Standoff 13 main stage

Cyber exercise finished

MetalliKO

MetalliKO iron and steel works

The factory has an onsite ore-blending plant with a bucket-wheel excavator and conveyor, a blast furnace, an oxygen-converter section, a rolling mill, and a continuous casting machine. Rolled metal is transported to customers from the finished product storage area

Scope

Outer perimeter:
10.119.11.64/26
Inner perimeter:
10.149.10.0/23

Out of scope:

  1. all servers named logc.<office>.stf
  2. network 10.119.1.0/24
  3. SC SERVERS, SC USERS networks: 10.149.2.0/26, 10.149.4.0/26, 10.149.6.0/26, 10.149.8.0/26, 10.149.10.0/26, 10.149.12.0/26, 10.149.14.0/26, 10.149.16.0/26, 10.149.18.0/26, 10.149.20.0/26, 10.149.22.0/26, 10.149.24.0/26
  4. Accounts starting with "pt*"

Vulnerability reports

The tasks indicate where the vulnerabilities are located: on Gate hosts or in the DMZ and further within the infrastructure. Reports on vulnerabilities found in Gate are automatically verified upon flag submission. Reports on vulnerabilities found in the DMZ and within the infrastructure are verified by the jury.
When reporting a vulnerability, make sure to note where it was found. If it was discovered on Gate hosts, open the report in the relevant tab, select the vulnerability, and submit the flag. If it was found in the DMZ and further within the infrastructure, fill out a report for the jury.

Attacker metrics

Critical events
117reports
submitted
95critical events
triggered
Loading data
Difficulty:
Low
Medium
High
Master
Vulnerabilities
0vulnerabilities
discovered
Severity:
Critical: undefined
High: undefined
Medium: undefined
Low: undefined

Defender metrics

Maybe False
Monitoring
ОЦК Минпромторга России
Monitoring
0
incidents
recorded
0
critical events
investigated

Results

Rank
Team
Triggered events
Event points
Discovered vulnerabilities
Vulnerability points
Bonus and penalty points
Total points
1

True0xA3

10
40,702
4
1,300
42,002
2

DreamTeam

8
20,167
5
1,300
21,467
3

cR4.sh

4
15,070
5
1,600
16,670
4

TSARKA

5
13,849
2
500
14,349
5

DeteAct × SPbCTF

7
10,965
9
1,800
12,765
6

ℭ𝔲𝔩𝔱

5
8,375
5
1,000
9,375
7

Jet_Infosystems

4
5,450
4
800
6,250
8

EvilBunnyWrote

5
4,644
6
1,500
6,144
9

GISCYBERTEAM

4
3,915
6
1,300
5,215
10

only_f4st

5
4,500
4
700
5,200
11

Invuls

4
3,000
7
1,800
4,800
12

SecWare

4
3,000
6
1,600
4,600
13

Wetox

3
3,000
2
1,000
4,000
14

Radiant0x2A

3
3,000
3
800
3,800
15

Bulba Hackers

3
3,000
4
800
3,800
16

5HM3L

2
2,000
3
500
2,500
17

Wardagen

2
2,000
3
500
2,500
18

Kibers

2
2,000
2
400
2,400
19

Crypto Apes

3
1,109
3
500
1,609
20

4ak4ak

2
1,000
2
400
1,400
Overview
Critical events