Clear it in 3 steps
-
Start the environment
-
Investigate the target
-
Submit the flag
Analyze a prerecorded callback transcript without connecting to any external host. No listener or shell is started. Recover the flag from the encoded payload in the callback-analysis record.
Inspect artifacts/netcat/callback-transcript.log
Extract payload_b64 from callback-analysis
Base64-decode that value to recover the flag