The hacking lab for nonce-reuse attack in NACL SecretBox (xSalsa20 and Poly1305)
Please find a bud in the app.py file. Then, hack this lab on your own environment. Next, get a real flag https://nacl-nonce-reuse-lab.herokuapp.com/. Finally, submit flag on https://lab.suam.wtf/.
Make sure you have Python 3.7 installed locally. To push to Heroku, you'll need to install the Heroku CLI.
$ git clone https://github.com/suam-team/nacl-nonce-reuse-lab.git
$ cd nacl-nonce-reuse-lab
$ pip install -r requirements.txt
$ echo "FLAG=flag{ILoveYou}" > .env
$ heroku local
Your app should now be running on localhost:5000.
$ heroku create
$ git push heroku main
$ heroku open
or