Standoff 13 main stage

Electric power industry
Electric power industry
Electricity is generated at thermal and hydroelectric power plants, as well as by wind turbines and a solar power plant. The generated electricity is delivered through power lines to substations that feed cities, factories, and transport. All substations are managed by a dispatch control center. Smart meters send readings directly to the energy company.

Scope

Outer perimeter:
10.119.10.0/26
Inner perimeter:
10.149.0.0/23

Out of scope:

  1. all servers named logc.<office>.stf
  2. network 10.119.1.0/24
  3. SC SERVERS, SC USERS networks: 10.149.2.0/26, 10.149.4.0/26, 10.149.6.0/26, 10.149.8.0/26, 10.149.10.0/26, 10.149.12.0/26, 10.149.14.0/26, 10.149.16.0/26, 10.149.18.0/26, 10.149.20.0/26, 10.149.22.0/26, 10.149.24.0/26
  4. Accounts starting with "pt*"

Vulnerability reports

The tasks indicate where the vulnerabilities are located: on Gate hosts or in the DMZ and further within the infrastructure. Reports on vulnerabilities found in Gate are automatically verified upon flag submission. Reports on vulnerabilities found in the DMZ and within the infrastructure are verified by the jury.
When reporting a vulnerability, make sure to note where it was found. If it was discovered on Gate hosts, open the report in the relevant tab, select the vulnerability, and submit the flag. If it was found in the DMZ and further within the infrastructure, fill out a report for the jury.
Attacker metrics
Critical events
24reports
submitted
21critical events
triggered
Loading data
Difficulty:
Low
Medium
High
Master
Vulnerabilities
0vulnerabilities
discovered
Severity:
Critical: undefined
High: undefined
Medium: undefined
Low: undefined
Defender metrics
Your shell not pass
Attack response
0
incidents
recorded
0
critical events
investigated

Results

Rank
Team
Triggered events
Event points
Discovered vulnerabilities
Vulnerability points
Total points
1
DreamTeam
7
17,550
1
300
17,850
2
ℭ𝔲𝔩𝔱
5
6,667
2
400
7,067
3
True0xA3
2
5,168
2
400
5,568
4
Invuls
2
4,011
3
500
4,511
5
TSARKA
1
2,550
3
500
3,050
6
Jet_Infosystems
1
2,168
2
400
2,568
7
DeteAct × SPbCTF
1
1,843
1
300
2,143
8
Kibers
1
1,567
2
400
1,967
9
SecWare
0
0
3
500
500
9
only_f4st
0
0
3
500
500
9
EvilBunnyWrote
0
0
3
500
500
9
Crypto Apes
0
0
3
500
500
10
MG.RT
1
0
2
400
400
10
GISCYBERTEAM
0
0
2
400
400
10
Bulba Hackers
0
0
2
400
400
10
Radiant0x2A
0
0
2
400
400
10
Wardagen
0
0
2
400
400
10
T.H.R.E.A.T
0
0
2
400
400
10
5HM3L
0
0
2
400
400
10
RHTxF13xSHD
0
0
2
400
400
10
4ak4ak
0
0
2
400
400
11
Wetox
0
0
1
300
300
11
Baguette2Pain
0
0
1
300
300
Overview
Critical events