Coder Social home page Coder Social logo

stephenemslie / stripe-ctf-2-vm Goto Github PK

View Code? Open in Web Editor NEW

This project forked from reason-bv/stripe-ctf-2-vm

0.0 1.0 0.0 373 KB

The Stripe Capture the Flag (CTF) 2 contest in a Virtualbox VM.

License: Other

Shell 33.06% JavaScript 2.48% HTML 12.13% PHP 2.93% Python 31.16% Ruby 14.07% CoffeeScript 4.16%

stripe-ctf-2-vm's Introduction

Stripe Capture the Flag (CTF) 2 in a Virtualbox VM

This repository provides the 2012 Stripe CTF 2.0 contest in the form of a Virtualbox VM, generated with Packer, suitable for conducting group exercises with a minimum of technical preparation.

The Capture the Flag (CTF) contest is an exercise for developers at all levels of experience, designed as a teaching aid to cover some of the basics of web security. There are nine puzzles in the contest, each with its own set of code to inspect and server to exploit, the first being the easiest and the last the hardest. To progress to the next puzzle you extract a password by finding and exploiting the security flaws in the current puzzle.

The instructions included here guide a group administrator to build the VM that will be used by all participants in an exercise. The participants then download and individually install a personal copy of the VM that each will use over the course of the CTF event.

At Bazaarvoice we have found that running through the first four or five levels in a group exercise with ten to twenty developers, split into small teams, takes about three hours and provides a good introduction to web security concepts. Expect to spend 15-30 minutes examining and solving a puzzle, with a 5-10 minute discussion after each, which can be used to elaborate on the vulnerabilities used and their relevance to current development work.

stripe-ctf-2-vm's People

Contributors

psullivan avatar reason-bv avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.