CTF Resources


Stay tuned for more resources from the past and present as we find them. We're still gathering...

History


A brief history of the Capture the Flag contest by DDTek's vulc@n.

Organizers


Legitimate Business Syndicate: 2013
DDTek: 2009 - 2012
Kenshoto: 2005 - 2008
Ghetto Hackers: 2002 - 2004

Resources


Caezar's (Ghetto Hackers) presentation from Black Hat Japan on CTF Games: Slides | Audio

CTF Explained - Youtube Video: http://www.youtube.com/watch?v=9PNBeTtf8pQ

Archive of 2006 to 2009 DEF CON CTF and CTF Quals: http://nopsr.us/

Getting the Most Out of Capture the Flag at DEF CON 17: https://media.defcon.org/dc-17/video/DEFCON 17 Hacking Conference Presentation By Psifertex - Maximum CTF Getting the most out of Capture the Flag - Video and Slides.m4v

CTF Data Collections


DEF CON 21

Scorebot SQL Dump http://blog.legitbs.net/2013/08/2013-finals-scorebot-sql-download.html

DEF CON 20

Collection of files related to the Capture the Flag contest at DEF CON 20: Torrent

DEF CON 19

Collection of files related to the Capture the Flag contest at DEF CON 19: Torrent

DEF CON 18

Collection of files related to the Capture the Flag contest at DEF CON 18: Torrent

DEF CON 17

Collection of files related to the Capture the Flag contest at DEF CON 17: Torrent

This page is devoted to collecting accounts, walk throughs and other resources of Capture the Flag at DEF CON over the years, not only for history's sake but so the uninformed can better grasp the epic journey that teams must face on the road to CTF victory!

If you know of a resource that should be included on this page, feel free to pass it along to neil ]at[ defcon [dot] org.

DEF CON 21 Capture the Flag Pcaps, Binaries and Tools

Binaries and Tools: Torrent

Friday Packet Captures: Torrent
Saturday Packet Captures: Coming Soon!
Sunday Packet Captures: Coming Soon!

DEF CON 21 Capture the Flag Write-ups

LegitBS Blog - Final Writeup:
http://blog.legitbs.net/2013/08/final-writeup.html

LegitBS Blog - Public Handout:
http://blog.legitbs.net/2013/08/finals-2013-public-handout.html

Routards Team Blog - Defcon 21 CTF:
http://www.routards.org/2013/08/defcon-21-ctf.html

Routards Team Blog - Defcon 21 CTF - Binaries and environment:
http://www.routards.org/2013/08/defcon-21-ctf-binaries-and-environment.html

DEF CON 21 Quals Write-ups

If you'd like to re-live some of the excitement from the quals, you can check out a few of these write-ups from around the internetosphere:

Team Alternatives:
http://team-alternatives.blogspot.com/2013/06/defcon-21-ctf-quals-policebox-writeup.html

X-N2O's Blog:
http://x-n2o.net/linked-dc21

Stalkr's Blog:
http://blog.stalkr.net/2013/06/defcon-21-quals-blackbox-write-up.html

Blue Lotus:
http://www.blue-lotus.net/defcon-21-quals-annyong-writeup/

Raz0r.name:
http://raz0r.name/other/defcon-ctf-2013-quals-grandprix-writeup/

Leet More CTF Team Blog:
http://leetmore.ctf.su/wp/defcon-ctf-quals-2013-all-web-challenges-3dub/

Pwnies.dk:
http://pwnies.dk/post/grandprix-defcon-ctf-quals-2013/

Here's a great collection of write-ups:
http://apollo89.com/wordpress/?p=3195

DEF CON 20 Capture the Flag Write-ups

The Awesome Reddit Ask Me Anything thread from Samurai CTF
http://www.reddit.com/r/netsec/comments/y0nnu/we_are_samurai_ctf_and_we_won_defcon_ctf_this/

From the Routards Team Blog
http://www.routards.org/2012/08/defcon-20-ctf-semem.html?spref=tw

