Background

DISCLAIMER: The following is a FICTITIOUS story meant for providing realistic context for the Codebreaker Challenge and is not tied in any way to actual events.

The Department of Homeland Security (DHS) has requested NSA’s assistance in investigating unusual network activity within a large SCADA system. The system controls critical infrastructure for multiple cities, so it’s imperative that an assessment is carried out immediately. If any intrusions are found, then we need to identify how the systems were compromised and neutralize the threat. DHS is concerned that someone might be attempting to take control of the distributed sensor nodes and form a large botnet. If this happens, they could use it to wreak havoc across the cities and potentially launch DDoS attacks against other critical networks. We need your help to stop this from happening!

For this challenge you will be given a series of six tasks, each increasing in difficulty, with the ultimate goal of completely neutralizing the botnet. These tasks are summarized as follows:

  • Setup a test instance of the system (Task 0)
  • Analyze suspicious network traffic (Tasks 1 and 2)
  • Analyze critical system components for vulnerabilities (Tasks 3 and 4)
  • Perform forensic analysis of a compromised endpoint (Task 5)
  • Craft an exploit for the botnet server and devise a strategy to clean the infected endpoints (Task 6)

Are YOU up to the challenge?!

Getting Started

Sign in to start the challenge!