Fri, 10 May 2024, 23:59 UTC — Sun, 12 May 2024, 23:59 UTC 

On-line

San Diego CTF event.

Format: Jeopardy Jeopardy

Official URL: https://sdc.tf/

This event's future weight is subject of public voting!

Rating weight: 24.67 

Event organizers 

San Diego CTF (SDCTF) is an annual Capture the Flag competition hosted by undergraduates at the University of California, San Diego (UCSD). Challenges vary across the disciplines of Open Source Intelligence, Cryptography, Web Hacking, Reverse Engineering, Binary Exploitation, Forensic Analysis, and others!

Signups are open at https://ctf.sdc.tf

More information can be found at https://sdc.tf

Prizes

$1500 prize pool!

1st - $512
2nd - $256
3rd - $128

$150 in writeup prizes

We also have prizes for top UCSD Student teams in addition to the above general prizes:

1st - $256
2nd - $128
3rd - $64

Scoreboard

214 teams total

PlaceTeamCTF pointsRating points
1 thehackerscrew 4123.00049.340
2 World Wide Flags 3781.00034.959
3 Maple Bacon 3517.00029.267
4 Orange Orchard Orioles 3207.00025.357
5 b01lers 2467.00019.695
6 BYU Cyberia 2219.00017.389
7 KUICS 2110.00016.149
8 t1nyB0vineArmag3ddon 1997.00015.033
9 st0p_cyb3rbu11ying 1957.00014.451
10 S1uM4i 1908.00013.884
11 welovepython<3 1821.00013.139
12 IrisSec 1772.00012.659
13 CyberAthletes 1752.00012.381
14 ResetSec 1710.00011.994
15 FlagMotori 1643.00011.476
16 CyberSpace 1604.00011.139
17 sahuang 1574.00010.869
18 Black0ut Bu5ters 1346.0009.424
19 ECSCTeamGreece 1300.0009.077
20 pre-quantum crypto 1239.0008.647
21 DarkNebulaTron 1215.0008.445
22 Stfu 1190.0008.242
23 CLPWN 1116.0007.750
24 Wani Hackase 1072.0007.442
25 wiredin_iitk 1067.0007.371
26 Dombu$ter$ 1053.0007.249
27 NYUSEC 1045.0007.166
28 reCAPTCHA the Flag 1042.0007.116
29 /dev/stp 1034.0007.038
30 IITBreachers 1024.0006.949
31 FiramexTeam 994.0006.743
32 Hellbound 992.0006.707
33 pwnagaukar 988.0006.659
34 PBR | UCLA 952.0006.422
35 KerKerYuan 932.0006.281
36 Me 922.0006.202
37 TRX 906.0006.088
38 xls team 887.0005.957
39 A.Team 869.0005.832
40 krauq 854.0005.727
41 Random_Seed_43 850.0005.688
42 Plaid Parliament of Pwning 832.0005.566
43 Tuning Machine 820.0005.480
44 Arya 780.0005.228
45 ʕ •ᴥ•ʔ 780.0005.215
46 Rubi di Cubrik 748.0005.012
47 SNI 728.0004.881
48 HLG 728.0004.870
49 IITK_Team2 725.0004.842
50 Slt3brgr 708.0004.730
51 000 700.0004.672
52 DoNotTheCat 696.0004.639
53 seikatsukowareru 680.0004.534
54 signin 586.0003.963
55 TPC 562.0003.811
56 Concerned Capybaras 559.0003.785
57 Cipher Blitz 553.0003.742
58 0xE0F 550.0003.716
59 x 550.0003.709
60 ARESx 550.0003.702
61 yes but oh wait shit what's our team name again 550.0003.695
62 pspspsps 550.0003.689
63 scampia2 532.0003.575
64 InfoSecIITR 525.0003.527
65 dcua 496.0003.347
66 mimicats 484.0003.270
67 Blu3 T3am 461.0003.127
68 CyberStrike 458.0003.103
69 patches 458.0003.098
70 ꒰ᐢ. .ᐢ꒱₊˚⊹ 458.0003.093
71 little eep sea 450.0003.040
72 SirawitTH 450.0003.035
73 HackChurch 450.0003.031
74 JSoyke 450.0003.026
75 Vexation 450.0003.022
76 g00fy_ahh 450.0003.017
77 My4nM4r 450.0003.013
78 PwnSec 450.0003.009
79 singnoob 434.0002.909
80 Del0n1x 425.0002.851
81 IITK_Team1 425.0002.848
82 ConfUSI 425.0002.844
83 CyberHero 425.0002.840
84 BankarKodFörGifflar 425.0002.837
85 JapaneseFrenchToast 425.0002.833
86 Hash Dogs 425.0002.830
87 0rd3rs 419.0002.791
