CTF Challenges: Difference between revisions

From Pessin randon wiki
m Protected "CTF Challenges" ([Edit=Allow only administrators] (indefinite) [Move=Allow only administrators] (indefinite)) [cascading]
 
(18 intermediate revisions by 2 users not shown)
Line 1: Line 1:
For the third year in a row, Cyber Battle of Estonia is organising a series of cyber hacking events aimed at young people aged 15-24.
The main goal is to make young people more cyber-savvy by providing them with knowledge in the cybersecurity field through practical cyber courses. We also aim to introduce how working in the cyber world looks like and what are the relevant skills and knowledge required. Cybersecurity is important everywhere!
Real-life situations are used in the regional pre-qualifier rounds and the final competition. For example a situation, where the city government needs help because malware has entered their server, paralysing all of the city’s systems from street lighting, pedestrian crossings and bicycle lanes. Or the traffic control tower needs assistance as they have been hit by a redemption claim and all data is encrypted.
Our goal is to introduce work in the cyber world and the relevant skills and knowledge required. Cyber security is important everywhere!
There are not enough good guys in the field. Get involved and become a cyber-savvy youngster!
https://www.ctftech.com/events/cyber-battle-of-estonia-2022/
== CTF-Tech Portal ==
== CTF-Tech Portal ==
Login page: https://portal.ctftech.io/#login
Login page: https://portal.ctftech.io/#login
Line 64: Line 76:
==== WEB ====
==== WEB ====


# [[User audit|User audit -SOLVED]]
# [[User audit|User audit - SOLVED]]
# [[Blog|Blog - SOLVED]]
# [[Blog|Blog - SOLVED]]
# [[Ping|Ping - SOLVED]]
# [[Ping|Ping - SOLVED]]
Line 78: Line 90:
# [[PHPMailer exploit|PHPMailer exploit - SOLVED]]
# [[PHPMailer exploit|PHPMailer exploit - SOLVED]]
# [[Shellshock exploit|Shellshock exploit - SOLVED]]
# [[Shellshock exploit|Shellshock exploit - SOLVED]]
# [[Pcap extract|Pcap extract -SOLVED]]
# [[Pcap extract|Pcap extract - SOLVED]]
# [[FTP exploit|FTP exploit -SOLVED]]
# [[FTP exploit|FTP exploit - SOLVED]]


==== Brute-force ====
==== Brute-force ====


# [[Basic auth brute|Basic auth brute -SOLVED]]
# [[Basic auth brute|Basic auth brute - SOLVED]]
# [[Web login brute|Web login brute -SOLVED]]
# [[Web login brute|Web login brute - SOLVED]]
# [[Zip brute|Zip brute -SOLVED]]
# [[Zip brute|Zip brute - SOLVED]]
# [[SSH brute|SSH brute -SOLVED]]
# [[SSH brute|SSH brute - SOLVED]]


=== CYBER BATTLE OF ESTONIA 2022 - QUALIFICATION ===
=== CYBER BATTLE OF ESTONIA 2022 - QUALIFICATION ===
Line 92: Line 104:
==== Linux ====
==== Linux ====
# [[Automata|Automata - SOLVED]]
# [[Automata|Automata - SOLVED]]
# Top-Secret
# [[Top-Secret|Top-Secret - SOLVED]]
# SSH-Harden
# [[SSH-Harden|SSH-Harden - SOLVED]]


==== WEB ====
==== WEB ====
# Health check
# [[Health check|Healt check - SOLVED]]
# The Tree Hills
# [[The Tree Hills|The Tree Hills - SOLVED ]]
# Hacked
# [[Hacked|Hacked - SOLVED]]
# Encoder
# [[Encoder|Encoder - SOLVED]]


==== Network ====
==== Network ====
# DNS Enum
# [[DNS Enum]] - SOLVED
# Attack Analysis
# [[Attack Analysis|Attack Analysis - SOLVED]]
# Version
# [[Version]] - SOLVED


==== Varia ====
==== Varia ====
# Nexif
# [[Nexif|Nexif - SOLVED]]
# Emoji analysis
# [[Emoji analysis]]
# Password dump
# [[Password dump|Password dump - SOVED]]
# Wierd message
# [[Weird message]] - SOLVED

Latest revision as of 13:02, 26 December 2024

For the third year in a row, Cyber Battle of Estonia is organising a series of cyber hacking events aimed at young people aged 15-24.

