Let’s hack a website!

Company
by Maksymilian Wojczuk

At the beginning of March we had a web hacker’s day! We divided into 4 teams and each team’s goal was to hack into a specially predesigned web application. The first task was to find the scoreboard, which was hidden on the website. Later on, It was only harder… 

enigma - - appliscale.io

Everyone was so fascinated by the challenge, that we totally lost the track of time. Maybe some of the motivation came from the publicly accessible live scoreboard, but it only showed that every team did great and had managed to discover and exploit a lot of vulnerabilities in the web application!

We can brag that every team has managed to break into the admin account (fortunately every participant was running the application locally using docker :D) and mess up with the database using SQL Injection. Surely, it has to be admitted that determination until the very end had the biggest impact on the overall results. Kudos to all the teams for all achievements!

CTFd scoreboard 2020 03 06T09 40 41 - - appliscale.io
Appliscale delivers scalable, high-performance tech solutions, specializing in cloud migration, system architecture, and custom software to empower businesses worldwide.
Poland
Życzkowskiego 14
31-864 Kraków
1st floor
KPT Building
Ireland
Whiterock South
Wexford
Appliscale sp. z o.o. seated in Kraków, address: ul. prof. Michała Życzkowskiego 14, 31-864 Kraków District Court for the city of Krakow, 11th Commercial Division of the National Court Register registration number: 0000592380 Tax Identification Number: 9452189348 share capital: 100 000 zł.