A&D trainings (channel)
373 subscribers
13 photos
2 files
31 links
A&D trainings by C4T BuT S4D (channel)
Download Telegram
Network is opened. Now you should be able to access vulnboxes of other teams.
Game is starting any minute! Good luck and have fun :)
MUMBLE on collacode service means you’re under attack
If you have an error “Skipped GET, previous action failed”, it means you get MUMBLE while trying to get flag from one of previous rounds.
Various timeouts for ktforces service are ok, service is highly loading the checksystem and we expect ~90-95% SLA
It might be a good idea to clean collacode service old data due to its popularity among attackers
Service authors (you can question them in DM):

1. collacode: @pomo_mondreganto + @kekov
2. tiktak: @jnovikov
3. ktforces: @kekov + @pomo_mondreganto
4. 7kek: @alagunto
If your collacode service is down, try restarting both backend and redis (or just `docker-compose restart`). For a more permanent fix, think about closing redis connections when finished.
We’ll force restart collacode on all machines in 5 minutes. To avoid that, remove authorized keys of user ubuntu from your vulnbox.
You can fix MUMBLE error on 7kek service by disabling throttling. It can be done by removing line 41 in app/Http/Kernel.php
Checker for 7kek was updated a few rounds ago, it was a bugfix
We restarted collacode and look at the result :)
to fix collacode, run this command: sudo docker-compose -f /tasks/collacode/docker-compose.yml restart
Bug with team history is fixed for all new rounds. Sorry, it can’t be fixed for past rounds too :(
Captcha in task ktforces does not freeze your browser, you have to wait for it to finish (sometimes more than a minute)
When you encounter ktforces service
Contratulations to saarsec for the ktforces first blood!
All tasks are solved! First bloods:

1. Popugi firstblooded collacode and the whole game!
2. Definitely not kks firstblooded tiktak!
3. saarsec firstblooded ktforces, leaving no services unpwned!
4. ZenHack firstblooded 7kek!
Forwarded from Roman Nikitin
The game is still on until 17:00 UTC (another hour and 15 minutes), and there’re multiple vulnerabilities left. Keep looking :)