Global rank
#7
All-time leaderboard
Total points
7,200
Across CTF seasons
Challenges solved
3
Distinct arenas
Captures solved
16
3155h 27m total
Activity
Submission rhythm.
Monthly captures
Monthly Captures
Submissions
Public captures.
| Challenge | Objective | Status | Score |
|---|
| Challenge | Objective | Status | Score |
|---|---|---|---|
NimbusStack Incident: The Poisoned Pipeline | Prove you understood the full chain. Then close the incident. | Completed | 450 pts |
NimbusStack Incident: The Poisoned Pipeline | A signature is only as strong as what it covers. | Completed | 450 pts |
NimbusStack Incident: The Poisoned Pipeline | Read the rules carefully. Then use them against the system. | Completed | 450 pts |
NimbusStack Incident: The Poisoned Pipeline | Not everything stored as config should be treated as safe. | Completed | 450 pts |
NimbusStack Incident: The Poisoned Pipeline | Every platform has an entry point. Find it | Completed | 450 pts |
NexaCorp: Zero Credentials | You walk through a door using an identity you forged | Completed | 450 pts |
NexaCorp: Zero Credentials | The server fetches something internal on your behalf | Completed | 450 pts |
NexaCorp: Zero Credentials | You gave yourself access the system never intended to grant | Completed | 450 pts |
NexaCorp: Zero Credentials | A credential meant for someone else ends up in your hands | Completed | 450 pts |
NexaCorp: Zero Credentials | Something was left exposed that shouldn't be public | Completed | 450 pts |
VulnCorp | What is the flag from the secrets vault accessed by exploiting the fail-open authentication bypass? | Completed | 450 pts |
VulnCorp | What is the flag returned by the exfiltration callback endpoint of the backdoored supply chain package? | Completed | 450 pts |
VulnCorp | What is the flag extracted from the AI assistant's internal configuration through prompt injection? | Completed | 450 pts |
VulnCorp | What is the flag retrieved from the internal cloud metadata service accessed via Server-Side Request Forgery? | Completed | 450 pts |
VulnCorp | What is the flag received after verifying the admin credentials obtained through SQL injection and password hash cracking? | Completed | 450 pts |
VulnCorp | What is the flag obtained from the debug admin panel accessed through secrets leaked in the exposed git commit history? | Completed | 450 pts |