The main goal is to make young people more cyber-savvy by providing them with knowledge in the cybersecurity field through practical cyber courses. We also aim to introduce how working in the cyber world looks like and what are the relevant skills and knowledge required. Cybersecurity is important everywhere!

Real-life situations are used in the regional pre-qualifier rounds and the final competition. For example a situation, where the city government needs help because malware has entered their server, paralysing all of the city’s systems from street lighting, pedestrian crossings and bicycle lanes. Or the traffic control tower needs assistance as they have been hit by a redemption claim and all data is encrypted.

Our goal is to introduce work in the cyber world and the relevant skills and knowledge required. Cyber security is important everywhere!

There are not enough good guys in the field. Get involved and become a cyber-savvy youngster!

https://www.ctftech.com/events/cyber-battle-of-estonia-2022/

CTF-Tech Portal

Login page: https://portal.ctftech.io/#login

001 Warm-up CTF - Easy

CIPHERS / ENCODING

  1. 00000001 - SOLVED
  2. SALAD - SOLVED
  3. WIERD MESSAGE - SOLVED
  4. 54 41 53 4b 20 54 49 54 4c 45 - SOLVED

STEGANOGRAPHY

  1. Black Box - SOLVED
  2. Deceptive cat - SOLVED
  3. Data about data - SOLVED
  4. Embedded data - SOLVED

OSINT

  1. Heritage - SOLVED
  2. Automated - SOLVED
  3. Blast from the past - SOLVED
  4. Time machine - SOLVED

WEB

  1. Hidden in plain sight - SOLVED
  2. 1337Panel - SOLVED
  3. We need oxygen - SOLVED

002 - EXERCISE CTF - Medium

WEB

  1. City lights - SOLVED
  2. Secret header - SOLVED
  3. Api - SOLVED

Network

  1. SSID - SOLVED
  2. SSID 2 - SOLVED

Forensics

  1. No more kid's play - SOLVED
  2. ATIS -- SOLVED
  3. Flight plan - SOLVED
  4. PHP Shell code - SOLVED

Reverse engineering

  1. Rootkit
  2. Numbers
  3. Decryption key

Varia

  1. Netowrk Fix
  2. Mailbox

CBOE-22 Boot camp hands-on

Linux

  1. Hidden - SOLVED
  2. DIR - SOLVED
  3. Find-me - SOLVED
  4. Inside - SOLVED
  5. Compressed - SOLVED
  6. Unknown file - SOLVED

WEB

  1. User audit - SOLVED
  2. Blog - SOLVED
  3. Ping - SOLVED
  4. Upload - SOLVED
  5. We need oxygen - SOLVED (same as before)
  6. Pump cliker - SOLVED

Varia

  1. Metadata - SOLVED
  2. Range - SOLVED
  3. Scanning 2 - SOLVED
  4. PHPMailer exploit - SOLVED
  5. Shellshock exploit - SOLVED
  6. Pcap extract - SOLVED
  7. FTP exploit - SOLVED

Brute-force

  1. Basic auth brute - SOLVED
  2. Web login brute - SOLVED
  3. Zip brute - SOLVED
  4. SSH brute - SOLVED

CYBER BATTLE OF ESTONIA 2022 - QUALIFICATION

Linux

  1. Automata - SOLVED
  2. Top-Secret - SOLVED
  3. SSH-Harden - SOLVED

WEB

  1. Healt check - SOLVED
  2. The Tree Hills - SOLVED
  3. Hacked - SOLVED
  4. Encoder - SOLVED

Network

  1. DNS Enum - SOLVED
  2. Attack Analysis - SOLVED
  3. Version - SOLVED

Varia

  1. Nexif - SOLVED
  2. Emoji analysis
  3. Password dump - SOVED
  4. Weird message - SOLVED