skip to main content

DEF CON Hacking Conference

CTF Archive

Image of DEF CON logo pirate flag.

This page is devoted to collecting accounts, walk throughs and other resources of Capture the Flag at DEF CON over the years, not only for history's sake but so the uninformed can better grasp the epic journey that teams must face on the road to CTF victory!

If you know of a resource that should be included on this page, feel free to pass it along to neil ]at[ defcon [dot] org.

DEF CON 21 Capture the Flag Pcaps, Binaries and Tools

Binaries and Tools: Torrent Torrent Logo

Friday Packet Captures: Torrent Torrent Logo
Saturday Packet Captures: Coming Soon!
Sunday Packet Captures: Coming Soon!

DEF CON 21 Capture the Flag Write-ups

CNBC Article - Cyberteams duke it out in the World Series of Hacking
http://www.cnbc.com/id/101179977/page/1

LegitBS Blog - Final Writeup:
http://blog.legitbs.net/2013/08/final-writeup.html

LegitBS Blog - Public Handout:
http://blog.legitbs.net/2013/08/finals-2013-public-handout.html

Routards Team Blog - Defcon 21 CTF:
http://www.routards.org/2013/08/defcon-21-ctf.html

Routards Team Blog - Defcon 21 CTF - Binaries and environment:
http://www.routards.org/2013/08/defcon-21-ctf-binaries-and-environment.html

DEF CON 21 Quals Write-ups

If you'd like to re-live some of the excitement from the quals, you can check out a few of these write-ups from around the internetosphere:

Team Alternatives:
http://team-alternatives.blogspot.com/2013/06/defcon-21-ctf-quals-policebox-writeup.html

X-N2O's Blog:
http://x-n2o.net/linked-dc21

Stalkr's Blog:
http://blog.stalkr.net/2013/06/defcon-21-quals-blackbox-write-up.html

Blue Lotus:
http://www.blue-lotus.net/defcon-21-quals-annyong-writeup/

Raz0r.name:
http://raz0r.name/other/defcon-ctf-2013-quals-grandprix-writeup/

Leet More CTF Team Blog:
http://leetmore.ctf.su/wp/defcon-ctf-quals-2013-all-web-challenges-3dub/

Pwnies.dk:
http://pwnies.dk/post/grandprix-defcon-ctf-quals-2013/

Here's a great collection of write-ups:
http://apollo89.com/wordpress/?p=3195

DEF CON 20 Capture the Flag Write-ups

The Awesome Reddit Ask Me Anything thread from Samurai CTF
http://www.reddit.com/r/netsec/comments/y0nnu/we_are_samurai_ctf_and_we_won_defcon_ctf_this/

From the Routards Team Blog
http://www.routards.org/2012/08/defcon-20-ctf-semem.html?spref=tw

Wireshark goodness from the NYU Poly ISIS Lab
http://isisblogs.poly.edu/2012/08/03/tracing-bugs-in-wireshark/

Wireshark Exploit writeup from 0xDEADBEEF
http://0xdeadbeef.us/archive/Wireshark-exploit-from-Defcon-20-CTF

From the SiBears Blog
http://sibears.ru/labs/defcon2012_torqux/

Bonus writeup for those who can read Russian:
http://habrahabr.ru/post/149045/

Results announcement for CTF at DEF CON 20 - YouTube
www.youtube.com/watch?v=y3ASNTKo8tU

DEF CON 20 Capture the Flag Quals Write-ups

DC 20 Quals Writeups:
http://devpsc.blogspot.com/2012/06/defcon-20-quals-writeup-collection.html

Quals Graph:
http://stalkr.net/defcon/graph.htm

DDTek Quals Scoreboard
http://ddtek.biz/qualsDC20scoreboard.html

Defcon 20 - Quals Writeup Collection from CTF Central
https://sites.google.com/site/ctfcentralorg/home/defcon-20-ctf-quals
Links below are from the above link.

forensics

f100
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/#comments

f200
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/#comments

f300
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-forensics-300-writeup/
http://research.shell-storm.org/files/research-28-en.php
http://www.blizz.se/dc20_ctf_f300.html

f400
http://www.routards.org/2012/06/defcon-20-quals-forensics-400.html
http://blog.lse.epita.fr/articles/15-defcon2k12-prequals-for400-writeup.html

f500
http://blog.lse.epita.fr/articles/13-defcon2k12-prequals-for500-writeup.html

pwnables

p100
http://pastebin.com/eqzdtwmw
http://blog.lse.epita.fr/articles/17-defcon2k12-prequals-pwn100-writeup.html

p200
http://pastebin.com/hZRjypSH
http://blog.oxff.net/#jmjgjxh7rng7hgjyd7hq
http://pastebin.com/hvAxGMWM

p300
http://blog.oxff.net/#z44b5paapelzyn46rjea
http://blog.lse.epita.fr/articles/14-defcon2k12-prequals-pwn300-writeup.html

p400
http://blog.oxff.net/#anvszwpmjdyizhsqgngq

binary l33tness

b100
http://securityblackswan.blogspot.co.uk/2012/06/defcon-20-ctf-qualifiers-b100.html
http://squidzrus.schleppingsquid.net/wiki/index.php?title=Binary_l33tness_100