Wireshark goodness from the NYU Poly ISIS Lab
http://isisblogs.poly.edu/2012/08/03/tracing-bugs-in-wireshark/

Wireshark Exploit writeup from 0xDEADBEEF
http://0xdeadbeef.us/archive/Wireshark-exploit-from-Defcon-20-CTF

From the SiBears Blog
http://sibears.ru/labs/defcon2012_torqux/

Bonus writeup for those who can read Russian:
http://habrahabr.ru/post/149045/

Results announcement for CTF at DEFCON 20 - YouTube
www.youtube.com/watch?v=y3ASNTKo8tU

DEF CON 20 Capture the Flag Quals Write-ups

DC 20 Quals Writeups:
http://devpsc.blogspot.com/2012/06/defcon-20-quals-writeup-collection.html

Quals Graph:
http://stalkr.net/defcon/graph.htm

DDTek Quals Scoreboard
http://ddtek.biz/qualsDC20scoreboard.html

Defcon 20 - Quals Writeup Collection from CTF Central
https://sites.google.com/site/ctfcentralorg/home/defcon-20-ctf-quals
Links below are from the above link.

forensics

f100
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/#comments

f200
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/#comments

f300
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/
http://research.shell-storm.org/files/research-28-en.php
http://www.blizz.se/dc20_ctf_f300.html

f400
http://www.routards.org/2012/06/defcon-20-quals-forensics-400.html
http://blog.lse.epita.fr/articles/15-defcon2k12-prequals-for400-writeup.html

f500
http://blog.lse.epita.fr/articles/13-defcon2k12-prequals-for500-writeup.html

pwnables

p100
http://pastebin.com/eqzdtwmw
http://blog.lse.epita.fr/articles/17-defcon2k12-prequals-pwn100-writeup.html

p200
http://pastebin.com/hZRjypSH
http://blog.oxff.net/#jmjgjxh7rng7hgjyd7hq
http://pastebin.com/hvAxGMWM

p300
http://blog.oxff.net/#z44b5paapelzyn46rjea
http://blog.lse.epita.fr/articles/14-defcon2k12-prequals-pwn300-writeup.html

p400
http://blog.oxff.net/#anvszwpmjdyizhsqgngq

binary l33tness

b100
http://securityblackswan.blogspot.co.uk/2012/06/defcon-20-ctf-qualifiers-b100.html
http://squidzrus.schleppingsquid.net/wiki/index.php?title=Binary_l33tness_100

b200
http://www.blizz.se/dc20_ctf_quals_bin200.html

b300
http://insight-labs.org/?p=368

b400
http://bit.ly/NyqP7a
http://x-n2o.com/bin400-dc20

/urandom

r100
http://squidzrus.schleppingsquid.net/wiki/index.php?title=Urandom_100

r200
http://devtrixlabs.com/blog/2012/06/defcon-2012-urandom-200-writeup/

r300
http://www.routards.org/2012/06/defcon-20-quals-urandom-300.html
http://blog.sigsegv.in/2012/06/defcon-ctf-quals-2012-urandom-300.html

r400
http://secdef.cs.washington.edu/dc20-quals-urandom-400.html

grab bag

gb200
http://adversec.com/docs/defcon_ctf_quals_2012_grab_bag_200_writeup.txt
http://www.routards.org/2012/06/defcon-20-quals-grab-bag-200.html

gb300
http://pastie.org/4023158
http://blog.lse.epita.fr/articles/16-defcon2k12-prequals-gb300-writeup.html
www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag-300-writeup/

gb400
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-grab-bag-400-writeup/
http://www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag400-writeup/http://www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag400-writeup/

Writeups Collection:
http://d.hatena.ne.jp/Kango/20120604/1338815574
http://blog.lse.epita.fr/articles/18-defcon2k12-prequals.html
https://sites.google.com/site/ctfcentralorg/home/defcon-20-ctf-quals

