u306e\u30d6\u30e9\u30f3\u30c1<\/a>\u3092\u30c1\u30a7\u30c3\u30af\u3057\u3066\u3001PE\u30d5\u30a1\u30a4\u30eb\u306e\u5834\u5408\u3068\u540c\u69d8\u306b\u3001\u3055\u307e\u3056\u307e\u306aMach-O\u30d8\u30c3\u30c0\u30fc\u60c5\u5831\u3068\u6587\u5b57\u5217\u3092\u8abf\u3079\u308b\u3053\u3068\u3067\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_13.png\" \/><\/p>\n<\/div>\n<p>\u6b21\u306e\u30b9\u30c6\u30c3\u30d7\u3067\u306f\u3001\u30d0\u30a4\u30ca\u30ea\u3092\u5b9f\u884c\u3057\u3066\u3001\u305d\u308c\u304c\u4f55\u3092\u3059\u308b\u306e\u304b\u3092\u3055\u3089\u306b\u8a73\u3057\u304f\u628a\u63e1\u3057\u307e\u3059\u3002\u4fe1\u983c\u3055\u308c\u3066\u3044\u306a\u3044\u30d0\u30a4\u30ca\u30ea\u3092\u4eee\u60f3\u30de\u30b7\u30f3\u3067\u5b9f\u884c\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u304c\u3001\u5fd9\u3057\u904e\u304e\u308b\u307b\u3069Mr. Bigglesworth\u306e\u5199\u771f\u3092\u76ee\u306b\u3059\u308b\u3053\u3068\u306b\u60a9\u307e\u3055\u308c\u307e\u3059\u3002\u305d\u308c\u3092\u5b9f\u884c\u3059\u308b\u3068\u3001Mr. Bigglesworth\u306e\u5199\u771f\u306f\u6697\u53f7\u5316\u3055\u308c\u3001.laby\u62e1\u5f35\u5b50\u304c\u4ed8\u52a0\u3055\u308c\u307e\u3059\u3002\u8105\u5a01\u3092\u4e0e\u3048\u308b\u30a4\u30c3\u30ab\u30af\u3082\u30dd\u30c3\u30d7\u30a2\u30c3\u30d7\u3055\u308c\u3001\u76ae\u8089\u306b\u3082\u300cCongratulations! All your pngs are belong to us Pay us all the moneyz \u2013 PANW GSRT\u3000(\u304a\u3081\u3067\u3068\u3046\u3054\u3056\u3044\u307e\u3059\u3002\u3042\u306a\u305f\u306epng\u306f\u3059\u3079\u3066\u79c1\u305f\u3061\u306b\u5e30\u5c5e\u3057\u3066\u3044\u307e\u3059\u3002\u3059\u3079\u3066\u306e\u91d1\u984d(moneyz)\u3092\u304a\u652f\u6255\u3044\u304f\u3060\u3055\u3044 \u2013 PANW GSRT)\u300d\u3068\u8868\u793a\u3055\u308c\u307e\u3059\u3002Mr. Bigglesworth\u3067\u306f\u3042\u308a\u307e\u305b\u3093\u3002\u3053\u308c\u306f\u6226\u3044\u3067\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_14.png\" \/><\/p>\n<\/div>\n<p>IDA\u3067\u30d0\u30a4\u30ca\u30ea\u3092\u958b\u304f\u3068\u3001\u898b\u3065\u3089\u304f\u30de\u30f3\u30b0\u30eb\u3055\u308c\u305fSwift\u540d\u304c\u3059\u3079\u3066\u8868\u793a\u3055\u308c\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_15.png\" \/><\/p>\n<\/div>\n<p><a href=\"https:\/\/github.com\/0xtyh\/SwiftDemang\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">SwiftDemang<\/a>\u3068\u3044\u3046IDA\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u4f7f\u7528\u3059\u308b\u3068\u3001Swift\u540d\u3092\u30c7\u30de\u30f3\u30b0\u30eb\u3057\u3066\u3001\u305d\u308c\u3092\u8aad\u307f\u53d6\u308a\u3084\u3059\u304f\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u30b9\u30af\u30ea\u30d7\u30c8\u306e\u5b9f\u884c\u5f8c\u306f\u3001\u591a\u5c11\u5bb9\u6613\u306b\u95a2\u6570\u540d\u3092\u898b\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_16.png\" \/><\/p>\n<\/div>\n<p>\u95a2\u6570\u3092\u30c7\u30de\u30f3\u30b0\u30eb\u3059\u308b\u3068\u3001krypto_dkrypt\u3084krypto_ekrypt\u306a\u3069\u306e\u8208\u5473\u6df1\u3044\u95a2\u6570\u304c\u3044\u304f\u3064\u304b\u898b\u3064\u304b\u308a\u307e\u3059\u3002krypto_dkrypt\u306f\u3001dekrypt\u5f15\u6570\u304c\u3042\u308b\u5834\u5408\u306b\u547c\u3073\u51fa\u3055\u308c\u307e\u3059\u3002\u305d\u308c\u3092\u4f7f\u7528\u3057\u3066\u3001Mr. Bigglesworth\u3092\u53d6\u308a\u623b\u3059