Home / Writeups / Friendly Securinets CTF 2026

Friendly Securinets CTF 2026

Walkthroughs for 41 challenges from Friendly Securinets CTF 2026: 39 forensics tasks
across three waves, one reverse-engineering challenge, and one web-exploitation challenge.
They run from file-format analysis up to full incident reconstruction, memory forensics, cryptanalysis, and debugger-driven reversing.

Writeups in this collection

  1. 01 Forensics Wave 1 Seven easy-to-medium forensics challenges: header repair, layered encodings, nested archives, a disguised shell archive, low-contrast stego, Morse audio, and a PNG/PDF polyglot. Easy 7 Challenges • Easy–Medium ⏱ 13 min
  2. 02 Forensics Wave 2 Eighteen intermediate forensics tasks covering Git history, browser artifacts, DNS, maldocs, packet analysis, steganography, and reverse engineering. Medium 18 Challenges • Medium ⏱ 34 min
  3. 03 Forensics Wave 3 Fourteen advanced forensics challenges spanning memory analysis, DFIR, TLS recovery, cloud logs, mobile artifacts, network cryptanalysis, and hardware signals. Hard 14 Challenges • Hard ⏱ 49 min
  4. 04 Twofold A Windows reverse-engineering challenge that requires recovering a license key statically, then manipulating execution in a debugger to reveal a runtime-only unlock token. Hard 800 Points • Static + Dynamic Analysis ⏱ 6 min
  5. 05 Reset Vault A web exploitation challenge built around predictable MongoDB ObjectIds, deterministic token generation, and AES keys derived from attacker-guessable identifiers. Medium 300 Points • ObjectId + Weak PRNG ⏱ 14 min

Where to start

If you are… Start with
New to forensics Forensics — Wave 1: one artifact, one technique per challenge
Comfortable with Wireshark, sqlite3 and Git Forensics — Wave 2: Cookie Jar, Force Push and the Chilla Box incident
Looking for DFIR depth Forensics — Wave 3: Key Recovery, Timestomped, Trailhead and Nitro
Into reversing or web Twofold or Reset Vault

How the waves progress

What the set covers

How to read the writeups

Each challenge starts with its points, files and description, followed by:

  1. Hints: collapsed and progressive, so you can try the challenge first.
  2. What it targets: the skills involved and why they matter outside a CTF.
  3. Walkthrough: the commands, their output, and the reasoning that connects them.
  4. Pitfalls, red herrings and alternative paths, where relevant.
  5. Flag: collapsed at the end of the section.

Each wave page also lists the tools used, with install commands.

Back to Writeups