CTF Challenges: Difference between revisions

From Pessin randon wiki
No edit summary
m Protected "CTF Challenges" ([Edit=Allow only administrators] (indefinite) [Move=Allow only administrators] (indefinite)) [cascading]
 
(35 intermediate revisions by 2 users not shown)
Line 1: Line 1:
For the third year in a row, Cyber Battle of Estonia is organising a series of cyber hacking events aimed at young people aged 15-24.
The main goal is to make young people more cyber-savvy by providing them with knowledge in the cybersecurity field through practical cyber courses. We also aim to introduce how working in the cyber world looks like and what are the relevant skills and knowledge required. Cybersecurity is important everywhere!
Real-life situations are used in the regional pre-qualifier rounds and the final competition. For example a situation, where the city government needs help because malware has entered their server, paralysing all of the city’s systems from street lighting, pedestrian crossings and bicycle lanes. Or the traffic control tower needs assistance as they have been hit by a redemption claim and all data is encrypted.
Our goal is to introduce work in the cyber world and the relevant skills and knowledge required. Cyber security is important everywhere!
There are not enough good guys in the field. Get involved and become a cyber-savvy youngster!
https://www.ctftech.com/events/cyber-battle-of-estonia-2022/
== CTF-Tech Portal ==
== CTF-Tech Portal ==
Login page: https://portal.ctftech.io/#login
Login page: https://portal.ctftech.io/#login
Line 16: Line 28:


==== OSINT ====
==== OSINT ====
# [[Heritage]]
# [[Heritage|Heritage - SOLVED]]
# [[Automated]]
# [[Automated|Automated - SOLVED]]
# [[Blast from the past]]
# [[Blast from the past|Blast from the past - SOLVED]]
# [[Time machine]]
# [[Time machine|Time machine - SOLVED]]


==== WEB ====
==== WEB ====
# [[Hidden in plain sight]]
# [[Hidden in plain sight|Hidden in plain sight - SOLVED]]
# [[1337Panel]]
# [[1337Panel|1337Panel - SOLVED]]
# [[We need oxygen]]
# [[We need oxygen|We need oxygen - SOLVED]]


=== 002 - EXERCISE CTF - Medium ===
=== 002 - EXERCISE CTF - Medium ===
Line 37: Line 49:


==== Forensics ====
==== Forensics ====
# [[No more kid's play]]
# [[No more kid's play|No more kid's play - SOLVED]]
# [[ATIS]]
# [[ATIS|ATIS -- SOLVED]]
# [[Flight plan]]
# [[Flight plan|Flight plan - SOLVED]]
# [[PHP Shell code]]
# [[PHP Shell code|PHP Shell code - SOLVED]]


==== Reverse engineering ====
==== Reverse engineering ====
Line 51: Line 63:
# [[Mailbox]]
# [[Mailbox]]


== Pico-CTF ==
=== CBOE-22 Boot camp hands-on ===
 
==== Linux ====
 
# [[Hidden|Hidden - SOLVED]]
# [[DIR|DIR - SOLVED]]
# [[Find-me|Find-me - SOLVED]]
# [[Inside|Inside - SOLVED]]
# [[Compressed|Compressed - SOLVED]]
# [[Unknown file|Unknown file - SOLVED]]
 
==== WEB ====
 
# [[User audit|User audit - SOLVED]]
# [[Blog|Blog - SOLVED]]
# [[Ping|Ping - SOLVED]]
# [[Upload|Upload - SOLVED]]
# We need oxygen - SOLVED (same as before)
# [[Pump clicker|Pump cliker - SOLVED]]
 
==== Varia ====
 
# [[Metadata|Metadata - SOLVED]]
# [[Range|Range - SOLVED]]
# [[Scanning 2|Scanning 2 - SOLVED]]
# [[PHPMailer exploit|PHPMailer exploit - SOLVED]]
# [[Shellshock exploit|Shellshock exploit - SOLVED]]
# [[Pcap extract|Pcap extract - SOLVED]]
# [[FTP exploit|FTP exploit - SOLVED]]
 
==== Brute-force ====


== HackTheBox ==
# [[Basic auth brute|Basic auth brute - SOLVED]]
# [[Web login brute|Web login brute - SOLVED]]
# [[Zip brute|Zip brute - SOLVED]]
# [[SSH brute|SSH brute - SOLVED]]


== TryHackMe ==
=== CYBER BATTLE OF ESTONIA 2022 - QUALIFICATION ===
 
==== Linux ====
# [[Automata|Automata - SOLVED]]
# [[Top-Secret|Top-Secret - SOLVED]]
# [[SSH-Harden|SSH-Harden - SOLVED]]
 