\u3053\u3068\u304c\u3067\u304d\u308b\u304b\u3069\u3046\u304b\u78ba\u8a8d\u3057\u3066\u307f\u307e\u3057\u3087\u3046\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_17.png\" \/><\/p>\n<\/div>\n<p>\u3053\u308c\u3067\u3001Mr. Bigglesworth\u304c\u518d\u3073\u8868\u793a\u3055\u308c\u3001\u79c1\u305f\u3061\u306f\u8ab2\u984c\u306e\u89e3\u6c7a\u306b\u623b\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002dkrypt\u95a2\u6570\u3068ekrypt\u95a2\u6570\u306f\u3069\u3061\u3089\u3082\u3001get_pw\u3068\u3044\u3046\u8208\u5473\u6df1\u3044\u691c\u7d22\u95a2\u6570\u3092\u547c\u3073\u51fa\u3057\u307e\u3059\u3002\u3053\u306e\u95a2\u6570\u306f\u3001SwiftDemang\u306b\u3088\u3063\u3066\u8ffd\u52a0\u3055\u308c\u305f\u30b3\u30e1\u30f3\u30c8\u3067\u78ba\u8a8d\u3067\u304d\u308b\u6587\u5b57\u5217\u3092\u8fd4\u3057\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_18.png\" \/><\/p>\n<\/div>\n<p>get_pw\u3092\u898b\u308b\u3068\u3001\u305d\u306e\u4e0b\u306bRNCryptor\u3068\u3044\u3046\u8208\u5473\u6df1\u3044\u691c\u7d22\u6587\u5b57\u5217\u304c\u5f37\u8abf\u8868\u793a\u3055\u308c\u3066\u3044\u307e\u3059\u3002RNCryptor\u3092Google\u3067\u691c\u7d22\u3059\u308b\u3068\u3001<a href=\"https:\/\/github.com\/RNCryptor\/RNCryptor\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">AES-256\u306e\u30aa\u30fc\u30d7\u30f3 \u30bd\u30fc\u30b9Swift\u30d0\u30fc\u30b8\u30e7\u30f3<\/a>\u3092\u898b\u3064\u3051\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u3053\u308c\u306f\u3001\u305d\u306e\u5f8c\u3001\u30d5\u30a1\u30a4\u30eb\u3092\u6697\u53f7\u5316\u307e\u305f\u306f\u5fa9\u53f7\u5316\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u308b\u30d1\u30b9\u30ef\u30fc\u30c9\u3092\u6697\u53f7\u5316\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_19.png\" \/><\/p>\n<\/div>\n<p>IDA\u3067\u30ea\u30e2\u30fc\u30c8 \u30c7\u30d0\u30c3\u30b0\u3092\u8a2d\u5b9a\u3057\u3066\u3001get_pw\u304b\u3089\u306e\u623b\u308a\u5024\u3092\u89e3\u8aad\u3059\u308b\u3068\u30010x100608101\u306eRAX\u5185\u306e\u623b\u308a\u5024\u306b\u3088\u3063\u3066\u30dd\u30a4\u30f3\u30c8\u3055\u308c\u305f\u6587\u5b57\u5217\u306b\u8ab2\u984c\u306e\u9375\u304c\u3042\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_20.png\" \/><\/p>\n<\/div>\n<h3><b>Unix 6\u8ab2\u984c: \u9069\u5207\u306a\u8a00\u8a9e\u3092\u767a\u884c\u3059\u308b<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Richard Wartell (<\/i><a href=\"https:\/\/twitter.com\/wartortell\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@wartortell<\/i><\/a><i>)<\/i><\/p>\n<p>\u3053\u306e\u8ab2\u984c\u3067\u306f\u3001\u30b5\u30fc\u30d0\u3068\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u306e\u30d0\u30a4\u30ca\u30ea\u304c\u4e0e\u3048\u3089\u308c\u3066\u304a\u308a\u3001\u3069\u3061\u3089\u3082Mach.O\u30d5\u30a1\u30a4\u30eb\u3067\u3059\u3002\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30d0\u30a4\u30ca\u30ea\u3092\u5b9f\u884c\u3059\u308b\u3068\u3001\u300c\u8cde\u54c1\u300d\u3092\u5f97\u308b\u305f\u3081\u306e\u30014\u30c8\u30fc\u30af\u30f3 \u30ad\u30fc\u306e\u5165\u529b\u3092\u6c42\u3081\u3089\u308c\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_21.png\" \/><\/p>\n<\/div>\n<p>\u5e78\u3044\u306a\u3053\u3068\u306b\u3001\u3053\u308c\u3089\u306e\u30d0\u30a4\u30ca\u30ea\u306f\u8a18\u53f7\u304c\u53d6\u308a\u9664\u304b\u308c\u3066\u3044\u306a\u3044\u305f\u3081\u3001\u30d0\u30a4\u30ca\u30ea\u5185\u3067\u7c21\u5358\u306b\u8208\u5473\u6df1\u3044\u95a2\u6570\u3092\u898b\u3064\u3051\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30d0\u30a4\u30ca\u30ea\u3092\u4e00\u898b\u3059\u308b\u3068\u3001\u4e0a\u306b\u793a\u3055\u308c\u305f\u6587\u5b57\u5217\u3068\u3001\u5165\u529b\u3057\u305f4\u30c8\u30fc\u30af\u30f3\u3092\u30b5\u30fc\u30d0\u306b\u9001\u4fe1\u3057\u3066\u3044\u308b\u30af\u30e9\u30a4\u30a2\u30f3\u30c8 \u30e9\u30a4\u30d6\u30e9\u30ea\u304c\u793a\u3055\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_22.png\" \/><\/p>\n<\/div>\n<p>\u305d\u3053\u3067\u3001\u30b5\u30fc\u30d0\u304c\u9001\u4fe1\u3055\u308c\u305f\u30c8\u30fc\u30af\u30f3\u3092\u3069\u306e\u3088\u3046\u306b\u78ba\u8a8d\u3059\u308b\u304b\u8abf\u3079\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002IDA Pro\u3067\u30b5\u30fc\u30d0\u3092\u958b\u304f\u3068\u3001\u95a2\u6570main_check_key1\u3001main_check_key2\u3001main_check_key3\u3001\u304a\u3088\u3073main_check_key4\u304c\u9023\u7d9a\u3057\u3066\u547c\u3073\u51fa\u3055\u308c\u3066\u3044\u308b\u3053\u3068\u304c\u7c21\u5358\u306b\u308f\u304b\u308a\u307e\u3059\u3002\u305d\u308c\u3089\u3092\u8fbf\u3063\u3066\u3044\u304f\u3068\u3001\u3053\u308c\u304c\u5b9f\u969b\u306e\u30b5\u30fc\u30d0\u3060\u3063\u305f\u5834\u5408\u306b\u5b9f\u969b\u306e\u30ad\u30fc\u304c\u5b58\u5728\u3059\u308b\u5834\u6240\u306b\u8a98\u5c0e\u3059\u308b\u30c1\u30a7\u30c3\u30af\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_23.png\" \/><\/p>\n<\/div>\n<p>\u3053\u3053\u304b\u3089\u3001\u3084\u308b\u3079\u304d\u3053\u3068\u306f\u5404\u30c8\u30fc\u30af\u30f3\u304c\u4f55\u3067\u3042\u308b\u5fc5\u8981\u304c\u3042\u308b\u304b\u3092\u89e3\u304f\u3053\u3068\u3060\u3051\u3067\u3059\u30024\u3064\u306e\u95a2\u6570\u305d\u308c\u305e\u308c\u3092\u8abf\u67fb\u3059\u308b\u3068\u3001\u30ad\u30fc\u306b\u5c0e\u304f\u30c8\u30fc\u30af\u30f3\u3092\u898b\u3064\u3051\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002<\/p>\n<ol>\n<li>\u6700\u521d\u306e\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u6587\u5b57\u3054\u3068\u306b\u30c1\u30a7\u30c3\u30af\u3057\u307e\u3059\u3002\u30c8\u30fc\u30af\u30f3\u306f\u300c3at\u300d\u3067\u3059\u3002<\/li>\n<li>2\u756a\u76ee\u306e\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u30c1\u30a7\u30c3\u30af\u3057\u307e\u3059\u3002\u305d\u306e\u9577\u3055\u306f11\u3067\u3042\u308b\u5fc5\u8981\u304c\u3042\u308a\u3001\u5404\u6587\u5b57\u306f\u305d\u308c\u305e\u308c\u6bd4\u8f03\u3059\u308b\u3068\u30da\u30a2\u306b\u306a\u3063\u3066\u3044\u3066\u3001\u305d\u306e\u76f8\u9055\u70b9\u3092\u4f7f\u7528\u3057\u3066\u6587\u5b57\u3092\u6c7a\u5b9a\u3067\u304d\u307e\u3059\u3002\u30c8\u30fc\u30af\u30f3\u306f\u300cchInch1ll@z\u300d\u3067\u3059\u3002<\/li>\n<li>\u5225\u306e4\u30d0\u30a4\u30c8\u6587\u5b57\u5217\u306b\u5bfe\u3057\u3066\u3053\u306e\u30c8\u30fc\u30af\u30f3\u306e\u7279\u5225\u30c1\u30a7\u30c3\u30af\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002\u30c8\u30fc\u30af\u30f3\u306f\u300cH1gh\u300d\u3067\u3059\u3002<\/li>\n<li>\u30c8\u30fc\u30af\u30f3\u306e\u6587\u5b57\u3092\u6587\u5b57\u5217\u300cFromunda\u300d\u304a\u3088\u3073\u6570\u5024183\u3068\u6bd4\u8f03\u3057\u307e\u3059\u3002\u30c8\u30fc\u30af\u30f3\u306f\u300cF183r\u300d\u3067\u3059\u3002<\/li>\n<\/ol>\n<p>\u30b5\u30fc\u30d0\u304a\u3