Difference between revisions of "AppSecEU2013/Ticket-Challenge"

From OWASP
Jump to: navigation, search
(Closed Ticket Challenges)
(7'th Challenge)
 
(22 intermediate revisions by one user not shown)
Line 12: Line 12:
 
The event will be composed of 2 days of training (August 20-21), followed by 2 days of conference talks (August 22-23). The conference is expected to draw 400-500 technologists from Research, Government, Financial Services, Media, Pharmaceuticals, Healthcare, Technology and many other verticals.
 
The event will be composed of 2 days of training (August 20-21), followed by 2 days of conference talks (August 22-23). The conference is expected to draw 400-500 technologists from Research, Government, Financial Services, Media, Pharmaceuticals, Healthcare, Technology and many other verticals.
  
Visit the conference page <u>[[AppSecEU2013]]</u> for details.
+
Visit the conference page <u>[https://appsec.eu/ AppSec EU 2013]</u> (or <u>[[AppSecEU2013]]</u>) for details.
  
 
There will be a challenge posted on the conference wiki page every month up until the event in August.
 
There will be a challenge posted on the conference wiki page every month up until the event in August.
The winner of each challenge will get free entrance to the conference, worth about €400.
+
The winner of each challenge will get free entrance to the conference, worth about €420.
 
Be sure to sign up for the <u>[https://lists.owasp.org/mailman/listinfo/appseceu2013 conference mailing list]</u> to get a monthly reminder.
 
Be sure to sign up for the <u>[https://lists.owasp.org/mailman/listinfo/appseceu2013 conference mailing list]</u> to get a monthly reminder.
  
Line 21: Line 21:
 
<div style="background-color:rgb(153,204,255);margin:2em;padding-left:1em;"><big style="padding:1em;">
 
<div style="background-color:rgb(153,204,255);margin:2em;padding-left:1em;"><big style="padding:1em;">
  
;The 1'st challenge starts here:
+
;The 7'th challenge starts here:
<!-- vorgesehene End-Termine im 3-Wochen-Rythmus (Stand 1-mar-13):  29.3. 19.4. 10.5. 31.5. 21.6. 12.7. 2.8. -->
+
<!-- vorgesehene End-Termine im 3-Wochen-Rythmus (Stand 21-may-13):  29.3. 19.4. 21.5. 12.6. 3.7. 24.7. 14.8. -->
<!-- die erste Challenge läuft 4 Wochen, wenn nötig kann die zweite auch 4 Wochen laufen -->
+
 
<!-- #### folgenden Link für jede neue Challenge anpassen #### -->
 
<!-- #### folgenden Link für jede neue Challenge anpassen #### -->
https://www.hacking-lab.com/events/registerform.html?eventid=397&uk=78h2Cz5xvYrCde5oGAEc1GDcacfwuYtM
 
  
The challenge will be open until 29th of March 2013.
+
https://www.hacking-lab.com/events/registerform.html?eventid=463&uk=zSvfSsewdX9KBsQRRAct6R9S19VD6Hcc
 +
 
 +
The challenge will be open until 14'th of August 2013.
 
</big></div>
 
</big></div>
  
Line 34: Line 34:
 
Each challenge will be announced on the conference wiki page and the conference mailing list (<u>[https://lists.owasp.org/mailman/listinfo/appseceu2013 subscribe here]</u>). Simply follow the link, login, and follow the instructions for the challenge.
 
Each challenge will be announced on the conference wiki page and the conference mailing list (<u>[https://lists.owasp.org/mailman/listinfo/appseceu2013 subscribe here]</u>). Simply follow the link, login, and follow the instructions for the challenge.
 
Provide your solution, which then will be marked.
 
Provide your solution, which then will be marked.
The challenge will be opened right after the announcement and will be closed 4 weeks later.
+
The challenge will be opened right after the announcement and will be closed 3 weeks later.
 
The winner will be rewarded a free conference ticket 3 days later.
 
The winner will be rewarded a free conference ticket 3 days later.
  
The organizing committee will review the provided solutions and accept or reject it. While the challange is open, rejected solutions can be enhanced and submitted again. If there are equal solutions at the end of the challange, the first submitted one wins.
+
The organizing committee will review the provided solutions and accept or reject it. While the challenge is open, rejected solutions can be enhanced and submitted again. If there are equal solutions at the end of the challenge, the first submitted one wins.
 +
 
 +
At end of the last challenge, right before the conference starts, additional tickets will be given to the best provided solutions over all submitted solutions.  
  
 
The free ticket is personal and the judgement of the organizing committee can not be overruled.
 
The free ticket is personal and the judgement of the organizing committee can not be overruled.
Line 65: Line 67:
  
 
;Step3: After login you'll see the list of ''Running Events''
 
;Step3: After login you'll see the list of ''Running Events''
: Switch to the challenge '''AppSec EU 2013 Ticket Challenge 1'''
+
: Switch to the challenge '''AppSec EU 2013 Ticket Challenge 7'''
  
 
;Step4: To solve the task you need a VPN connection as shown in
 
;Step4: To solve the task you need a VPN connection as shown in
Line 76: Line 78:
  
 
;Good luck!!
 
;Good luck!!
 