Quals files dumps:
http://repo.shell-storm.org/CTF/Defcon-20-quals/

urandom 200:
http://devtrixlabs.com/blog/2012/06/defcon-2012-urandom-200-writeup/
http://blog.sigsegv.in/2012/06/defcon-ctf-quals-2012-urandom-300.html

urandom 400:
http://secdef.cs.washington.edu/dc20-quals-urandom-400.html

DEF CON 19 Capture the Flag Write-ups

Plaid Parliament of Pwning write up
http://ppp.cylab.cmu.edu/wordpress/?p=592

Routards Blog
http://www.routards.org/2011/08/defcon-19-ctf-ctf-inside.html http://www.routards.org/2011/08/defcon-19-ctf-bunny.html http://www.routards.org/2011/08/defcon-19-ctf-castle.html http://www.routards.org/2011/08/defcon-19-ctf-sheepster.html http://www.routards.org/2011/08/binjitsu-iii-game-scoring.html

DEF CON 19 Capture the Flag Quals Write-ups

Challenge repository at Shell-storm.org
http://repo.shell-storm.org/CTF/Defcon-19-quals/

Several write-ups at http://daxnitro.com/quals/

Binary 100
http://blog.securestate.com/post/2011/06/06/Defcon-19-CTF-Pre-Quals-Binary-100-Challenge.aspx
http://neobits.org/?p=825 (Espanol)

Forensics 100
http://blizz.se/f100.html
http://www.bryceboe.com/2011/06/05/defcon-19-quals-forensics-100-and-forensics-300-solution/
http://www.phx2600.org/archive/2011/06/05/forensics-100-defcon-ctf-quals/

Forensics 300
http://www.bryceboe.com/2011/06/05/defcon-19-quals-forensics-100-and-forensics-300-solution/
http://blog.securestate.com/post/2011/06/06/DEFCON-19-CTF-Quals-Forensics-300.aspx

Grab Bag 100
http://michele.spagnuolo.me/articles/web-security/defcon-ctf19-quals-grab-bag-100-writeup.html

Grab Bag 200
http://securityblackswan.blogspot.com/2011/06/defcon-19-ctf-qualifiers-gb200.html
http://nonroot.blogspot.com/2011/06/writeup-gb200-ctf-quals-defcon.html (Espanol)

Retro Revisited 300
http://blizz.se/rr300.html
http://files.skyshadows.net/ctf/retro300.txt

Retro Revisited 500
http://dpaste.com/hold/551499/

Potent Pwnables 300
http://securityblackswan.blogspot.com/2011/06/defcon-19-ctf-qualifiers-pp300.html

DEF CON 18 Capture the Flag Quals Wrap-up

Unofficial Results from DEF CON 18 CTF Quals: http://ddtek.biz/qualsDC18scores.txt

Video - pwning binary 300 at DEF CON 18 CTF quals: http://www.screentoaster.com...pwning_binary_300_at_defcon_18_quals

Write-ups for DEFCON 18 CTF Quals, including Trivia 500, Packet Madness 200, Binary L33tness 300, Pwtent Pwnables 200, Forensics 100, Forensics 400, and Forensics 500, and more to come: http://scott.wolchok.org/ctf2010/

PT400 Walkthrough: http://cvk.posterous.com/defcon-18-quals-pt400-walkthrough

Pwtent Pwnables 200 Write Up: http://www.rajatswarup.com/blog/2010/05/25/pwtent-pwnable-200-writeup-ctf-quals-2010/

Packet 100 Write Up: http://blog.stalkr.net/2010/05/defcon-18-ctf-quals-writeup-packet-100.html

Forensics 200 Write Up http://www.bryceboe.com/2010/05/25/defcon-18-quals-forensics-200-write-up/

Crypto 400 Write Up: http://barok.foi.hr/~tkisason/ Team: gn00bz

Defcon ctf quals trivia 500 music remix version volume up plz!! http://carstory.co.kr/1021 from wowhacker

French Language Write Up: http://www.segmentationfault.fr/securite-informatique/resume-dc18-ctf-quals/ (en français)