088\u3073\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3092\u30ed\u30fc\u30ab\u30eb\u3067\u5b9f\u884c\u3067\u304d\u308b\u3053\u3068\u304b\u3089\u6b63\u3057\u3044\u30c8\u30fc\u30af\u30f3\u3092\u53d6\u5f97\u3057\u305f\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002\u4ee5\u4e0b\u304c\u8868\u793a\u3055\u308c\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_24.png\" \/><\/p>\n<\/div>\n<p>\u4ee3\u308f\u308a\u306b\u6307\u793a\u30d5\u30a1\u30a4\u30eb\u306b\u683c\u7d0d\u3055\u308c\u3066\u3044\u308bIP\u306b\u63a5\u7d9a\u3057\u30014\u3064\u306e\u30c8\u30fc\u30af\u30f3\u3092\u5165\u529b\u3059\u308b\u3068\u3001\u6b21\u306e\u30ad\u30fc\u3092\u53d6\u5f97\u3067\u304d\u307e\u3059\u3002<\/p>\n<p>PAN{th@Nk5_m4r1ha_U_s0_n1c3}<\/p>\n<h3><b>Unix 7\u8ab2\u984c: \u30b3\u30fc\u30c9\u3092\u89e3\u3044\u3066\u30ea\u30f3\u30b4\u3092\u5165\u624b\u3059\u308b<\/b><b><\/b><\/h3>\n<p><i>\u8ab2\u984c\u4f5c\u6210\u8005<\/i><i>: Tyler Halfpop (<\/i><a href=\"https:\/\/twitter.com\/0xtyh\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \"><i>@0xtyh<\/i><\/a><i>)<\/i><\/p>\n<p>\u4eca\u56de\u3001RedDelicious\u3068\u3044\u3046OSX\u30b3\u30f3\u30d1\u30a4\u30eb\u6e08\u307f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092\u6e21\u3055\u308c\u307e\u3057\u305f\u3002\u307e\u305a\u3001\u5358\u7d14\u306b\u3053\u308c\u3092\u5b9f\u884c\u3057\u307e\u3057\u305f(\u8ce2\u304f\u3042\u308a\u307e\u305b\u3093\u304c\u3001\u81ea\u5206\u304c\u8ce2\u3044\u3068\u8a00\u3063\u305f\u3053\u3068\u306f\u3042\u308a\u307e\u305b\u3093)\u3002\u6b21\u306e\u30a6\u30a3\u30f3\u30c9\u30a6 \u30dd\u30c3\u30d7\u30a2\u30c3\u30d7\u304c\u8868\u793a\u3055\u308c\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_25.png\" \/><\/p>\n<\/div>\n<p>\u30a6\u30a3\u30f3\u30c9\u30a6\u306b\u30c6\u30ad\u30b9\u30c8\u3092\u5165\u529b\u3057\u3001\u300cSubmit\u300d\uff08\u9001\u4fe1\uff09\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3057\u305f\u3002\u3059\u308b\u3068\u300cTry harder\u2026\u300d\uff08\u3082\u3063\u3068\u9811\u5f35\u308c\u00a0\u00a0 \uff09\u3068\u3044\u3046\u30e1\u30c3\u30bb\u30fc\u30b8\u304c\u8868\u793a\u3055\u308c\u307e\u3057\u305f\u3002\u3053\u306e\u3053\u3068\u304b\u3089\u3001\u6210\u529f\u30e1\u30c3\u30bb\u30fc\u30b8\u3092\u5f97\u308b\u305f\u3081\u306b\u306f\u6b63\u3057\u3044\u30ad\u30fc\u3001\u3067\u304d\u308c\u3070\u3053\u306e\u8ab2\u984c\u306e\u30ad\u30fc\u3092\u9001\u4fe1\u3059\u308b\u5fc5\u8981\u304c\u3042\u308b\u3068\u60f3\u5b9a\u3057\u307e\u3057\u305f\u3002\u3053\u3053\u3067\u3001\u30d0\u30a4\u30ca\u30ea\u3092\u9006\u30a2\u30bb\u30f3\u30d6\u30eb\u3057\u3001\u300cSubmit\u300d\uff08\u9001\u4fe1\uff09\u3092\u30af\u30ea\u30c3\u30af\u3057\u305f\u3068\u304d\u306b\u4f55\u304c\u8d77\u3053\u308b\u306e\u304b\u3092\u78ba\u8a8d\u3057\u3088\u3046\u3068\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>IDA\u3067\u3001\u6700\u521d\u306b\u6c17\u4ed8\u3044\u305f\u3053\u3068\u306f\u3001\u307b\u3068\u3093\u3069\u306e\u95a2\u6570\u304c\u300c__T\u300d\u3067\u59cb\u307e\u3063\u3066\u3044\u308b\u3068\u3044\u3046\u3053\u3068\u3067\u3059\u3002\u3053\u306e\u3053\u3068\u304b\u3089\u3001Swift\u306e\u30b3\u30f3\u30d1\u30a4\u30eb\u6e08\u307f\u30d0\u30a4\u30ca\u30ea\u3092\u76f8\u624b\u306b\u3057\u3066\u3044\u308b\u3068\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u300c__T\u300d\u306fSwift\u306e\u3059\u3079\u3