88 C3E3C6 416.0002.769
89 BOMBOCLATTT 350.0002.371
90 FB 350.0002.368
91 Red Cadets 350.0002.365
92 UTY Undercover 350.0002.362
93 _a] 350.0002.359
94 jkck 350.0002.357
95 zomry1 350.0002.354
96 BroncoSec 350.0002.351
97 .;,;. 336.0002.265
98 A.k.a.t.s.u.k.i 325.0002.196
99 physical-lab 325.0002.194
100 TCP1P 325.0002.191
101 734m_N4M3_h3r3 325.0002.189
102 tvt 325.0002.187
103 wezpwnz 325.0002.184
104 s3cure_sh3ll 325.0002.182
105 Hacklabor 325.0002.180
106 4e5cc9bbfb87ddf 325.0002.177
107 spook 325.0002.175
108 SWT 325.0002.173
109 Cyberclowns 325.0002.171
110 spyd3rs 312.0002.091
111 HCS 300.0002.017
112 what 270.0001.836
113 __zEm0__ 261.0001.780
114 RoyalRoppers 236.0001.629
115 haxxers 234.0001.615
116 Frazza 234.0001.613
117 !Time_For_418 233.0001.605
118 G5Victory 225.0001.555
119 ch3cke 225.0001.554
120 AP Linux BC 225.0001.552
121 slefforge 225.0001.550
122 noraneco 225.0001.549
123 299 225.0001.547
124 Waldbaur 225.0001.545
126 UofTCTF 225.0001.542
127 codacker 225.0001.541
128 uCC 225.0001.539
129 fufu 225.0001.538
130 Ng00m4lDhuhr 225.0001.536
131 ac1d 225.0001.535
132 HitMen 225.0001.533
133 taaaaaau 225.0001.532
134 0bug 225.0001.530
135 f34rl3ss 225.0001.529
136 C4RR07 225.0001.528
137 Club Penguin Reloaded 225.0001.526
138 HavocCTF 212.0001.447
139 YellowFrogs 200.0001.374
140 freshwater 200.0001.373
141 f4n_n3r0 200.0001.372
142 RooterX 200.0001.370
143 lars 200.0001.369
144 CYBER & CHILL 162.0001.141
145 qqq 162.0001.139
146 noiceing 136.0000.983
147 OkOkOk 136.0000.982
148 mixy1 136.0000.980
149 kanon 130.0000.943
150 WaterWipes 125.0000.912
151 Animal Farm 125.0000.911
152 kludge 125.0000.910
153 K1nz 125.0000.909
154 vyhatesgrass 125.0000.908
155 3xh4ck5 125.0000.907
156 Davidpb 125.0000.906
157 acdwas 125.0000.905
158 w4nd3r 125.0000.904
159 Kinabler 125.0000.903
160 tr00ps 125.0000.902
161 kupacup 125.0000.901
162 noobmannn 125.0000.900
163 N3WBEES 125.0000.899
164 LITF 125.0000.898
165 Rippers 125.0000.897
166 namdt 125.0000.897
167 ang 125.0000.896
168 albedugi 125.0000.895
169 N30Z30N 100.0000.744
170 ElectronStar 100.0000.743
171 aloevera 100.0000.743
172 taco 100.0000.742
173 Equivalent XCHG 100.0000.741
174 SII 100.0000.740
175 N.O.X.U.S 100.0000.739
176 BOLUSAIBO 100.0000.739
177 Cryptonite 100.0000.738
178 0xT3H 100.0000.737
179 Martial_Law_Enforcer 100.0000.736
180 L4k$h 100.0000.735
181 B1naryREbublik 100.0000.735
182 Hor1zon 100.0000.734
183 whtvr 100.0000.733
184 Olympus OverWatch 100.0000.732
185 ctfrrteam 100.0000.732
186 SBF 100.0000.731
187 寄寄 100.0000.730
188 Gentowo 100.0000.730
189 16j 100.0000.729
190 fuzziesfuzzin 100.0000.728
191 ssongk 100.0000.728
192 Moxifloxacin 100.0000.727
193 TEAM 100.0000.726
194 INDIA 100.0000.726
195 NMB unit 6l 100.0000.725
196 Blind_Virus 100.0000.724
197 followUheart 100.0000.724
198 EvilBunnyWrote 100.0000.723
199 Agents of Pwn 100.0000.722
201 H7Tex 100.0000.721
202 Do_I_Know_You? 100.0000.720
203 kafka 100.0000.720
204 Clubbing Baby Seals 100.0000.719
205 HawkSec 100.0000.719
206 meow 100.0000.718
207 Utaha 100.0000.718
208 definit 100.0000.717
209 NDMHacks 100.0000.716
210 Steelers_Suck 100.0000.716
211 Yesh 100.0000.715
212 puroclan 100.0000.715
213 stsei 100.0000.714
214 wh1te_r0s3s 100.0000.357
215 securityfirst22222 100.0000.357
216 iaccep 100.0000.356
mrcogito91May 11, 2024, 12:09 a.m.