b200
http://www.blizz.se/dc20_ctf_quals_bin200.html

b300
http://insight-labs.org/?p=368

b400
http://bit.ly/NyqP7a
http://x-n2o.com/bin400-dc20

/urandom

r100
http://squidzrus.schleppingsquid.net/wiki/index.php?title=Urandom_100

r200
http://devtrixlabs.com/blog/2012/06/defcon-2012-urandom-200-writeup/

r300
http://www.routards.org/2012/06/defcon-20-quals-urandom-300.html
http://blog.sigsegv.in/2012/06/defcon-ctf-quals-2012-urandom-300.html

r400
http://secdef.cs.washington.edu/dc20-quals-urandom-400.html

grab bag

gb200
http://adversec.com/docs/defcon_ctf_quals_2012_grab_bag_200_writeup.txt
http://www.routards.org/2012/06/defcon-20-quals-grab-bag-200.html

gb300
http://pastie.org/4023158
http://blog.lse.epita.fr/articles/16-defcon2k12-prequals-gb300-writeup.html
www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag-300-writeup/

gb400
http://sysexit.wordpress.com/2012/06/03/defcon-20-ctf-prequals-2012-grab-bag-400-writeup/
http://www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag400-writeup/http://www.rajatswarup.com/blog/2012/06/03/defcon-ctf-quals-grabbag400-writeup/

Writeups Collection:
http://d.hatena.ne.jp/Kango/20120604/1338815574
http://blog.lse.epita.fr/articles/18-defcon2k12-prequals.html
https://sites.google.com/site/ctfcentralorg/home/defcon-20-ctf-quals

Quals files dumps:
http://repo.shell-storm.org/CTF/Defcon-20-quals/

urandom 200:
http://devtrixlabs.com/blog/2012/06/defcon-2012-urandom-200-writeup/
http://blog.sigsegv.in/2012/06/defcon-ctf-quals-2012-urandom-300.html

urandom 400:
http://secdef.cs.washington.edu/dc20-quals-urandom-400.html

DEF CON 19 Capture the Flag Write-ups

Plaid Parliament of Pwning write up
http://ppp.cylab.cmu.edu/wordpress/?p=592

Routards Blog
http://www.routards.org/2011/08/defcon-19-ctf-ctf-inside.html http://www.routards.org/2011/08/defcon-19-ctf-bunny.html http://www.routards.org/2011/08/defcon-19-ctf-castle.html http://www.routards.org/2011/08/defcon-19-ctf-sheepster.html http://www.routards.org/2011/08/binjitsu-iii-game-scoring.html

DEF CON 19 Capture the Flag Quals Write-ups

Challenge repository at Shell-storm.org
http://repo.shell-storm.org/CTF/Defcon-19-quals/

Several write-ups at http://daxnitro.com/quals/

Binary 100
http://blog.securestate.com/post/2011/06/06/Defcon-19-CTF-Pre-Quals-Binary-100-Challenge.aspx
http://neobits.org/?p=825 (Espanol)

Forensics 100
http://blizz.se/f100.html
http://www.bryceboe.com/2011/06/05/defcon-19-quals-forensics-100-and-forensics-300-solution/
http://www.phx2600.org/archive/2011/06/05/forensics-100-defcon-ctf-quals/

Forensics 300
http://www.bryceboe.com/2011/06/05/defcon-19-quals-forensics-100-and-forensics-300-solution/
http://blog.securestate.com/post/2011/06/06/DEFCON-19-CTF-Quals-Forensics-300.aspx

Grab Bag 100
http://michele.spagnuolo.me/articles/web-security/defcon-ctf19-quals-grab-bag-100-writeup.html

Grab Bag 200
http://securityblackswan.blogspot.com/2011/06/defcon-19-ctf-qualifiers-gb200.html
http://nonroot.blogspot.com/2011/06/writeup-gb200-ctf-quals-defcon.html (Espanol)

Retro Revisited 300
http://blizz.se/rr300.html
http://files.skyshadows.net/ctf/retro300.txt

Retro Revisited 500
http://dpaste.com/hold/551499/

Potent Pwnables 300
http://securityblackswan.blogspot.com/2011/06/defcon-19-ctf-qualifiers-pp300.html

DEF CON 18 Capture the Flag Quals Wrap-up

Unofficial Results from DEF CON 18 CTF Quals: http://ddtek.biz/qualsDC18scores.txt

Video - pwning binary 300 at DEF CON 18 CTF quals: http://www.screentoaster.com...pwning_binary_300_at_defcon_18_quals

Write-ups for DEFCON 18 CTF Quals, including Trivia 500, Packet Madness 200, Binary L33tness 300, Pwtent Pwnables 200, Forensics 100, Forensics 400, and Forensics 500, and more to come: http://scott.wolchok.org/ctf2010/

PT400 Walkthrough: http://cvk.posterous.com/defcon-18-quals-pt400-walkthrough

Pwtent Pwnables 200 Write Up: http://www.rajatswarup.com/blog/2010/05/25/pwtent-pwnable-200-writeup-ctf-quals-2010/

Packet 100 Write Up: http://blog.stalkr.net/2010/05/defcon-18-ctf-quals-writeup-packet-100.html

Forensics 200 Write Up http://www.bryceboe.com/2010/05/25/defcon-18-quals-forensics-200-write-up/

Crypto 400 Write Up: http://barok.foi.hr/~tkisason/ Team: gn00bz

Defcon ctf quals trivia 500 music remix version volume up plz!! http://carstory.co.kr/1021 from wowhacker

French Language Write Up: http://www.segmentationfault.fr/securite-informatique/resume-dc18-ctf-quals/ (en fran├žais)