066\u306e\u8a18\u53f7\u306e\u63a5\u982d\u8f9e\u3060\u304b\u3089\u3067\u3059\u3002Swift\u306f\u3001\u919c\u304f\u3001\u975e\u5e38\u306b\u9577\u3044\u95a2\u6570\u540d\u3092\u4f5c\u308b\u3053\u3068\u306b\u512a\u308c\u3066\u3044\u308b\u305f\u3081\u3001\u3053\u308c\u3089\u3072\u3069\u304f\u919c\u3044\u3082\u306e\u306b\u52b4\u529b\u3092\u5272\u3044\u3066\u7121\u99c4\u306a\u6642\u9593\u3092\u904e\u3054\u3059\u306e\u3067\u306f\u306a\u304f\u3001\u9593\u9055\u3044\u306e\u30ad\u30fc\u3092\u5165\u529b\u3057\u305f\u3068\u304d\u306e\u300cTry harder\u2026\u300d\uff08\u3082\u3063\u3068\u9811\u5f35\u308c\u00a0\u00a0 \uff09\u3068\u3044\u3046\u6587\u5b57\u5217\u306e\u624b\u639b\u304b\u308a\u306b\u6ce8\u76ee\u3057\u307e\u3057\u305f\u3002\u6587\u5b57\u5217\u306e\u30a6\u30a3\u30f3\u30c9\u30a6\u3092\u89b3\u5bdf\u3057\u3001\u305d\u306e\u95a2\u6570\u3078\u306e\u53c2\u7167\u3092\u767a\u898b\u3057\u3001\u305d\u3053\u304b\u3089\u623b\u308a\u307e\u3057\u305f\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_26.png\" \/><\/p>\n<\/div>\n<p>\u3053\u3053\u3067\u3001\u6587\u5b57\u5217\u300cTry harder\u2026\u300d\u3068\u300cC0ngr4tz!\u300d\u306e\u4e21\u65b9\u3092\u53c2\u7167\u3059\u308b\u540c\u3058\u95a2\u6570\u3092\u898b\u3064\u3051\u307e\u3057\u305f\u3002\u3053\u3053\u3067\u3001\u81ea\u5206\u306f\u6b63\u3057\u3044\u9053\u3092\u9032\u3093\u3067\u3044\u308b\u3068\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u3053\u308c\u3089\u3092\u53c2\u7167\u3059\u308b\u95a2\u6570\u306f\u4ee5\u4e0b\u306e\u3088\u3046\u306a\u3082\u306e\u3067\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_27.png\" \/><\/p>\n<\/div>\n<p>\u30b3\u30fc\u30c9\u30d5\u30ed\u30fc\u304c2\u3064\u306b\u5206\u304b\u308c\u308b\u4e0b\u90e8\u3067\u3001\u5404\u30d1\u30b9\u306b\u306f\u7570\u306a\u308b\u6587\u5b57\u5217\u53c2\u7167\u3092\u542b\u3080\u540c\u3058\u30b3\u30fc\u30c9\u304c\u3042\u308a\u307e\u3059\u3002\u3053\u3053\u3067\u3001\u30ad\u30fc\u30c1\u30a7\u30c3\u30af\u95a2\u6570\u306b\u5230\u9054\u3057\u305f\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002\u3055\u3042\u3001\u3053\u308c\u3092\u305f\u3068\u3048\u3070\u300cC0ngr4tz!\u300d\u306b\u3059\u308b\u65b9\u6cd5\u3092\u89e3\u304d\u307e\u3057\u3087\u3046\u3002<\/p>\n<p>Swift\u306e\u30b3\u30f3\u30d1\u30a4\u30e9\u306f\u3001C++\u3068\u975e\u5e38\u306b\u3088\u304f\u4f3c\u305f\u65b9\u6cd5\u3067\u5909\u6570\u3092\u51e6\u7406\u3057\u307e\u3059\u3002\u3064\u307e\u308a\u3001\u300cthis\u300d\u3078\u306e\u53c2\u7167\u3092\u5f15\u6570\u3068\u3057\u3066\u95a2\u6570\u306b\u6e21\u3057\u3001\u3053\u308c\u3092\u4f7f\u7528\u3057\u3066\u4ed6\u306e\u30af\u30e9\u30b9\u30ea\u30d5\u30a1\u30ec\u30f3\u30b9\u3092\u691c\u7d22\u3057\u307e\u3059\u3002\u3053\u306e\u30af\u30e9\u30b9\u306e\u30af\u30e9\u30b9 \u30b8\u30e3\u30f3\u30d7 \u30c6\u30fc\u30d6\u30eb\u306fNSViewController\u30670x100008090\u306b\u3042\u308a\u307e\u3059\u3002\u95a2\u6570\u3067\u4f7f\u7528\u3055\u308c\u308b\u547c\u3073\u51fa\u3057\u3092\u4fee\u6b63\u3059\u308b\u305f\u3081\u306b\u3053\u308c\u304c\u5fc5\u8981\u306b\u306a\u308a\u307e\u3059\u3002Swift\u306e\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u6307\u5411\u30b3\u30fc\u30c9\u304a\u3088\u3073ARC\uff08Automatic Reference