Offical URL: https://ctf.bsidessf.net/

The BSidesSF CTF will be kicking off at 4:00pm PDT 04/25/2025 and will run until 4:00pm PDT 04/27/2025. You can register to play at https://ctf.bsidessf.net/register. We have Crypto, Forensics, Web, Mobile and Pwn challenges spread across all difficulty levels.

If you are new to playing CTFs and would like to find folks to play with, check out the "find-a-team" channel on our [Discord](https://discord.gg/QxFf8crUPw).

If you are planning to attend BSidesSF in person, you can play our onsite challenges that involve QR codes and lock-picking when the main con kicks off on Saturday (04/26/2025).

Teams must be onsite to be eligible for prizes, 1 Amazon gift card per team -

* 1st prize - 1500$

* 2nd prize - 750$

* 3rd prize - 250$

Looking forward to watching you solve our challenges! Good luck and have fun!

no logo

CTF events

NameWeight
BSidesSF 2025 CTF25.00
BSidesSF 2024 CTF0.00
BSidesSF CTF 202335.00
BSidesSF 2022 CTF23.94
BSidesSF 2021 CTF23.94
BSidesSF 2020 CTF25.00
BSidesSF 2019 CTF25.00
BSidesSF CTF 20180.00
Related tags: shell linux decryption programming forensics hacking packet analysis python reversing forensic reverse engineering c++ network c game cryptography stego c stuff nothing network hacking steganography call for food guessing web exploitation networking cryptanalysis code-analysis algorithms crytography reverse systems - servers vulnerability webshell owasp xss exploit enumeration scanning kali nmap sqli all web200 bruteforce decompile joy aes-cbc crypto csaw pwn pwnable heap-overflow heap aes bitflipping cbc misc sqlinjection shellcode z3 rev pwntools binary memory rever url_parse php video urlencode urldecode ecc cookies ajax inspect-element trivia stackoverflow socket luks johntheripper hashcat blind sse search mobile base64 apktools rsa dos masterkey tetris android miscellaneous caesar hex xor rsa-crypto cryptography-rsa stack_overflow ritsec csp-bypass csp cssinjection websocket engineering 101 mersenne xxe cloud devsecops codereview industrial bash pcap rop beginner_friendly randomness ecb stack-buffer-overflow libc __free_hook format-string canary gcp kubernetes lfi tcache-poisoning tcache_perthread_struct ciphertexts scraping python3 knapsack pohlig-hellman lll curves tamilctf injection cookie ssti python-exploitation csrf ☆☆☆☆☆ baby zaj cve easy dtmf blockchain beginner location osint proxy re ai on-site