We’ll force restart collacode on all machines in 5 minutes. To avoid that, remove authorized keys of user ubuntu from your vulnbox.
You can fix MUMBLE error on 7kek service by disabling throttling. It can be done by removing line 41 in app/Http/Kernel.php
Checker for 7kek was updated a few rounds ago, it was a bugfix
to fix collacode, run this command:
sudo docker-compose -f /tasks/collacode/docker-compose.yml restart
Bug with team history is fixed for all new rounds. Sorry, it can’t be fixed for past rounds too :(
Captcha in task
ktforces
does not freeze your browser, you have to wait for it to finish (sometimes more than a minute)All tasks are solved! First bloods:
1. Popugi firstblooded collacode and the whole game!
2. Definitely not kks firstblooded tiktak!
3. saarsec firstblooded ktforces, leaving no services unpwned!
4. ZenHack firstblooded 7kek!
1. Popugi firstblooded collacode and the whole game!
2. Definitely not kks firstblooded tiktak!
3. saarsec firstblooded ktforces, leaving no services unpwned!
4. ZenHack firstblooded 7kek!
Forwarded from Roman Nikitin
The game is still on until 17:00 UTC (another hour and 15 minutes), and there’re multiple vulnerabilities left. Keep looking :)
You’ll have 30 minutes to extract all needed info from vulnboxes and then we’ll stop everything
Thank you all for the game!
Congratulations to top-3 teams:
1) saarsec
2) Bulba Hackers
3) Popugi
We will be glad if you fill out the short feedback form: https://forms.gle/G61Xiv4a8oBUMWZw7
Repository with services, checkers and sploits are available here: https://github.com/C4T-BuT-S4D/training-02-02-2020
We’re not sponsored, and each competition costs us ~$2 per vulnbox, so we are open for donations to make our next trainings even better.
Tinkoff (if you have multi wallet card): https://www.tinkoff.ru/sl/7q2AUexyM0s
Bitcoin: 1F6XjKjCMvHseScedHyH2xFpLybFGAfgZP
Paypal: https://www.paypal.me/pomomondreganto
Stay tuned. This training is not last this year.
Congratulations to top-3 teams:
1) saarsec
2) Bulba Hackers
3) Popugi
We will be glad if you fill out the short feedback form: https://forms.gle/G61Xiv4a8oBUMWZw7
Repository with services, checkers and sploits are available here: https://github.com/C4T-BuT-S4D/training-02-02-2020
We’re not sponsored, and each competition costs us ~$2 per vulnbox, so we are open for donations to make our next trainings even better.
Tinkoff (if you have multi wallet card): https://www.tinkoff.ru/sl/7q2AUexyM0s
Bitcoin: 1F6XjKjCMvHseScedHyH2xFpLybFGAfgZP
Paypal: https://www.paypal.me/pomomondreganto
Stay tuned. This training is not last this year.
Google Docs
Feedback
RundergroundCTF #1 feedback
A&D trainings (channel) pinned «Thank you all for the game! Congratulations to top-3 teams: 1) saarsec 2) Bulba Hackers 3) Popugi We will be glad if you fill out the short feedback form: https://forms.gle/G61Xiv4a8oBUMWZw7 Repository with services, checkers and sploits are available here:…»