Editorial for DMOJ Capture The Flag '20 F4 - Wire on Shark


Remember to use this editorial only when stuck, and not to copy-paste code from it. Please be respectful to the problem author and editorialist.
Submitting an official solution before solving the problem yourself is a bannable offence.

Author: Ninjaclasher

The problem statement should have hinted you to look at something that should be the same but are actually different. Analyzing closely, we can see that the IPs in the Wireshark log and the ones in the HTTP response don't match! In particular, the last block of each IP address is different. If we find all of these different blocks and convert them to ASCII, we get a string that contains the flag.


Comments

There are no comments at the moment.