Fri, 16 Jan. 2015, 20:30 UTC — Sun, 18 Jan. 2015, 17:30 UTC
On-line
Washington, DC
A Ghost in the Shellcode event.
Format: Jeopardy
Official URL: http://ghostintheshellcode.com/
Event organizers321 teams total
Place | Team | CTF points | Rating points | |
---|---|---|---|---|
1 | Plaid Parliament of Pwning | 5451.000 | 160.000 | |
2 | Samurai | 4751.000 | 109.727 | |
3 | GoN | 4001.000 | 85.386 | |
4 | Tracer Tea | 3701.000 | 74.317 | |
5 | Gallopsled | 3601.000 | 68.849 | |
6 | 0ops | 3601.000 | 66.182 | |
7 | More Smoked Leet Chicken | 3551.000 | 63.544 | |
8 | penthackon | 3351.000 | 59.180 | |
9 | AcaiBerry | 3301.000 | 57.335 | |
10 | Dragon Sector | 3301.000 | 56.446 | |
11 | blue-lotus | 3051.000 | 52.050 | |
12 | BalalaikaCr3w | 2751.000 | 47.041 | |
13 | 0x8F | 2601.000 | 44.327 | |
14 | Shellphish | 2501.000 | 42.419 | |
15 | DatNoobs | 2401.000 | 40.571 | |
16 | KITCTF | 2301.000 | 38.770 | |
17 | Eindbazen | 2201.000 | 37.008 | |
18 | 0x0 | 2101.000 | 35.279 | |
19 | Hardc0de | 2051.000 | 34.311 | |
20 | StratumAuhuur | 1951.000 | 32.633 | |
21 | !SpamAndHex | 1901.000 | 31.709 | |
22 | dcua | 1901.000 | 31.536 | |
23 | binja | 1751.000 | 29.176 | |
24 | 1064CBread | 1651.000 | 27.564 | |
25 | Tasteless | 1651.000 | 27.430 | |
26 | r00tiniers | 1601.000 | 26.574 | |
27 | 0xbadf00d | 1601.000 | 26.460 | |
28 | 0daysober | 1451.000 | 24.152 | |
29 | hxp | 1451.000 | 24.054 | |
30 | OpenToAll | 1401.000 | 23.228 | |
31 | Rdot.org | 1401.000 | 23.142 | |
32 | SkullSpace | 1351.000 | 22.328 | |
33 | int3pids | 1351.000 | 22.252 | |
34 | Tower of Hanoi | 1351.000 | 22.180 | |
35 | Snatch The Root | 1301.000 | 21.379 | |
36 | CLGT | 1301.000 | 21.316 | |
37 | Knightsec | 1251.000 | 20.522 | |
38 | Bitnuts | 1201.000 | 19.731 | |
39 | WE_0WN_Y0U | 1151.000 | 18.944 | |
40 | Bushwhackers | 1100.000 | 18.144 | |
41 | _TMIH_ | 1051.000 | 17.376 | |
42 | dickbutt | 1051.000 | 17.329 | |
43 | NULL Life | 1051.000 | 17.285 | |
44 | dodododo | 1051.000 | 17.243 | |
45 | MMA | 1051.000 | 17.202 | |
46 | D4rKL1ght | 1001.000 | 16.430 | |
47 | FluxFingers | 951.000 | 15.659 | |
48 | "monads" | 901.000 | 14.890 | |
49 | Delusions of Grandeur | 901.000 | 14.856 | |
50 | Guardian | 901.000 | 14.823 | |
51 | SUSlo.PAS | 900.000 | 14.777 | |
52 | Archive | 851.000 | 14.028 | |
53 | khack40 | 851.000 | 13.999 | |
54 | ASIS | 851.000 | 13.971 | |
55 | likeaheron | 850.000 | 13.929 | |
56 | FAUST | 801.000 | 13.184 | |
57 | protocolocon | 800.000 | 13.144 | |
58 | ShellWarp | 751.000 | 12.401 | |
59 | psuje | 701.000 | 11.644 | |
60 | SanityHero | 701.000 | 11.621 | |
61 | TRex | 701.000 | 11.599 | |
62 | Batman's Kitchen | 701.000 | 11.578 | |
63 | XOROR | 701.000 | 11.558 | |
64 | 6kr2yzj | 700.000 | 11.523 | |
65 | Ad Victoriam | 651.000 | 10.785 | |
66 | InSecurity | 651.000 | 10.766 | |
67 | vand | 651.000 | 10.748 | |
68 | squareroots | 650.000 | 10.716 | |
69 | WCSC | 650.000 | 10.699 | |
70 | SiBears | 650.000 | 10.682 | |
71 | Team Action Kaktus | 650.000 | 10.666 | |
72 | w0pr | 601.000 | 9.932 | |
73 | aegis | 551.000 | 9.182 | |
74 | No Internet Access | 551.000 | 9.168 | |
75 | AFiniteNumberOfMonkeys | 551.000 | 9.153 | |
76 | DebugTeam | 501.000 | 8.405 | |
77 | Sigma | 501.000 | 8.392 | |
