A *massive* thanks to our trainer @_muffinx and our coach Miro (no Twitter) for all your support before and during the competition and making it happen! ❤
I'm happy to present...D-LINKGATE - A Preauth RCE to Root Chain on D-Link DAP-2020 devices found by @_muffinx and me. Patch your devices ASAP (https://t.co/l9gas5eGBC) #CyberSecurity#VulnResearch
This just blows my mind. From a chip encased in silicon, stripping each layer away until you see the ROM and then using 50x magnification you can see the binary 0 and 1s.
@akacastor this is nerd pr0n and a half
Zeek Community CTF by @Zeekurity was really fun!
A splunk instance, CTFd and some nice IR challs, loved it :)
Zeek is a great help with CTF .pcap's #ctf#zeek
I accidentally got an exposed docker service (CTFd) running during #RuCTFe,
I had a good laugh when I saw a few minutes ago someone registered as "Bushwhackers" on my CTFd (maybe the real Bushwhackers?) @RuCTFe Loved the CTF :)
@Tops3cretC Yeah that's normal behavior for the Web-App, can't give you any hints sorry, for questions contact @____SHC____ :)
Keep it up, the beginning of CTF is hard. ^^'
We just published Release #2 featuring the officialy approved X-Forwarded-For HTTP Header Injection and a #pit starter guide for new participants. Get it on https://t.co/R0FrtUhdlL #Evoting#Cybersecurity#Bugbounty
So bounties for solutions to the Birch and Swinnerton-Dyer conjecture, Hodge conjecture, Navier–Stokes existence and smoothness, P versus NP problem, Poincaré conjecture, Riemann hypothesis, and Yang–Mills existence and mass gap are now worth less than an iOS RCE 0day. Yikes.
muffinCTF: Congratulations to our winners!
🥇Mrmaxmeier: 1'021'715 points
🥈explo1t: 896'065 points
🥉sunscan: 877'896 points
Good job guys, you played strategically.
My colleague xorkiwi will contact you for a small prize! :D
And for everyone else, also good job!!! =)