IWC Pre DefCon 32 Mini-CTF

preview_player
Показать описание
Walking through the four challenges of Ironwood Cyber's Pre DefCon Mini-CTF.

Ethan (n0decaf) joins me to discuss the challenges we wrote, participating in and writing CTF challenges, as well as general thoughts on the community and skill building.

Challenge topics: SSH multiplexing sockets, Tmux Server abuse, GraphQL, SQL injection, Enigma history, and pcap analysis.

Shout out to MetaCTF for hosting the CTF on their CTF platform. Check them out too!

00:01:39 - Intro and banter
00:09:20 - Tmux server abuse
00:24:37 - Interview: Getting involved in playing CTFs
00:36:53 - SSH multiplexing sockets
00:47:38 - Interview: Transitioning to writing CTF challenges
00:59:38 - Pcap Analysis
01:27:49 - Interview: Challenges of building challenges
01:34:12 - Web Challenge (Graphql, SQLi, Cipher analysis)
02:18:44 - GraphQL Introspection, final thoughts, debrief