==== WEB ====
# [[Health check|Healt check - SOLVED]]
# [[The Tree Hills|The Tree Hills - SOLVED ]]
# [[Hacked|Hacked - SOLVED]]
# [[Encoder|Encoder - SOLVED]]
 
==== Network ====
# [[DNS Enum]] - SOLVED
# [[Attack Analysis|Attack Analysis - SOLVED]]
# [[Version]] - SOLVED
 
==== Varia ====
# [[Nexif|Nexif - SOLVED]]
# [[Emoji analysis]]
# [[Password dump|Password dump - SOVED]]
# [[Weird message]] - SOLVED

Latest revision as of 13:02, 26 December 2024

For the third year in a row, Cyber Battle of Estonia is organising a series of cyber hacking events aimed at young people aged 15-24.

The main goal is to make young people more cyber-savvy by providing them with knowledge in the cybersecurity field through practical cyber courses. We also aim to introduce how working in the cyber world looks like and what are the relevant skills and knowledge required. Cybersecurity is important everywhere!

Real-life situations are used in the regional pre-qualifier rounds and the final competition. For example a situation, where the city government needs help because malware has entered their server, paralysing all of the city’s systems from street lighting, pedestrian crossings and bicycle lanes. Or the traffic control tower needs assistance as they have been hit by a redemption claim and all data is encrypted.

Our goal is to introduce work in the cyber world and the relevant skills and knowledge required. Cyber security is important everywhere!

There are not enough good guys in the field. Get involved and become a cyber-savvy youngster!

https://www.ctftech.com/events/cyber-battle-of-estonia-2022/

CTF-Tech Portal

Login page: https://portal.ctftech.io/#login

001 Warm-up CTF - Easy

CIPHERS / ENCODING

  1. 00000001 - SOLVED
  2. SALAD - SOLVED
  3. WIERD MESSAGE - SOLVED
  4. 54 41 53 4b 20 54 49 54 4c 45 - SOLVED

STEGANOGRAPHY

  1. Black Box - SOLVED
  2. Deceptive cat - SOLVED
  3. Data about data - SOLVED
  4. Embedded data - SOLVED

OSINT

  1. Heritage - SOLVED
  2. Automated - SOLVED
  3. Blast from the past - SOLVED
  4. Time machine - SOLVED

WEB

  1. Hidden in plain sight - SOLVED
  2. 1337Panel - SOLVED
  3. We need oxygen - SOLVED

002 - EXERCISE CTF - Medium

WEB

  1. City lights - SOLVED
  2. Secret header - SOLVED
  3. Api - SOLVED

Network

  1. SSID - SOLVED
  2. SSID 2 - SOLVED

Forensics

  1. No more kid's play - SOLVED
  2. ATIS -- SOLVED
  3. Flight plan - SOLVED
  4. PHP Shell code - SOLVED

Reverse engineering

  1. Rootkit
  2. Numbers
  3. Decryption key

Varia

  1. Netowrk Fix
  2. Mailbox

CBOE-22 Boot camp hands-on

Linux

  1. Hidden - SOLVED
  2. DIR - SOLVED
  3. Find-me - SOLVED
  4. Inside - SOLVED
  5. Compressed - SOLVED
  6. Unknown file - SOLVED

WEB

  1. User audit - SOLVED
  2. Blog - SOLVED
  3. Ping - SOLVED
  4. Upload - SOLVED
  5. We need oxygen - SOLVED (same as before)
  6. Pump cliker - SOLVED

Varia

  1. Metadata - SOLVED
  2. Range - SOLVED
  3. Scanning 2 - SOLVED
  4. PHPMailer exploit - SOLVED
  5. Shellshock exploit - SOLVED
  6. Pcap extract - SOLVED
  7. FTP exploit - SOLVED

Brute-force

  1. Basic auth brute - SOLVED
  2. Web login brute - SOLVED
  3. Zip brute - SOLVED
  4. SSH brute - SOLVED

CYBER BATTLE OF ESTONIA 2022 - QUALIFICATION

Linux

  1. Automata - SOLVED
  2. Top-Secret - SOLVED
  3. SSH-Harden - SOLVED

WEB

  1. Healt check - SOLVED
  2. The Tree Hills - SOLVED
  3. Hacked - SOLVED
  4. Encoder - SOLVED

Network

  1. DNS Enum - SOLVED
  2. Attack Analysis - SOLVED
  3. Version - SOLVED

Varia

  1. Nexif - SOLVED
  2. Emoji analysis
  3. Password dump - SOVED
  4. Weird message - SOLVED