78 | Hexpresso | 500.000 | 8.364 | |
79 | rocket | 451.000 | 7.632 | |
80 | longlivebufferoverflows | 451.000 | 7.619 | |
81 | Cyber Defense Action League | 451.000 | 7.607 | |
82 | SomeRandomName | 450.000 | 7.580 | |
83 | Fourchette Bombe | 450.000 | 7.568 | |
84 | SIGINT | 450.000 | 7.557 | |
85 | Ru1n3dS3c | 401.000 | 6.826 | |
86 | NYUSEC | 401.000 | 6.815 | |
87 | Bono_iPad | 401.000 | 6.805 | |
88 | 0x1337 | 401.000 | 6.794 | |
89 | CureSecure | 401.000 | 6.784 | |
90 | an empty fridge | 400.000 | 6.759 | |
91 | CSG | 400.000 | 6.750 | |
92 | 6l0ry | 400.000 | 6.740 | |
93 | Death Dragons 666 | 351.000 | 6.012 | |
94 | ECX Inc. | 351.000 | 6.002 | |
95 | [Redacted] | 351.000 | 5.993 | |
96 | mema | 351.000 | 5.985 | |
97 | cyberkastike | 351.000 | 5.976 | |
98 | PiggyBird | 351.000 | 5.968 | |
99 | Lost_in_Security | 351.000 | 5.959 | |
100 | SegFault | 351.000 | 5.951 | |
101 | MhackS | 351.000 | 5.943 | |
102 | f09f92a9 | 351.000 | 5.936 | |
103 | Free The Mallocs | 351.000 | 5.928 | |
104 | Sam Rose | 350.000 | 5.906 | |
105 | herp | 350.000 | 5.899 | |
106 | The Eh Team | 350.000 | 5.891 | |
107 | Honeypot | 350.000 | 5.884 | |
108 | PlayTronics | 350.000 | 5.877 | |
109 | Zerf | 350.000 | 5.871 | |
110 | 1338-offbyone | 350.000 | 5.864 | |
111 | TheEssenceOfClassAndFanciness | 350.000 | 5.857 | |
112 | HackerDom | 350.000 | 5.851 | |
113 | Neg9 | 350.000 | 5.845 | |
114 | Team HeMan | 350.000 | 5.838 | |
115 | t0x0sh | 350.000 | 5.832 | |
116 | TiranoKing | 301.000 | 5.107 | |
117 | TuinfeesT | 301.000 | 5.101 | |
118 | Robot Mafia | 301.000 | 5.096 | |
119 | Tr0janH0rse | 300.000 | 5.075 | |
120 | Hackgyver | 300.000 | 5.070 | |
121 | Shadow Cats | 300.000 | 5.064 | |
122 | 217 | 300.000 | 5.059 | |
123 | swehack | 300.000 | 5.053 | |
124 | Whitehatters Academy | 251.000 | 4.329 | |
125 | DarthBinks | 250.000 | 4.309 | |
126 | Parasites | 201.000 | 3.585 | |
127 | .elite | 201.000 | 3.580 | |
128 | atx | 201.000 | 3.575 | |
129 | newheart | 201.000 | 3.570 | |
130 | b01lers | 201.000 | 3.565 | |
131 | vp | 201.000 | 3.561 | |
132 | Bottom of the Bottle | 201.000 | 3.556 | |
133 | r3b00+ | 201.000 | 3.551 | |
134 | IngloriousMonkeys | 201.000 | 3.547 | |
135 | wight | 201.000 | 3.543 | |
136 | tostos | 201.000 | 3.538 | |
137 | CALT | 201.000 | 3.534 | |
138 | 1up | 201.000 | 3.530 | |
139 | SweCopyFloppy | 201.000 | 3.525 | |
140 | Hopjesvla | 201.000 | 3.521 | |
141 | gooligans | 201.000 | 3.517 | |
142 | Pwnlandia | 201.000 | 3.513 | |
143 | hexmen | 201.000 | 3.509 | |
144 | Bits For Everyone | 201.000 | 3.505 | |
145 | p03p0wn | 201.000 | 3.502 | |
146 | Shell Shocked | 201.000 | 3.498 | |
147 | PoopLosers | 201.000 | 3.494 | |
148 | nationalswagagency | 201.000 | 3.490 | |
149 | FiveDegrees | 201.000 | 3.487 | |
150 | blah | 201.000 | 3.483 | |
151 | overflowsec | 201.000 | 3.480 | |
152 | sherl0ck | 201.000 | 3.476 | |
153 | PLUS | 201.000 | 3.473 | |
154 | vulnhub-ctf | 201.000 | 3.469 | |
155 | Singularity | 200.000 | 3.451 | |
156 | Don't tell my boss I'm not working. | 200.000 | 3.448 | |
157 | IcePiratesv6 | 200.000 | 3.445 | |
158 | amn3s1a | 200.000 | 3.442 | |
159 | BioHazard | 200.000 | 3.438 | |
160 | 9447 | 200.000 | 3.435 | |
161 | UFSIT | 200.000 | 3.432 | |
162 | hippos | 200.000 | 3.429 | |
