Flag submission tokens and password-protected configs archives are available on https://register.cbsctf.live/ and in the bot @cbsctf_regbot. Here is also password-protected services dump for self-hosted teams. Password will be released at 11:00 UTC
DON'T FORGET ABOUT ATTACK DATA ON /api/client/attack_data
Here’s an explanation for each service:
Here’s an explanation for each service:
fingers
service: a$$ namegonclub
service: club nameslarket
service: master and slave namesWe will apply patch to fingers/service/Dockerfile to add timeout for single execution. Service will be restarted on your machine.
For self-hosted teams:
Change
To
For self-hosted teams:
Change
CMD ["socat", "TCP-LISTEN:1337,reuseaddr,fork,keepalive", "EXEC:./run.sh"]
To
CMD ["socat", "TCP-LISTEN:1337,reuseaddr,fork,keepalive", "EXEC:timeout 10 ./run.sh"]
`We’ve highlighted the teams with first bloods: saarsec for gonclub and it is wednesday my dudes for fingers
Hint on slarket service is being released in your traffic right now
Infra will be available for 15-20 minutes more, then everything will be stopped & deleted.
Repository with services, their source codes, checkers and exploits is available here: https://github.com/C4T-BuT-S4D/training-27-12-20
Don't forget about feedback form: https://forms.gle/UkEYNrrfpA4CWaVdA
As always here is information for those who want to support us:
We organize our CTFs and trainings on a regular basis. Though our infrastructure is cost-optimized, it is not 0. So we are open for donations if you want to support us.
Paypal: https://www.paypal.me/pomomondreganto
Tinkoff (roubles or if you have a multi wallet card): https://www.tinkoff.ru/sl/3JBSc9Kgiy0
DStream: https://donate.stream/cbsctf
Bitcoin: 1F6XjKjCMvHseScedHyH2xFpLybFGAfgZP
Next training will be in English, we promise!
Don't forget about feedback form: https://forms.gle/UkEYNrrfpA4CWaVdA
As always here is information for those who want to support us:
We organize our CTFs and trainings on a regular basis. Though our infrastructure is cost-optimized, it is not 0. So we are open for donations if you want to support us.
Paypal: https://www.paypal.me/pomomondreganto
Tinkoff (roubles or if you have a multi wallet card): https://www.tinkoff.ru/sl/3JBSc9Kgiy0
DStream: https://donate.stream/cbsctf
Bitcoin: 1F6XjKjCMvHseScedHyH2xFpLybFGAfgZP
Next training will be in English, we promise!
GitHub
GitHub - C4T-BuT-S4D/training-27-12-20: C4T BuT S4D Attack-Defence training
C4T BuT S4D Attack-Defence training. Contribute to C4T-BuT-S4D/training-27-12-20 development by creating an account on GitHub.
Forwarded from STAY ~/ CTF (Daria Loginova)
CBS@CTF:~/$ cd ..Permission denied: stay the fuck home!
CBS@CTF:~/$ dateSun 06 Feb 2022 10:00:00 UTC
CBS@CTF:~/$ cat chats.txt🇷🇺 @cbsctf
🇺🇸 @cbsctf_en
CBS@CTF:~/$ cat announcement.txtTwo years have passed as the world is wearing medical masks. The influx of covid waves will be the envy of any coast, and there are so many strains of the virus that you can assemble a platinum collection of the Greek alphabet. There was some hope for collective immunity a year ago, but so far only collective stupidity has won. Or maybe we can produce a new megavaccine?
CBS@CTF:~/$ cat announcement_ru.txtДва года как мир облачён в медицинские маски. Наплыву ковид-волн позавидует любое побережье, а штаммов вируса стало столько, что из них можно собрать платиновую коллекцию греческого алфавита. Ещё год назад была хоть какая-то надежда на коллективный иммунитет, но пока что побеждает только коллективная тупость. А может… Мы сможем произвести новую сверхвакцину?
Эксперименты с вакцинацией начнём 6 февраля в 13:00 по Москве, а в 21:00 узнаем, кто добьётся наилучшего результата.
CBS@CTF:~/$ cat registration.txt@cbsctf_regbot or register.cbsctf.live
Note that all announcements will be posted to https://t.me/Stay_Home_CTF channel and to discord https://discord.com/invite/GphmB7zJW5. We won't duplicate anything here as there are already too many channels :)