Level: Intermediate
Status: Live
Level: Easy
Status: Live
Level: Intermediate
Status: Live
Level: Intermediate
Status: Live
Level: Intermediate
Status: Live
Level: Hard
Status: Live
Level: Intermediate
Status: Live
Level: Intermediate
Status: Live
Level: Easy
Status: Live
Level: Intermediate
Status: Live
Level: Advanced
Status: Live
Level: Advanced
Status: Live
Level: Advanced
Status: Live
Level: Intermediate
Status: Live
Level: Intermediate
Status: Live
Level: Advanced
Status: Live
Level: Advanced
Status: Live
Level: Intermediate
Status: Coming Soon
If you are facing any issues with the challenges, please follow the instructions below:
Note: For the required environment setup, please use VMware version 17.6.2 or later.
Download VirtualBox File Download Vmware FileAn employee stole the company's confidential data and passed it to an ex-employee of the same company. A suspected laptop is been accessing the company's wifi. These activities are been captured by a wireshark packet file. Analyse these 3 things from the wireshark packet file:
A person has vanished. but we have his X username. Your task is to use OSINT techniques to uncover their true identity and employment history.
Download Challenge FilesAn employee set a password on a ZIP file and forgot it!
Can you open it up and find the flag inside?
📁 You have been provided with an Nmap scan file.
📝 Flag: The report file name should be: CTF{yourname_VAPT_Report}
📄 Format: The final report must be in PDF format and follow standard security reporting format.
Download Nmap Scan File Submit ReportScenario: We found a file from SOC team and we are giving the hash of the file. You need to pass the questions.
556700ac50ffa845e5de853498242ee5abb288eb5b8ae1ae12bfdb5746e3b7b1
📝 Instructions: Answer all questions based on your analysis of the provided hash. Use open-source intelligence and malware analysis resources.
📤 Submission: Submit your answers via Instagram DM.
Scenario: Find the hidden data and prove the system is vulnerable. Clue: the database table is named secret_data. Your task is to get the admin password and the flag.
⚠️ Note: This is a controlled environment. Only exploit the provided target.
Reference: Download the internal document for guidance.
Start Your Challenge Download Internal DocLevel: Advanced
During a security investigation, the Security Operations Center (SOC) collected the SHA-256 hashes of executables observed on a compromised Windows workstation. The files were extracted from process execution logs and endpoint telemetry during the initial triage.
Your task is to determine which artifacts are benign and which are malicious using Open-Source Threat Intelligence (OSINT), malware analysis platforms, and publicly available security resources.
Provide evidence to support every conclusion.
Instructions: Download the question file and hashes.txt, analyze each provided hash using OSINT and malware analysis resources, then classify every artifact as benign or malicious with evidence.
Submission: Submit your report via Instagram DM.
Download Question File Download hashes.txtScenario: A REST API has been deployed with several security vulnerabilities. Your task is to identify and exploit these weaknesses to access protected resources.
Review the API documentation to understand the endpoints and required parameters.
Access API Download API Documentation