Counting\uff09\u3092\u3059\u3079\u3066\u30af\u30ea\u30fc\u30f3\u30a2\u30c3\u30d7\u3057\u305f\u5f8c\u3001\u3053\u306e\u95a2\u6570\u3092\u3088\u308a\u7c21\u6f54\u306a\u7591\u4f3c\u30b3\u30fc\u30c9\u306b\u3067\u304d\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_27_1.png\" \/><\/p>\n<\/div>\n<p>\u3053\u3046\u3059\u308b\u3053\u3068\u306b\u3088\u3063\u3066\u3001\u4f55\u304c\u9032\u884c\u3057\u3066\u3044\u308b\u304b\u3092\u975e\u5e38\u306b\u660e\u78ba\u306b\u7406\u89e3\u3067\u304d\u307e\u3059\u304c\u3001\u3053\u308c\u3089\u306e\u95a2\u6570\u305d\u308c\u305e\u308c\u3092\u78ba\u8a8d\u3057\u3001\u4f55\u3092\u3059\u308b\u306e\u304b\u3092\u7406\u89e3\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\u5206\u6790\u5f8c\u3001\u6b21\u306e\u7570\u306a\u308b\u95a2\u6570\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3057\u305f\u3002<\/p>\n<ul>\n<li>bb64 \u2013 \u6e21\u3055\u308c\u305f\u5f15\u6570\u3092Base64\u30a8\u30f3\u30b3\u30fc\u30c9<\/li>\n<li>xxor \u2013 \u5165\u529b\u3057\u305f\u30ad\u30fc\u3092\u4f7f\u7528\u3057\u3066\u6e21\u3055\u308c\u305f\u6587\u5b57\u5217\u3092XOR<\/li>\n<\/ul>\n<p>\u3088\u3063\u3066\u3001\u7c21\u5358\u306apython\u30b9\u30af\u30ea\u30d7\u30c8\u3092\u66f8\u304d\u8fbc\u3080\u3068\u30ad\u30fc\u3092\u53d6\u5f97\u3067\u304d\u307e\u3059\u3002<\/p>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_27_2.png\" \/><\/p>\n<\/div>\n<div>\n<p><img  class=\"aligncenter lozad\"  data-src=\"https:\/\/www.paloaltonetworks.jp\/content\/dam\/paloaltonetworks-com\/ja_JP\/Images\/blog\/CTF2_28.png\" \/><\/p>\n<\/div>\n<p>\u30ad\u30fc\u306f\u6b21\u306e\u3068\u304a\u308a\u3067\u3059\u3002PAN{My_m0th3r_told_m3_2b3_w4ry_of_F@uns}<\/p>\n<p>\u4ee5\u4e0b\u306b\u30b3\u30e1\u30f3\u30c8\u3092\u5165\u529b\u3057\u3066Unix\u30c8\u30e9\u30c3\u30ad\u30f3\u30b0\u8ab2\u984c\u306b\u3064\u3044\u3066\u611f\u3058\u305f\u3053\u3068\u3092\u5171\u6709\u3057\u307e\u3057\u3087\u3046\u3002\u4ed6\u306e\u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u304c\u3053\u308c\u3089\u306e\u8ab2\u984c\u3092\u3069\u306e\u3088\u3046\u306b\u89e3\u6c7a\u3057\u305f\u304b\u3082\u78ba\u8a8d\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<h4><b>Unix\u8ab2\u984c1<\/b><\/h4>\n<ul>\n<li><a href=\"https:\/\/irq5.io\/2016\/08\/17\/labyrenth-2016-write-up-bowie-pl\/\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">https:\/\/irq5.io\/2016\/08\/17\/labyrenth-2016-write-up-bowie-pl\/<\/a><\/li>\n<li><a href=\"https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-1.py\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-1.py<\/a><\/li>\n<\/ul>\n<h4><b>Unix\u8ab2\u984c3<\/b><\/h4>\n<ul>\n<li><a href=\"https:\/\/www.ghettoforensics.com\/2016\/08\/running-labyrenth-unit-42-ctf.html\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">http:\/\/www.ghettoforensics.com\/2016\/08\/running-labyrenth-unit-42-ctf.html<\/a><\/li>\n<\/ul>\n<h4><b>Unix\u8ab2\u984c5<\/b><\/h4>\n<ul>\n<li><a href=\"https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-5.txt\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-5.txt<\/a><\/li>\n<\/ul>\n<h4><b>Unix\u8ab2\u984c6<\/b><\/h4>\n<ul>\n<li><a href=\"https:\/\/www.ghettoforensics.com\/2016\/08\/running-labyrenth-unit-42-ctf.html\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">http:\/\/www.ghettoforensics.com\/2016\/08\/running-labyrenth-unit-42-ctf.html<\/a><\/li>\n<li><a href=\"https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-6.py\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-6.py<\/a><\/li>\n<\/ul>\n<h4><b>Unix\u8ab2\u984c7<\/b><\/h4>\n<ul>\n<li><a