Not working. 404 error


k.eiiMay 11, 2024, 6:06 a.m.

discord invite invalid, plz update


kendomantoMay 11, 2024, 12:49 p.m.

how to register


LegoclonesMay 13, 2024, 8:37 p.m.

Several squares on bad CTF bingo were achieved (admins were even keeping track of the bad CTF bingo squares!):

- Released hints for already-blooded challenges (some with several solves)
- Competition start was delayed by 2 hours because infra broke last minute and it took them forever to get back up. When I say "infra broke", you couldn't even access the CTF platform and sign up/create a team/etc just got a 404.
- They announced CTF would be delayed by 2 hours, but then started it 1.5 hours later
- Challenges were never playtested (and acknowledged by admins) because they were mostly created the day of the CTF.
- They used a custom fork of the GZCTF platform which has lots of pros but had lots of bugs (mostly introduced by their fork). Per-team instances would constantly shut down early, if a teammate opened the challenge description your instance would break, you'd often randomly see thousands of error notifications on the page. Teams were locked after starting the CTF (they're changing that I think).
- To connect to remote challenges, you had to install a rust proxy client which would make the challenge accessible on your own localhost. It is not the most intuitive thing to install, several people had issues initially, and I just don't like the idea of having to use a proxy client to connect to challenges.
- Each challenge had a difficulty assigned to it which was very much off. Normally this wouldn't be a big deal, except the decay rate was based on difficulty. This led to some easy challenges being worth significantly more than harder challenges with a lot less solves.
- While some challenges were good, there were also guessy and painful challenges. A rev challenge was simply a cipher (you copy the "ciphertext" into dcode.fr's cipher detection and immediately got the flag), the only forensics challenges were guessy wav2png conversions using a custom scheme that you were just supposed to guess (otherwise it made it EXTREMELY noisy and very difficult to accurately make out characters).

Overall, I think the CTF would have been much more enjoyable if they:
1) Had planned for the CTF more than a day in advance, playtesting challenges + infrastructure, and
2) Changed some parts of their (custom fork of the) GZCTF platform so it wasn't buggy and didn't require a proxy.


Sign in to comment.