  
 
== Closed Ticket Challenges ==
 
== Closed Ticket Challenges ==
Line 86: Line 87:
 
: https://www.hacking-lab.com/events/registerform.html?eventid=397&uk=78h2Cz5xvYrCde5oGAEc1GDcacfwuYtM
 
: https://www.hacking-lab.com/events/registerform.html?eventid=397&uk=78h2Cz5xvYrCde5oGAEc1GDcacfwuYtM
  
 +
;2'nd challenge
 +
: the second challenge was closed 19th of April 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=426&uk=pPm9SJo9W6oj9N24yyyv1TZkQYFYsZ9J
 +
 +
;3'rd challenge
 +
: the third challenge was closed 21th of May 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=433&uk=VgMsAa9rSPwr5kXYHbNVNWXb33R6PLAb
 +
 +
;4'th challenge
 +
: the fourth challenge was closed 15th of June 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=444&uk=fxmycgUCHheeKvhUJs5aAYT8zfspa7yH
 +
 +
;5'th challenge
 +
: the fifth challenge was closed 7th of July 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=453&uk=uS8wgSSVrxNJJSBFhzLet2jhBjEGFdpv
 +
 +
;6'th challenge
 +
: the sixth challenge was closed 24th of July 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=456&uk=iAYeaeHkEDYKPzXz1gijF4AffGA5SBhA
 +
 +
<!--
 +
;7'th challenge
 +
: the sixth challenge was closed 14th of August 2013.
 +
: https://www.hacking-lab.com/events/registerform.html?eventid=463&uk=zSvfSsewdX9KBsQRRAct6R9S19VD6Hcc
 +
-->
  
 
----
 
----
 
[[AppSecEU2013|<top>]] [[Germany|<Germany>]]
 
[[AppSecEU2013|<top>]] [[Germany|<Germany>]]

Latest revision as of 14:32, 24 July 2013

original photo from IqRS



Countdown Challenges -- Win Free Tickets to AppSec EU Research 2013 in Hamburg!

The OWASP German Chapter will host the OWASP AppSec Europe Research 2013 global conference in Hamburg, Germany from August 20-23. The event will be composed of 2 days of training (August 20-21), followed by 2 days of conference talks (August 22-23). The conference is expected to draw 400-500 technologists from Research, Government, Financial Services, Media, Pharmaceuticals, Healthcare, Technology and many other verticals.

Visit the conference page AppSec EU 2013 (or AppSecEU2013) for details.

There will be a challenge posted on the conference wiki page every month up until the event in August. The winner of each challenge will get free entrance to the conference, worth about €420. Be sure to sign up for the conference mailing list to get a monthly reminder.

The 7'th challenge starts here

https://www.hacking-lab.com/events/registerform.html?eventid=463&uk=zSvfSsewdX9KBsQRRAct6R9S19VD6Hcc

The challenge will be open until 14'th of August 2013.

How to Win

Each challenge will be announced on the conference wiki page and the conference mailing list (subscribe here). Simply follow the link, login, and follow the instructions for the challenge. Provide your solution, which then will be marked. The challenge will be opened right after the announcement and will be closed 3 weeks later. The winner will be rewarded a free conference ticket 3 days later.

The organizing committee will review the provided solutions and accept or reject it. While the challenge is open, rejected solutions can be enhanced and submitted again. If there are equal solutions at the end of the challenge, the first submitted one wins.

At end of the last challenge, right before the conference starts, additional tickets will be given to the best provided solutions over all submitted solutions.

The free ticket is personal and the judgement of the organizing committee can not be overruled.

How it Works

Each challenge will have its unique link and will be open for 4 weeks after announcement.

If you follow the link, the site will ask for login (see Login directly (Existing Hacking-Lab Account)), or to sign-up (see Sign-up a new Hacking-Lab Account) if you don't have a login. You may use your existing account, or sign-up for a new one.

To participate on the challenge, you need an account at Hacking-Lab. You just need an email address for that and you can use a nickname of your choice. Only the nickname will be public.

How to Start

Step0
Prepare your client with a preconfigured virtual host in VMware Player or VirtualBox.
Install the LiveCD image in your virtual host. It can be downloaded here:
https://www.hacking-lab.com/Remote_Sec_Lab/livecd.html
Download links for VMware Player and VirtualBox are:
* https://www.virtualbox.org/wiki/Downloads
* http://www.vmware.com/products/player/
Step1
Follow the link from your mail or posted at conference wiki.
Step2
Login
Step3
After login you'll see the list of Running Events
Switch to the challenge AppSec EU 2013 Ticket Challenge 7
Step4
To solve the task you need a VPN connection as shown in
https://www.hacking-lab.com/Remote_Sec_Lab/lab-infrastructure.html
Step5
Connect to hacking-lab.com after starting your Live-CD from within your virtual host as described in
https://www.hacking-lab.com/Remote_Sec_Lab/OpenVPN.html
Step6
To complete the task (event), send your description of the vulnerability including an exploit and a description for mitigations using the provided Send Solution button.
Good luck!!

Closed Ticket Challenges

Solutions can still be provided to closed challenges and will be graded, but they are not valid to win a ticket anymore.

1'st challenge
the first challenge was closed 29th of March 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=397&uk=78h2Cz5xvYrCde5oGAEc1GDcacfwuYtM
2'nd challenge
the second challenge was closed 19th of April 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=426&uk=pPm9SJo9W6oj9N24yyyv1TZkQYFYsZ9J
3'rd challenge
the third challenge was closed 21th of May 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=433&uk=VgMsAa9rSPwr5kXYHbNVNWXb33R6PLAb
4'th challenge
the fourth challenge was closed 15th of June 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=444&uk=fxmycgUCHheeKvhUJs5aAYT8zfspa7yH
5'th challenge
the fifth challenge was closed 7th of July 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=453&uk=uS8wgSSVrxNJJSBFhzLet2jhBjEGFdpv
6'th challenge
the sixth challenge was closed 24th of July 2013.
https://www.hacking-lab.com/events/registerform.html?eventid=456&uk=iAYeaeHkEDYKPzXz1gijF4AffGA5SBhA



<top> <Germany>