CSAW Quals CTF 2021


CTF Archive.

CSAW CTF Qualification Round 2021

CSAW CTF is one of the oldest and biggest CTFs with 1216 teams with 1+ points in 2020. Designed as an entry-level, jeopardy-style CTF, this competition is for students who are trying to break into the field of security, as well as for advanced students and industry professionals who want to practice their skills.

Our competition occurs over two rounds: a Qualifying Round in September and a Final Round in November. Both rounds will be online this year.


Original Date: Fri, 10 Sept. 2021, 20:00 UTC — Sun, 12 Sept. 2021, 20:00 UTC
Original URL: http://ctf.csaw.io/
CTFtime entry: CSAW CTF Qualification Round 2021
Organizing Team: CSAW CTF Organizers


Challenges

Charlie forgot his password to login into his Office portal. Help him to find it. (This challenge was written for the person on your team who has never solved a binary exploitation challenge before! Welcome to pwning.)

Please use the patched version to get the pwn.college{flag}


Author: CSAW CTF Team

Brush off your Flirbgarple textbooks!


Author: CSAW CTF Team

Felicity and Cisco would like to hire you as an intern for a new security company that they are forming. They have given you a black box signature verification system to test out and see if you can forge a signature. Forge it and you will get a passphrase to be hired!


Author: CSAW CTF Organizers

:) Someone at a company was supposedly using an unsecured communication channel. A dump of company communications was created to find any sensitive info leaks. See if you can find anything suspicious or concerning.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: Andrew Prajogi

A hacker named Blue_Blur was recently arrested and is accused of hiding some evidence. The evidence was reported to have been hidden in the hacker's OC Sonic comic. See if you can find any hidden files. Reportedly, it was a 'video' of some sort. On the other hand, the comics are pretty good. Enjoy! :)

Credit goes to Deebs/Fini-mun for the artwork of the comics.

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: Andrew Prajogi

"Veronica sent a message to her client via their website's Contact Us page. Can you find the message?

Use flagCheck to input the flag you get from the challenge to get the actual flag


Author: moat, Pacific Northwest National Laboratory


30-Day Scoreboard:

This scoreboard reflects solves for challenges in this module after the module launched in this dojo.

Rank Hacker Badges Score