href=\"https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-7.txt\" data-page-track=\"true\" data-page-track-value=\"company:160829_unit42-labyrenth-capture-the-flag-ctf-unix-track-solutions: section: \">https:\/\/github.com\/uafio\/git\/blob\/master\/scripts\/labyREnth-2016\/labyrenth-2016-unix-7.txt<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8\u3001LabyREnth\u306b\u3054\u53c2\u52a0\u3044\u305f\u3060\u304d\u3042\u308a\u304c\u3068\u3046\u3054\u3056\u3044\u307e\u3057\u305f\u3002\u30b3\u30f3\u30c6\u30b9\u30c8\u304c\u7d42\u4e86\u3044\u305f\u3057\u307e\u3057\u305f\u306e\u3067\u3001\u3044\u3088\u3044\u3088\u5404\u7a2e\u76ee\u306e\u89e3\u7b54\u3092\u767a\u8868\u3044\u305f\u3057\u307e\u3059\u3002\u9031<\/p>\n","protected":false},"author":23,"featured_media":105405,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[4438,4435],"tags":[7259,7261,7573],"product_categories":[],"coauthors":[1025],"class_list":["post-105605","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-tutorials-ja","category-learning-hub-ja","tag-ctf-ja","tag-labyrenth-ja","tag-unix-ja"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.0) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54<\/title>\n<meta name=\"description\" content=\"\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/\" \/>\n<meta property=\"og:locale\" content=\"ja_JP\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54\" \/>\n<meta property=\"og:description\" content=\"\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\" \/>\n<meta property=\"og:url\" content=\"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/\" \/>\n<meta property=\"og:site_name\" content=\"Unit 42\" \/>\n<meta property=\"article:published_time\" content=\"2016-08-26T00:00:25+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-08-25T11:32:40+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png\" \/>\n\t<meta property=\"og:image:width\" content=\"500\" \/>\n\t<meta property=\"og:image:height\" content=\"216\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Unit 42\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54","description":"\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/","og_locale":"ja_JP","og_type":"article","og_title":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54","og_description":"\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3","og_url":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/","og_site_name":"Unit 42","article_published_time":"2016-08-26T00:00:25+00:00","article_modified_time":"2025-08-25T11:32:40+00:00","og_image":[{"width":500,"height":216,"url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png","type":"image\/png"}],"author":"Unit 42","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#article","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/"},"author":{"name":"Unit 42","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63"},"headline":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54","datePublished":"2016-08-26T00:00:25+00:00","dateModified":"2025-08-25T11:32:40+00:00","mainEntityOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/"},"wordCount":801,"commentCount":0,"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png","keywords":["CTF","LabyREnth","Unix"],"articleSection":["\u30b5\u30a4\u30d0\u30fc\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30c1\u30e5\u30fc\u30c8\u30ea\u30a2\u30eb","\u30e9\u30fc\u30cb\u30f3\u30b0 \u30cf\u30d6"],"inLanguage":"ja","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/","url":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/","name":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#primaryimage"},"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png","datePublished":"2016-08-26T00:00:25+00:00","dateModified":"2025-08-25T11:32:40+00:00","author":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63"},"description":"\u6982\u8981 \u8105\u5a01\u30ea\u30b5\u30fc\u30c1\u30e3\u30fc\u306e\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u306e\u7686\u69d8\u306b\u306f\u3001Unit 42\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3","breadcrumb":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#breadcrumb"},"inLanguage":"ja","potentialAction":[{"@type":"ReadAction","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/"]}]},{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#primaryimage","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2020\/03\/Unit-42-CTF-1-500x216-1.png","width":500,"height":216},{"@type":"BreadcrumbList","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/labyrenth-capture-the-flag-ctf-unix-track-solutions\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/unit42.paloaltonetworks.com\/ja\/"},{"@type":"ListItem","position":2,"name":"LabyREnth\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30b3\u30f3\u30c6\u30b9\u30c8: Unix\u7a2e\u76ee\u306e\u89e3\u7b54"}]},{"@type":"WebSite","@id":"https:\/\/unit42.paloaltonetworks.com\/#website","url":"https:\/\/unit42.paloaltonetworks.com\/","name":"Unit 42","description":"Palo Alto Networks","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/unit42.paloaltonetworks.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ja"},{"@type":"Person","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/a891f81d18648a1e0bab742238d31a63","name":"Unit 42","image":{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/image\/4ffb3c2d260a0150fb91b3715442f8b3","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2018\/11\/unit-news-meta.svg","caption":"Unit 42"},"url":"https:\/\/unit42.paloaltonetworks.com\/ja\/author\/unit42\/"}]}},"_links":{"self":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/105605","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/comments?post=105605"}],"version-history":[{"count":2,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/105605\/revisions"}],"predecessor-version":[{"id":105607,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/105605\/revisions\/105607"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media\/105405"}],"wp:attachment":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media?parent=105605"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/categories?post=105605"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/tags?post=105605"},{"taxonomy":"product_categories","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/product_categories?post=105605"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/coauthors?post=105605"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}