Author Topic: Evilzone team CTF365  (Read 2286 times)

0 Members and 1 Guest are viewing this topic.

Offline Stackprotector

  • Administrator
  • Titan
  • *
  • Posts: 2515
  • Cookies: 205
    • View Profile
Evilzone team CTF365
« on: May 15, 2013, 12:56:54 pm »
I am started a Evilzone team. I require higher skills to enter. I really don't care if i am in a team with 2 members as long as we are skilled. You can expect total failure when launching a metasploit autopwn.


Pick one of the skill-sets below if you want to join this team or be in both teams (if the noobpatrol team is still going to play). Please do take into mind that by choosing a skill-set you tell us that you are experienced in that set.


Web-security - Experienced with at least:
-Blind SQLi on MySQL and 1 other database system. 
-Cross site vulnerability's (XSS, XSRF etc.)
-Little social engineering is always good
-LFI/RFI and other Path traversal attacks
-Filter evasion techniques
-Basic PHP/ASP programming
-General web-security skills (shells and whatnot)
-The ability to set-up and secure an open-source CMS


Server admin
-Installation of a linux server, you should be able to setup almost all non-self-compile distro's (Debian, arch linux, ubuntu, etc.etc.etc)
-Installation and secure configuration of the required services and packages such as Apache2, PHP, FTP, SSH etc.
-Installation of security features in the linux OS such as IPS, IDS, Firewall and other monitoring and security systems (selinux :D )
-The ability to monitor the server for load, security, traffic etc.
-And some general "Linuxfu"


Exploiter - Honey potter
-Installation of required tool set for exploitation and exploit development
-Some honey potting experience should be nice
-Exploitfu, loads of that. And deeper knowledge than just the metasploit terminal
-Exploit/Payload development


Auditor
-You can audit the network, spot easy targets, check people who tried to scan us.
-Have some knowledge about networking, scripting, and secure/stealth scanning.


Programmer
-You just want to program cool tools for us to use


This is a quick mock-up of skill-sets, pick one if you are experienced in the field. And then the fun can start :)  Deadline is around June (then the CTF will start)


Here is my referral url http://ctf365.com/ref/WvxTCRxHd8bg9SzsBCJx click it if you like.


Please note, this is not a timed ctf but "the World of Warcraft for hackers"
« Last Edit: May 15, 2013, 12:58:06 pm by Factionwars »
~Factionwars

Offline Mordred

  • Knight
  • **
  • Posts: 360
  • Cookies: 135
  • Nvllivs in Verba
    • View Profile
Re: Evilzone team CTF365
« Reply #1 on: May 15, 2013, 04:37:28 pm »
I signed up for CTF365 a while back but of course I forgot the password I used and their password reset system is fucked.

Anyway I'm gonna fix that eventually, so I'm definitely in for Social Engineering and Auditing. If you want me that is.

L.E.: You watched Inception on TV last night I see.
« Last Edit: May 15, 2013, 04:38:04 pm by Mordred »
\x57\x68\x79\x20\x64\x69\x64\x20\x79\x6f\x75\x20\x65\x76\x65\x6e\x20\x66\x75\x63\x6b\x69\x6e\x67\x20\x73\x70\x65\x6e\x64\x20\x74\x68\x65\x20\x74\x69\x6d\x65\x20\x74\x6f\x20\x64\x65\x63\x6f\x64\x65\x20\x74\x68\x69\x73\x20\x6e\x69\x67\x67\x72\x3f\x20\x44\x61\x66\x75\x71\x20\x69\x73\x20\x77\x72\x6f\x6e\x67\x20\x77\x69\x74\x68\x20\x79\x6f\x75\x2e

Offline Phage

  • VIP
  • Overlord
  • *
  • Posts: 1280
  • Cookies: 120
    • View Profile
Re: Evilzone team CTF365
« Reply #2 on: May 15, 2013, 04:41:26 pm »
They set the release date to last year I was signed up with maximum referrals with my team just to receive the message that the tournament had been postponed.
"Ruby devs do, in fact, get all the girls. No girl wants a python, but EVERY girl wants rubies" - connection

"It always takes longer than you expect, even when you take into account Hofstadter’s Law."

Offline Stackprotector

  • Administrator
  • Titan
  • *
  • Posts: 2515
  • Cookies: 205
    • View Profile
Re: Evilzone team CTF365
« Reply #3 on: May 15, 2013, 04:44:26 pm »
I signed up for CTF365 a while back but of course I forgot the password I used and their password reset system is fucked.

Anyway I'm gonna fix that eventually, so I'm definitely in for Social Engineering and Auditing. If you want me that is.

L.E.: You watched Inception on TV last night I see.
No i did not watch it last night. To bad i missed it. But i watch it every 2 months or so. For straight 2 years. How far are you with auditing?
~Factionwars

Offline Pak_Track

  • Royal Highness
  • ****
  • Posts: 762
  • Cookies: 69
  • Paratrooper
    • View Profile
    • My Home
Re: Evilzone team CTF365
« Reply #4 on: May 15, 2013, 04:51:34 pm »
I'm in for social engineering if you guys approve.

