3 ms·
Tangentially relevant: the TryHackMe Advent of Cyber side quest this year[0] featured a pair of ROS nodes that we had to attack. I had never encountered ROS b
by stackghost 2y ago
Tangentially relevant: the TryHackMe Advent of Cyber side quest this year[0] featured a pair of ROS nodes that we had to attack.
I had never encountered ROS before but, having scoured the documentation to figure out how to write a malicious node[1] and exfil data via `rostopic`, it sure felt great not to have to use ROS professionally, and to know I was probably never going to encounter it again.
[0] https://tryhackme.com/r/room/adventofcyber24sidequest https://tryhackme.com/r/room/adventofcyber24sidequest
[1] https://0x85.org/sidequest2024-2.html https://0x85.org/sidequest2024-2.html
- esteve 2y agoI don't know the rules of the TryHackMe Advent of Cyber, but I find it a bit strange that it had one of the quests targeting a version of ROS that has been deprecated for the past 5 years and will be completely EOL'd this May. ROS 2 moved away from the codebase that the quest targeted many years ago.
- rcxdude 2y agoCTFs are generally puzzles/games, not pentests themselves, so they will deliberately use out of date or misconfigured versions of software so that they are vulnerable in a known way.