163 | bkitsec | 200.000 | 3.426 | |
164 | Without Proper Instructions | 200.000 | 3.423 | |
165 | Hacking Alpacas | 200.000 | 3.420 | |
166 | Exceptional Handlers | 200.000 | 3.417 | |
167 | Catbug | 200.000 | 3.414 | |
168 | SpaCeTiMe | 200.000 | 3.411 | |
169 | rut | 200.000 | 3.409 | |
170 | Duvel | 200.000 | 3.406 | |
171 | chmod777 | 200.000 | 3.403 | |
172 | n00h0u53n00bs | 200.000 | 3.400 | |
173 | TP | 200.000 | 3.398 | |
174 | lcmafia | 200.000 | 3.395 | |
175 | LosAmigos | 200.000 | 3.392 | |
176 | ufologists | 200.000 | 3.390 | |
177 | rentjong | 151.000 | 2.668 | |
178 | wolfden | 151.000 | 2.666 | |
179 | d4rwinb0ts | 151.000 | 2.663 | |
180 | teamkoroch | 151.000 | 2.661 | |
181 | UOSec | 151.000 | 2.658 | |
182 | TwoSixNine | 151.000 | 2.656 | |
183 | vuls | 150.000 | 2.639 | |
184 | breakallthethings | 150.000 | 2.636 | |
185 | Hackademics | 150.000 | 2.634 | |
186 | int 0x80 | 150.000 | 2.632 | |
187 | Cl0ud Sh3llz | 150.000 | 2.629 | |
188 | 4t2 | 101.000 | 1.908 | |
189 | NULLify | 101.000 | 1.906 | |
190 | stoog3s | 101.000 | 1.903 | |
191 | Epic Leet Team | 101.000 | 1.901 | |
192 | Zenk-Security | 100.000 | 1.884 | |
193 | alone4ever | 100.000 | 1.882 | |
194 | YetAnotherTeam | 100.000 | 1.880 | |
195 | AutoBits | 1.000 | 0.425 | |
196 | Church of 0x41414141 | 1.000 | 0.423 | |
197 | soma | 1.000 | 0.421 | |
198 | n0l3ptr | 1.000 | 0.419 | |
199 | chocateam | 1.000 | 0.417 | |
200 | Cutie Mark Crusaders | 1.000 | 0.415 | |
201 | Mad Hatters | 1.000 | 0.413 | |
202 | zzzzzzzz | 1.000 | 0.411 | |
203 | bl4de | 1.000 | 0.409 | |
204 | Bulletproof Whitehats | 1.000 | 0.407 | |
205 | CISSP Groupies | 1.000 | 0.405 | |
206 | DoWhile(Drunk) | 1.000 | 0.403 | |
207 | CTF | 1.000 | 0.401 | |
208 | AuPhishYellow | 1.000 | 0.399 | |
209 | hu3BR | 1.000 | 0.397 | |
210 | Nanerpwn | 1.000 | 0.396 | |
211 | Kuhntz | 1.000 | 0.394 | |
212 | jmp-esp | 1.000 | 0.392 | |
213 | captchaflag | 1.000 | 0.390 | |
214 | loltn | 1.000 | 0.389 | |
215 | hj | 1.000 | 0.387 | |
216 | Crimson Agents | 1.000 | 0.385 | |
217 | Molecule | 1.000 | 0.383 | |
218 | StuyStealth | 1.000 | 0.382 | |
219 | s111 | 1.000 | 0.380 | |
220 | LaDosaNostra | 1.000 | 0.378 | |
221 | bim | 1.000 | 0.377 | |
222 | Caspian | 1.000 | 0.375 | |
223 | docwho | 1.000 | 0.373 | |
224 | The Feds | 1.000 | 0.372 | |
225 | Aurelius | 1.000 | 0.370 | |
226 | odexcide | 1.000 | 0.369 | |
227 | omg1337hax | 1.000 | 0.367 | |
228 | blackhathacker | 1.000 | 0.366 | |
229 | kkmining | 1.000 | 0.364 | |
230 | bucsec | 1.000 | 0.363 | |
231 | soooooooooooooooooooolo | 1.000 | 0.361 | |
232 | Peak Chaos | 1.000 | 0.360 | |
233 | lethal | 1.000 | 0.358 | |
234 | #bb0000#666666 | 1.000 | 0.357 | |
235 | Checkers | 1.000 | 0.355 | |
236 | glorb_and_a_gloob | 1.000 | 0.354 | |
237 | cd80 | 1.000 | 0.352 | |
238 | Gaurdian | 1.000 | 0.351 | |
239 | Ryan | 1.000 | 0.349 | |
240 | PolyHack | 1.000 | 0.348 | |
241 | Eaters | 1.000 | 0.347 | |
242 | Gunn High School | 1.000 | 0.345 | |
243 | ddaa | 1.000 | 0.344 | |
244 | KU_ST4R | 1.000 | 0.343 | |
245 | RaisedOnRadi0 | 1.000 | 0.341 | |
246 | Puppycat | 1.000 | 0.340 | |
247 | sehek | 1.000 | 0.339 | |
248 | DC21321 | 1.000 | 0.337 | |
249 | okudo3 | 1.000 | 0.336 | |
250 | 0x41 | 1.000 | 0.335 | |
