NexaCorp: Zero Credentials | A credential meant for someone else ends up in your hands | Completed | 450 pts |
NexaCorp: Zero Credentials | Something was left exposed that shouldn't be public | Completed | 450 pts |
VulnCorp | What is the flag from the secrets vault accessed by exploiting the fail-open authentication bypass? | Completed | 450 pts |
VulnCorp | What is the flag returned by the exfiltration callback endpoint of the backdoored supply chain package? | Completed | 450 pts |
VulnCorp | What is the flag extracted from the AI assistant's internal configuration through prompt injection? | Completed | 450 pts |
VulnCorp | What is the flag retrieved from the internal cloud metadata service accessed via Server-Side Request Forgery? | Completed | 450 pts |
VulnCorp | What is the flag received after verifying the admin credentials obtained through SQL injection and password hash cracking? | Completed | 450 pts |
VulnCorp | What is the flag obtained from the debug admin panel accessed through secrets leaked in the exposed git commit history? | Completed | 450 pts |