Difference between revisions of "EuphoriaCTF"

From ToorCamp Wiki
Jump to navigation Jump to search
m (revert to old image since new one is does not exist)
 
(8 intermediate revisions by 2 users not shown)
Line 1: Line 1:
[[File:Olmstead.png|400px|thumb|right|EuphoriaCTF 2024]]
+
[[File:EuphoriaCTF.png|400px|thumb|right|EuphoriaCTF 2024]]
  
Welcome to the 2024 Edition of the Euphoria CTF! [[Beerocracy]], [[ShadyTel]], JSON & Bliss, and [https://fuzzing.io Fuzzing IO] have been working hard to bring you a new unique experience this year unlike any other. Extra special credit to JSON & Bliss for the amazing contribution of the multimedia elements in the challenges!
+
Welcome to the 2024 Edition of the Euphoria CTF! [[Beerocracy]], [[Shadytel]], JSON & Bliss, and [https://fuzzing.io Fuzzing IO] have been working hard to bring you a new unique experience this year unlike any other. Extra special credit to JSON & Bliss for the amazing contribution of the multimedia elements in the challenges!
  
 
== How to Play ==
 
== How to Play ==
 
This year there are three short CTF tracks focusing on different domains of security expertise. The tracks are independent and will have a prize for the first person or team to solve a track. There are also interactions across tracks. You must complete the ShadyBank challenge to fully complete the Olmstead Challenge. You will encounter web, cryptography, rf, and remote memory corruption if you participate in all tracks.  
 
This year there are three short CTF tracks focusing on different domains of security expertise. The tracks are independent and will have a prize for the first person or team to solve a track. There are also interactions across tracks. You must complete the ShadyBank challenge to fully complete the Olmstead Challenge. You will encounter web, cryptography, rf, and remote memory corruption if you participate in all tracks.  
  
This year there are three short CTF tracks focusing on different domains of security expertise. You will encounter web, cryptography, rf, and remote memory corruption if you participate in all tracks. The first person/team to complete each of the tracks will receive a prize!
+
=== The ShadyBank Challenge/Response ===
  
=== The ShadyBank Challenge/Response ===
 
 
Go to ShadyTel Experience Center to register your Shady Tag.  
 
Go to ShadyTel Experience Center to register your Shady Tag.  
  
 
The first challenge is on the badge.
 
The first challenge is on the badge.
 +
 
Don't give up, don't let me down.  
 
Don't give up, don't let me down.  
 +
 
Don't tell me you're too blind to see
 
Don't tell me you're too blind to see
 +
 
Inside, we both know what's been going on
 
Inside, we both know what's been going on
 +
 
We know the game and we're gonna play it!
 
We know the game and we're gonna play it!
  
Line 20: Line 23:
  
 
There must be something in the air,
 
There must be something in the air,
 +
 
the tale of Roy and Elsie Olmstead
 
the tale of Roy and Elsie Olmstead
 +
 
is on everyone's lips. Murmurs of an
 
is on everyone's lips. Murmurs of an
 +
 
illicit moonshine operation in this era
 
illicit moonshine operation in this era
 +
 
of prohibition. You can hear it if you  
 
of prohibition. You can hear it if you  
 +
 
listen closely and open your eyes!
 
listen closely and open your eyes!
 +
 +
 +
Audio:
 +
 +
http://undercurrents.io/euphoria/auntie-vivian-radio-broadcast.aif
 +
 +
http://undercurrents.io/euphoria/fascinatin-rhythm.aif
 +
 +
http://undercurrents.io/euphoria/numbers-station.aif
 +
 +
 +
Video:
 +
 +
http://undercurrents.io/euphoria/olmsead-video-part1.mp4 (not encrypted)
 +
 +
http://undercurrents.io/euphoria/olmsead-video-part1.mp4 (encrypted)
 +
 +
  
 
=== The Unbroken Pwnable ===
 
=== The Unbroken Pwnable ===
  
 
Unbeaten last Toorcamp, this track only  
 
Unbeaten last Toorcamp, this track only  
 +
 
has a single exploit challenge you can  
 
has a single exploit challenge you can  
 +
 
download it from the wiki and to submit  
 
download it from the wiki and to submit  
 +
 
a solution, email richinseattle@gmail.com  
 
a solution, email richinseattle@gmail.com  
 +
 
with a tarball containing a Dockerfile to  
 
with a tarball containing a Dockerfile to  
 +
 
repro your solution
 
repro your solution
 +
 +
- http://undercurrents.io/euphoria/sshd5
 +
 +
=== The Robot ===
 +
 +
Will the robot come alive? I think so. Come talk with it and see if you can extract the key.
 +
  
 
== FAQ ==  
 
== FAQ ==  

Latest revision as of 09:17, 18 July 2024

EuphoriaCTF 2024

Welcome to the 2024 Edition of the Euphoria CTF! Beerocracy, Shadytel, JSON & Bliss, and Fuzzing IO have been working hard to bring you a new unique experience this year unlike any other. Extra special credit to JSON & Bliss for the amazing contribution of the multimedia elements in the challenges!

How to Play

This year there are three short CTF tracks focusing on different domains of security expertise. The tracks are independent and will have a prize for the first person or team to solve a track. There are also interactions across tracks. You must complete the ShadyBank challenge to fully complete the Olmstead Challenge. You will encounter web, cryptography, rf, and remote memory corruption if you participate in all tracks.

The ShadyBank Challenge/Response

Go to ShadyTel Experience Center to register your Shady Tag.

The first challenge is on the badge.

Don't give up, don't let me down.

Don't tell me you're too blind to see

Inside, we both know what's been going on

We know the game and we're gonna play it!

The Olmstead Broadcasts Challenge Set

There must be something in the air,

the tale of Roy and Elsie Olmstead

is on everyone's lips. Murmurs of an

illicit moonshine operation in this era

of prohibition. You can hear it if you

listen closely and open your eyes!


Audio:

http://undercurrents.io/euphoria/auntie-vivian-radio-broadcast.aif

http://undercurrents.io/euphoria/fascinatin-rhythm.aif

http://undercurrents.io/euphoria/numbers-station.aif


Video:

http://undercurrents.io/euphoria/olmsead-video-part1.mp4 (not encrypted)

http://undercurrents.io/euphoria/olmsead-video-part1.mp4 (encrypted)


The Unbroken Pwnable

Unbeaten last Toorcamp, this track only

has a single exploit challenge you can

download it from the wiki and to submit

a solution, email richinseattle@gmail.com

with a tarball containing a Dockerfile to

repro your solution

- http://undercurrents.io/euphoria/sshd5

The Robot

Will the robot come alive? I think so. Come talk with it and see if you can extract the key.


FAQ

Who can participate?

Any ToorCamp attendee is eligible to participate. The game will be restricted to onsite attendees only. The game has been designed to allow entry level players to make some progress and enjoy the game while more advanced players will eventually find higher difficulty challenge in the pwnable track.

How do I participate?

The competition will begin Thurs, Jun 26 12:00 PM and end Sat, Jun 27 5:00 PM. Challenges will result in acquiring a set of keys, there will be a website to submit keys that you discover as you play the game. Winners will be announced and prizes awarded in the Prime Dome before closing remarks on Saturday. The game will stay live until Sunday morning for people still wishing to solve challenges for fun.