Defcon 2008 CTF Write-up
aaron posted in Uncategorized on August 14th, 2008
1@stPlace recently posted a write-up on the Defcon CTF competition. There’s not too much detail on the specific contests that were run, but it’s good to get some insight into the competition. Also of note is a blog post from atlas, the team captain for 1@stPlace, talking a bit more about the competition.

I’ve heard a bit of speculation about how skewl of root was able to dominate the competition so thoroughly. Here’s an interesting quote from atlas on the topic:
This year, Sk3wl multiplied both the evi1 as well as the technical awe of our attack from last year, instead, denying any of our teams the ability to score. How they did this, I can’t say specifically, but let’s just say they pwned the services themselves and made their own version of a “service-r00tkit”, modifying information to either prevent us from gaining shell on the box or changing the contents of keys so we received bogus keys and our overwrites were dorked as well.
Something else I found pretty interesting was a blurb from atlas on a pretty interesting sounding challenge:
Kenshoto provided a text file with all of shakespeare’s works. our job was to find the longest run of bytes which convert to x86 opcodes which don’t touch memory.
If anyone else knows about other posts, or has other information on either the CTF or openCTF challenges at Defcon, I’d love to hear about them.
The scoreboard @ CTF:




August 20th, 2008 at 9:30 am
We’ve added the Shakespearean Challenge and links to all the binaries now…
August 27th, 2008 at 9:44 pm
Awesome, thanks Doc Brown,
September 16th, 2012 at 7:05 am
גשו עוד היום לאתר של studioseven על מנת לגלות קולקציה של עבודות .
September 21st, 2012 at 12:54 am
It’s actually a great and useful piece of info.
I’m satisfied that you simply shared this useful info with us.
Please stay us informed like this. Thanks for sharing.
April 8th, 2013 at 1:16 am
Anybody else feel this article should have a Second part to it?
I believe the information was good, but I even now have unanswered concerns as I am
absolutely sure other folks do. Whadda ya say admin, give us
more content material?
April 9th, 2013 at 9:23 pm
I am so happy to read this. This is the kind of manual that needs to be given and not the accidental misinformation that is at the other blogs. Appreciate your sharing this best doc.