Saturday, September 8. 2007HITBSecConf2007 Capture the Flag Game Considered FunTrackbacks
Trackback specific URI for this entry
No Trackbacks
Comments
Display comments as
(Linear | Threaded)
There is something wrong~^^
The Powerhacker is not include the Padocon. The Powerhacker is Other team that not Padocon...^^ One of Powerhacker is good friend so I don't want that give some confuse~^^ Powerhacker is good team that has good skill^^ Have a good day~^^
hey man,
sorry for the confusion. i did not know that powerhacker was not part of padocon. the blog post had been fixed.
Thanks~ for the fast modify~^^
Well~ It may be that we don't have introduce time...^^ Next year, may be can get a time to introduce~^^ sorry for my english is not good...TT
thanks spoonfork.. :)~~~
next year hitb party can invite myband to perform
Well, at least M'sia still had two teams (nevertheless struggling) and holding their breaths. DTF07 was a rehashed from Duo of two years and Stealther was there also two/three years back.
You cannot compare the m0s time-of-fame period, as the rule of the game that time was merely to see ... who can hit the ENTER key the fastest If our teams shd shine, less buggers shd hit the Gamer's stand and learn to write 'sploits. And come back next year. Any M'sian team that comes in at least 3rd, I'll buy you a teh tarik (or if you're on the other side of the fence, I'll ask me friend to buy you a beer)!
no, we do have skillful hackers - it is just that there's too much reputation at stake in the CTF, thus rather than 'suffering the humiliation of getting 2nd place', they rather not join
oh come on! MY can surely do better than that; if u dun suffer humiliation, u'll never know where u go man!
as a matter of fact, u'll notice that Stealther actually cracked 2 bins, and was on the way to wreaking more havoc. They're probably slo.....wer than the rest (of the first 4; dun count the yankees as they're only good in defending; yeah, they and their STARWARS programme! But Stealther's definitely getting there. Probably their skillz would be more up-to par with Koreans next year. Hopefully. if u notice both teams Duo and Stealther had a change of some folks over the years. Stealther used to have a "babe" on board (checkout previous years photos). Wonder where she retired to?? M'sia BOLEH! Who say tak boleh? I'll ask my bros to come down to the hotel and ketuk them teruk-teruk next year. Anyway, it is good that they know how to use honeypot, very good tactic and strategy. And if you talk about cracking skill, may be they have but still not on par with other Asian countries.
By the way, I agree that if you dont suffer humiliation, you will never know good are you.
how do you capture all traffic on the network if you're connected to the switch?
Well then, Stealther is smart/cerdik then! There's no real rulez in the real world (and there are also no rulez that specifically state that you CANNOT capture traffic from the LAN; which obviously is the loophole and kenshoto guys have already found this out many moons ago
Look at this then judge for yourself. Yes, we don't have any rules against MITM, or social engineering for that matter, but we keep tabs on all activities during the game, and a tthe end of the day, each team was asked to submit their writeups for bonus points. If they can capture a flag but unable to explain how they get it, well, its in the score.
http://ctf2007.security.org.my/bonus.html
Dude, how much do you know about switch???
Dont you know you can capture traffic in switch arr.. Just that it is not straight forward as hub only.. Add Comment
Before you post a comment, please take note of the following guidelines:
Comment policy copied and modified from Spin Hunters. |
DISCLAIMERAll data and information provided on this site is for informational purposes and on an *as-is* basis.
This weblog does not represent the thoughts, intentions, plans or strategies of our employers. It is solely our opinion and views as security professionals. Feel free to challenge us, disagree with us, or even tell us that we are a complete mindless and brainless monkeys in the comment section of the blog entry. Report Defacements of Malaysian WebsiteTagswatchlist gcert worm exploit strong password harimau outbreak how to create password cybersecurity malaysia virus dubai myhack niser security analysis apple hitbsecconf2008 kuala lumpur pink rabbit vnsecurity leopard downadup password python edu.my conficker hitbsecconf2008 cimb phishing hackinthebox comment spam ctf mycert bank wireless lubuntu network analysis hacked hitbsecconf2008 dubai conference xss personal data privacy honeynet my-honeynet cyber terrorism scam general os x cuciotak scamming hex phishing site spam news information disclosure maybank2u hacking maybank phishing impact bro-ids sql injection malware events nsm alien_005 tools stupidity hackermalaysia defaced hitbsecconf joomla! hitb web vulnerability malaysia defacement
Recent EntriesDefaced - http://www.webschool.com.my
February 8 2010 Defaced - http://cic.jobsmalaysia.gov.my February 8 2010 Defaced - http://cuil.com.my February 8 2010 Defaced - http://www.photodelivery.com.my/cart/ February 8 2010 Defaced - http://webapp.uthm.edu.my February 8 2010 Defaced - http://www.afm.org.my February 5 2010 Hacked - http://www.crsm.org.my February 4 2010 Defaced - belianiaga.com February 3 2010 Defaced - teddymarry.com February 3 2010 Mass defacement on BaitulBytes Hosting February 3 2010 ArchivesCreative Commons |