- Популярные видео
- Авто
- Видео-блоги
- ДТП, аварии
- Для маленьких
- Еда, напитки
- Животные
- Закон и право
- Знаменитости
- Игры
- Искусство
- Комедии
- Красота, мода
- Кулинария, рецепты
- Люди
- Мото
- Музыка
- Мультфильмы
- Наука, технологии
- Новости
- Образование
- Политика
- Праздники
- Приколы
- Природа
- Происшествия
- Путешествия
- Развлечения
- Ржач
- Семья
- Сериалы
- Спорт
- Стиль жизни
- ТВ передачи
- Танцы
- Технологии
- Товары
- Ужасы
- Фильмы
- Шоу-бизнес
- Юмор
TryHackMe — SeeTwo Walkthrough (Wireshark, PyInstaller Decompile + Python Code Reviewing)
#TryHackMe #SeeTwo #Wireshark
In this detailed TryHackMe SeeTwo walkthrough I show end-to-end analysis: packet capture inspection with Wireshark, exporting HTTP objects, then binary analysis and decompilation of a PyInstaller-created ELF binary to recover the Python source — finally automating C2 stream decryption with a Python script.
What you'll learn (high-level)
• How to use Wireshark Conversations & filters (tcp.port == 22 / 80 / 1337) to find suspicious traffic.
• Recognize base64-encoded payloads and PNG decoys used by C2.
• Export HTTP objects from a PCAP and recover downloaded files.
• Identify a PyInstaller ELF, extract .pyc, fix pyc header (magic bytes) and decompile with uncompyle6.
• Build a short Python script to automate combining streams + base64 → XOR decryption.
• Tools used: Wireshark, pyinstxtractor, ImHex (hex editor), uncompyle6, Python (3.8).
Why watch:
SeeTwo is a great lab for learning real-world C2 and binary-forensics techniques — perfect for CTF players, red-teamers, and defenders who want practical packet-to-source reverse engineering.
If this helped you:
👍 Like, Subscribe, and hit the bell for more CTF & reverse-engineering tutorials.
Questions or stuck on a step? Comment the timestamp and I’ll reply.
#TryHackMe #SeeTwo #Wireshark #CyberChef #ReverseEngineering #BinaryAnalysis #CTF #MalwareAnalysis #PyInstaller #PCAP
Видео TryHackMe — SeeTwo Walkthrough (Wireshark, PyInstaller Decompile + Python Code Reviewing) канала Junhua's Cyber Lab
In this detailed TryHackMe SeeTwo walkthrough I show end-to-end analysis: packet capture inspection with Wireshark, exporting HTTP objects, then binary analysis and decompilation of a PyInstaller-created ELF binary to recover the Python source — finally automating C2 stream decryption with a Python script.
What you'll learn (high-level)
• How to use Wireshark Conversations & filters (tcp.port == 22 / 80 / 1337) to find suspicious traffic.
• Recognize base64-encoded payloads and PNG decoys used by C2.
• Export HTTP objects from a PCAP and recover downloaded files.
• Identify a PyInstaller ELF, extract .pyc, fix pyc header (magic bytes) and decompile with uncompyle6.
• Build a short Python script to automate combining streams + base64 → XOR decryption.
• Tools used: Wireshark, pyinstxtractor, ImHex (hex editor), uncompyle6, Python (3.8).
Why watch:
SeeTwo is a great lab for learning real-world C2 and binary-forensics techniques — perfect for CTF players, red-teamers, and defenders who want practical packet-to-source reverse engineering.
If this helped you:
👍 Like, Subscribe, and hit the bell for more CTF & reverse-engineering tutorials.
Questions or stuck on a step? Comment the timestamp and I’ll reply.
#TryHackMe #SeeTwo #Wireshark #CyberChef #ReverseEngineering #BinaryAnalysis #CTF #MalwareAnalysis #PyInstaller #PCAP
Видео TryHackMe — SeeTwo Walkthrough (Wireshark, PyInstaller Decompile + Python Code Reviewing) канала Junhua's Cyber Lab
TryHackMe SeeTwo TryHackMe SeeTwo SeeTwo walkthrough TryHackMe walkthrough Wireshark tutorial CyberChef tutorial PyInstaller decompile decompile Python ELF binary analysis C2 analysis network forensics packet capture PCAP analysis Wireshark TCP stream base64 decode XOR decryption uncompyle6 pyinstxtractor pyi-archive-viewer ImHex reverse engineering ELF analysis Linux binary analysis CTF walkthrough cybersecurity tutorial malware analysis
Комментарии отсутствуют
Информация о видео
12 ноября 2025 г. 17:31:17
00:51:42
Другие видео канала





