251 | 0x20 | 1.000 | 0.333 | |
252 | Buffer@MyLan0 | 1.000 | 0.332 | |
253 | Hypnosec | 1.000 | 0.331 | |
254 | herpderp | 1.000 | 0.330 | |
255 | hf_c500 | 1.000 | 0.328 | |
256 | Demon | 1.000 | 0.327 | |
257 | ICEWALL_ | 1.000 | 0.326 | |
258 | Altafen | 1.000 | 0.325 | |
259 | help wanted | 1.000 | 0.324 | |
260 | failedxyz | 1.000 | 0.322 | |
261 | GDDQTHJ | 1.000 | 0.321 | |
262 | XVHHV | 1.000 | 0.320 | |
263 | mau5 | 1.000 | 0.319 | |
264 | DayZeroSouthAlabama | 1.000 | 0.318 | |
265 | weep | 1.000 | 0.317 | |
266 | rand0ml0l2 | 1.000 | 0.315 | |
267 | Supicious Low | 1.000 | 0.314 | |
268 | Waffles210 | 1.000 | 0.313 | |
269 | KevinKien | 1.000 | 0.312 | |
270 | billybillybilly | 1.000 | 0.311 | |
271 | #320/301 | 1.000 | 0.310 | |
272 | STRIA | 1.000 | 0.309 | |
273 | L1ght4Freedom | 1.000 | 0.308 | |
274 | Commando Rando | 1.000 | 0.307 | |
275 | dbo | 1.000 | 0.306 | |
276 | BCS | 1.000 | 0.305 | |
277 | nucleus | 1.000 | 0.303 | |
278 | blah001 | 1.000 | 0.302 | |
279 | 3hellcod3 | 1.000 | 0.301 | |
280 | OnePointPlz | 1.000 | 0.300 | |
281 | blackhat | 1.000 | 0.299 | |
282 | halopompoeuropah | 1.000 | 0.298 | |
283 | LosFuzzys | 1.000 | 0.297 | |
284 | OPT | 1.000 | 0.296 | |
285 | ghostbuster | 1.000 | 0.295 | |
286 | amb42 | 1.000 | 0.294 | |
287 | jhisthebest | 1.000 | 0.293 | |
288 | RaZy | 1.000 | 0.292 | |
289 | RuPyless | 1.000 | 0.291 | |
290 | m1z0r3 | 1.000 | 0.291 | |
291 | Team-B | 1.000 | 0.290 | |
292 | SSG | 1.000 | 0.289 | |
293 | 0n30f0ur | 1.000 | 0.288 | |
294 | HappyFunBall | 1.000 | 0.287 | |
295 | 20CF | 1.000 | 0.286 | |
296 | Wifi | 1.000 | 0.285 | |
297 | Chacyama | 1.000 | 0.284 | |
298 | Dystopian Narwhals | 1.000 | 0.283 | |
299 | _|__ | 1.000 | 0.282 | |
300 | ReSecurity Team | 1.000 | 0.281 | |
301 | BlackVelt | 1.000 | 0.280 | |
302 | 0b1337 | 1.000 | 0.280 | |
303 | WhiteHatCP | 1.000 | 0.279 | |
304 | splarcit | 1.000 | 0.278 | |
305 | bob | 1.000 | 0.277 | |
306 | Spider Pigs | 1.000 | 0.276 | |
307 | ShuHackSoc | 1.000 | 0.275 | |
308 | Oxwas941 | 1.000 | 0.274 | |
309 | aether | 1.000 | 0.274 | |
310 | TheKillingTime | 1.000 | 0.273 | |
311 | SINE | 1.000 | 0.272 | |
312 | #1teaminmyhouse | 1.000 | 0.271 | |
313 | sudo !! | 1.000 | 0.270 | |
314 | tuat_mcc | 1.000 | 0.269 | |
315 | konar | 1.000 | 0.269 | |
316 | yedekbula | 1.000 | 0.268 | |
317 | 1TH3H4YST4CK | 1.000 | 0.267 | |
318 | NIS | 1.000 | 0.266 | |
319 | RuTSRz6s | 1.000 | 0.265 | |
320 | hakad | 1.000 | 0.265 | |
321 | Yamagi.com | 1.000 | 0.132 |
The game may be a great attraction, but most other categories seem to have suffered a lot from this. Two crypto tasks were just bullshit ("guess my algorithm"), the others very well-known standard vulnerabilities with straightforward solutions — plain boring. Web was more like WTF. "Forensics" was partially entertaining, but had mostly nothing to do with forensics. This CTF does not deserve a rating that high.
+1
Usually gits is cool CTF, but unfortunately this time it sucked. Half of the contest was pwnadventure game, which didn't work for half of contestants.
The normal tasks were poorly designed and were closed most of the time. I'd give not more than 40 pts.