'Life is but a series of conflicts between the easy way and the right way.'
The more you know, the more you'll realize you know nothing. -Snayler
The problem with being a smart motherfucker is that sometimes the stupid motherfuckers think you're a crazy motherfucker.
dont u hate it when you offer help and the other person says yes -Pakalu Papito

Offline Stackprotector

  • Administrator
  • Titan
  • *
  • Posts: 2515
  • Cookies: 205
    • View Profile
Re: Evilzone team CTF365
« Reply #5 on: May 15, 2013, 04:54:07 pm »
I'm in for social engineering if you guys approve.
Do you see social engineering as a skill set?
~Factionwars

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: Evilzone team CTF365
« Reply #6 on: May 15, 2013, 06:54:56 pm »
I have none of the skills listed above... but I'll stick with n00bPatrol. I won't desert the team!

Offline 3vilp4wn

  • Serf
  • *
  • Posts: 46
  • Cookies: 11
  • :D
    • View Profile
    • Evil Ninja Hackers
Re: Evilzone team CTF365
« Reply #7 on: May 16, 2013, 03:27:36 am »
I'd love to do this, but I'm probably not good enough  :'(
Here's what I'm semi-qualified for:

Web-security - Experienced with at least:
-Blind SQLi on MySQL and 1 other database system.  - Eh, I did SQLi on a live system once, but that was just a basic ' or 1=1--
-Cross site vulnerability's (XSS, XSRF etc.)  -   ;D   I'm good with CSRF and XSS.  I've used them on live systems a couple of times.
-Little social engineering is always good  -  Not for me  :-\
-LFI/RFI and other Path traversal attacks  -  I know how it works, but never done it on a live system before.
-Filter evasion techniques  -  Meh, I'm so/so at that.
-Basic PHP/ASP programming  -  I'm good at PHP, but never used ASP.
-General web-security skills (shells and whatnot)  -  Meh, so/so.
-The ability to set-up and secure an open-source CMS  -  Never done that before.



Programmer
-You just want to program cool tools for us to use  -  I'm good at programming, and I've already started a toolkit in python.  What are you guys looking for?


Anyways, I'd love to be on the team, but like I said, I'm probably not good enough.
Shooting is not  too good for my enemies.

Offline namespace7

  • Sir
  • ***
  • Posts: 561
  • Cookies: 115
  • My Brother's Keeper
    • View Profile
Re: Evilzone team CTF365
« Reply #8 on: May 16, 2013, 08:55:54 pm »
made an account with your referal link, but I got some stupid registration email.
Quote
You can confirm your account email through the link below: Confirm my account Before digital, there was mechanical. View and purchase fascinating mechanical antique pocket watches and vintage wrist watches. Visit Bogoff Antiques today. http://www.bogoff.com

WTF? Please don't tell me its some stupid puzzle where I gave to go though that website to find some key or some shit like that :DDD
"A programmer’s greatest enemy isn’t the tools or the boss or the artists or the design or the legacy code or the third party code or the API or the OS. A programmer’s greatest enemy is getting stuck.
Therefore a crucial step to becoming a better programmer is learning how to avoid getting stuck, to recognize when you’re stuck, and to get unstuck." -Jeff Wofford

Offline 3vilp4wn

  • Serf
  • *
  • Posts: 46
  • Cookies: 11
  • :D
    • View Profile
    • Evil Ninja Hackers
Re: Evilzone team CTF365
« Reply #9 on: May 16, 2013, 09:02:08 pm »
made an account with your referal link, but I got some stupid registration email.
WTF? Please don't tell me its some stupid puzzle where I gave to go though that website to find some key or some shit like that :DDD

The "Confirm My Account" is a link.  Click it.
Shooting is not  too good for my enemies.

Offline namespace7

  • Sir
  • ***
  • Posts: 561
  • Cookies: 115
  • My Brother's Keeper
    • View Profile
Re: Evilzone team CTF365
« Reply #10 on: May 16, 2013, 09:09:10 pm »
The "Confirm My Account" is a link.  Click it.

Its just text. Plain text. :/
Its weird. Very very weird.
"A programmer’s greatest enemy isn’t the tools or the boss or the artists or the design or the legacy code or the third party code or the API or the OS. A programmer’s greatest enemy is getting stuck.
Therefore a crucial step to becoming a better programmer is learning how to avoid getting stuck, to recognize when you’re stuck, and to get unstuck." -Jeff Wofford

Offline 3vilp4wn

  • Serf
  • *
  • Posts: 46
  • Cookies: 11
  • :D
    • View Profile
    • Evil Ninja Hackers
Re: Evilzone team CTF365
« Reply #11 on: May 16, 2013, 09:28:22 pm »
Are you using one of those terminal mail readers?
If not, I have no idea how to help you  :(
Shooting is not  too good for my enemies.

Offline namespace7

  • Sir
  • ***
  • Posts: 561
  • Cookies: 115
  • My Brother's Keeper
    • View Profile
Re: Evilzone team CTF365
« Reply #12 on: May 17, 2013, 12:02:09 am »
Are you using one of those terminal mail readers?
If not, I have no idea how to help you  :(


Not quite a terminal reader... simple but it supports links :D
Idk, maybe they have some bug or something.
Anyway, its not clear when they would actually go active and start the actual ctf, so its not a big of a deal.
"A programmer’s greatest enemy isn’t the tools or the boss or the artists or the design or the legacy code or the third party code or the API or the OS. A programmer’s greatest enemy is getting stuck.
Therefore a crucial step to becoming a better programmer is learning how to avoid getting stuck, to recognize when you’re stuck, and to get unstuck." -Jeff Wofford