Informations
- Virtual environnement chosen : Sambox v4
- Description : Attention : this CTF-ATD is linked to the challenge "SamBox v4"
You are mandated to conduct a redteam assessment of a company. From the company’s parking garage you managed to capture Wi-Fi traffic, but alas it’s proven impossible to crack the WPA key. The next logical step is to attack the company through the internet.
Your objective is to obtain total control of all servers so that you may collect individual flags for each of them.
The flag to validate is made as following "flag server1 content+flag server2 content+flag server3 content+flag server4 content" without the "+".
The CTFATD validation file « passwd » is in the directory « C :\Documents and Settings\Administrator> ».
Note :
The downloadable archive is to be decrypted using the contents of the "2nd-part-flag.txt" as a password. By using this archive you should then be able to understand the joined PCAP file.Download the files before launching the CTF :
- Archive : http://challenge01.root-me.org/realiste/ch20/clusir-w7.zip
- PCAP : http://challenge01.root-me.org/realiste/ch20/clusir8-01.cap
Also, don’t forget that :
- this CTF has several machines to pwn
- only one of those is connected to the internet Game duration : 240 min
- Validation flag is stored in the file /passwd
- Only registered players for this game can attack the virtual environnement.
- A tempo prevent game starting to early or too late.
- Game will start when one player has choosen his virtual environnement and declared himself as ready.
Player's list
- cpt_mustard (choice : Sambox v4, ready)
World Map
CTF Results
Pseudo | Virtual Environnement | Attackers count | Time start | Environnement compromised in |
- | Awky | 1 | 4 March 2019 at 11:41 | - |
- | Hopital Bozobe | 0 | 4 March 2019 at 10:10 | - |
- | /dev/random : Pipe | 1 | 4 March 2019 at 09:51 | - |
- | Metasploitable | 1 | 4 March 2019 at 11:32 | - |
- | Metasploitable 2 | 2 | 4 March 2019 at 09:07 | - |