^this; the CTF was very centered around the game and it felt like the other categories suffered allot compared to the last years. This would be fine if the sole intention of the CTF would be "game hacking", but then the ration is to high.
scoreboard: https://gist.github.com/suspendrs/2c07fbf8e82ebcfe0e8f
Daniel: those scores aren't official yet, we'll post official ones soon and update ctftime as well.
We're sorry folks had trouble with the game this year -- unfortunately unreal engine had a number of bugs that we weren't able to find in our testing that bit a number of folks. Our original plan was to have a demo that would have allowed earlier testing, but it turns out making a game of that scope is hard!
NO: Which crypto challenges are you referring to? vig128 was definitely broken and I'm sorry for not catching that in testing. Which other one were you referring to?
I found this to be a great CTF. There were no real problems with the game (except those we created for ourselves)... I devoted most of my time to the game (that was quite fun) - I'd love to see more game hacking in CTFs!
Web was a classic web scenario. Forensics was extremely classic forensics. A quarter of the CTF was the game, which required some level of preparedness to deal with anything/things you aren't familiar with. I think if you're not ready to deal with new/obscure technologies, CTF is not going to be a fun time.
This CTF deserves the higher score because the skill level barrier to entry is so much higher than others.
Jordan, mtgo crypto idea was obvious, vig128 too, but it was broken. Knockers was absolutely standard and obvious, Nikoli was guessing game with non-standard implementation of hill cipher.
I'd not call these tasks good crypto tasks, the points were disbalanced (for example, pwn was not that simple, but solving it instead of the game quests did not gave advantage. Also forensic200 was simple), and many some challenges were closed most of the time (some did not open at all).
Ditmar, Web was very simple, for me it took only 10 minutes to solve. And game was not quarter of contest, it was more. There was no skill level barrier, there were just not very well prepared tasks. New technologies are OK, but CTF contests have some traditions and standards, it is not usual CTF when the whole contest is centered around one quest.
Anyway, of course it was not the worst CTF, and there was a cool pwnadventure which required a huge work to develop. Just saying that it was worse than previous GitS contests. Hope to see more diverse and interesting tasks next time. Good luck!
The game hacking was definitely new for me and I enjoyed it quite a lot. It was difficult to see what code was run on the server and what on the client, but that was all part of the challenge. I dare say this was one of the best CTFs I've played in a while.
Well, I only did part of the Pwnadventure game and it was really awesome! I heard from teammates that the pwnables were really good too, can't comment much on the other categories...
As for the game issues, it's a shame that many people couldn't play and enjoy the challenges, I'm sure you guys put up a lot of effort in it and it was really great!
Rating 80 is too much for this year. Many fails (with tasks) and problems (with game). @BECHED described these things above in right way.