Teams


- HackStreet Boys

    "Innovate. Iterate. Dominate."



# Flag Box
1 Score Board Miscellaneous
2 Error Handling Security Misconfiguration
3 Login Admin Injection
4 View Basket Broken Access Control
5 Bully Chatbot Miscellaneous
6 CAPTCHA Bypass Broken Anti Automation
7 Confidential Document Sensitive Data Exposure
8 Forged Review Broken Access Control
9 Payback Time Improper Input Validation
10 Privacy Policy Miscellaneous
11 Empty User Registration Improper Input Validation
12 Visual Geo Stalking Sensitive Data Exposure
13 Admin Section Broken Access Control
14 Five-Star Feedback Broken Access Control
15 Meta Geo Stalking Sensitive Data Exposure
16 Exposed Metrics Sensitive Data Exposure
17 Poison Null Byte Improper Input Validation
18 Easter Egg Broken Access Control
19 Login Jim Injection
20 Login Bender Injection
21 Forgotten Sales Backup Sensitive Data Exposure
22 Reset Morty's Password Broken Anti Automation
23 Forgotten Developer Backup Sensitive Data Exposure
24 Password Strength Broken Authentication
25 Zero Stars Improper Input Validation
26 Admin Registration Improper Input Validation
27 Bonus Payload XSS
28 DOM XSS XSS

#2 - Pech

    "Wij hebben alleen maar pech"



# Flag Box
1 DOM XSS XSS
2 Score Board Miscellaneous
3 Bonus Payload XSS
4 Error Handling Security Misconfiguration
5 Forged Feedback Broken Access Control
6 Privacy Policy Miscellaneous
7 Login Admin Injection
8 View Basket Broken Access Control
9 Exposed Metrics Sensitive Data Exposure
10 Admin Registration Improper Input Validation
11 Trofee Miscellaneous
12 Admin Section Broken Access Control
13 Five-Star Feedback Broken Access Control
14 Database Schema Injection
15 Zero Stars Improper Input Validation
16 Meta Geo Stalking Sensitive Data Exposure
17 Empty User Registration Improper Input Validation
18 Easter Egg Broken Access Control
19 Forgotten Sales Backup Sensitive Data Exposure
20 Repetitive Registration Improper Input Validation
21 Poison Null Byte Improper Input Validation
22 Forgotten Developer Backup Sensitive Data Exposure
23 Misplaced Signature File Sensitive Data Exposure
24 Confidential Document Sensitive Data Exposure
25 Exposed credentials Sensitive Data Exposure
26 Privacy Policy Inspection Security through Obscurity
27 Password Strength Broken Authentication

#3 - Ralstars

    "Vraag maar aan chatgpt"



# Flag Box
1 Score Board Miscellaneous
2 Login Admin Injection
3 Error Handling Security Misconfiguration
4 Confidential Document Sensitive Data Exposure
5 DOM XSS XSS
6 Privacy Policy Miscellaneous
7 Exposed Metrics Sensitive Data Exposure
8 CAPTCHA Bypass Broken Anti Automation
9 Password Strength Broken Authentication
10 Admin Section Broken Access Control
11 Login Bender Injection
12 Empty User Registration Improper Input Validation
13 Admin Registration Improper Input Validation
14 View Basket Broken Access Control
15 Login Bjoern Broken Authentication
16 Web3 Sandbox Broken Access Control
17 Login Amy Sensitive Data Exposure
18 Login MC SafeSearch Sensitive Data Exposure
19 Login Support Team Security Misconfiguration
20 Poison Null Byte Improper Input Validation
21 Easter Egg Broken Access Control

#4 - Team Average

    "Gemiddeld is genoeg"



# Flag Box
1 Score Board Miscellaneous
2 Privacy Policy Miscellaneous
3 Bully Chatbot Miscellaneous
4 Mass Dispel Miscellaneous
5 Exposed Metrics Sensitive Data Exposure
6 DOM XSS XSS
7 Bonus Payload XSS
8 Error Handling Security Misconfiguration
9 Security Policy Miscellaneous
10 Confidential Document Sensitive Data Exposure
11 Web3 Sandbox Broken Access Control
12 Password Strength Broken Authentication
13 Login Admin Injection
14 Admin Section Broken Access Control
15 Blockchain Hype Security through Obscurity
16 Meta Geo Stalking Sensitive Data Exposure
17 Visual Geo Stalking Sensitive Data Exposure
18 User Credentials Injection
19 Database Schema Injection
20 Login Jim Injection
21 Forged Feedback Broken Access Control
22 Five-Star Feedback Broken Access Control
23 Zero Stars Improper Input Validation
24 Empty User Registration Improper Input Validation
25 Repetitive Registration Improper Input Validation
26 Admin Registration Improper Input Validation

#5 - The Hackstreet Boys

    "I want it that way"



# Flag Box
1 DOM XSS XSS
2 Score Board Miscellaneous
3 Error Handling Security Misconfiguration
4 Privacy Policy Miscellaneous
5 Bully Chatbot Miscellaneous
6 Bonus Payload XSS
7 Login Admin Injection
8 Confidential Document Sensitive Data Exposure
9 Password Strength Broken Authentication
10 View Basket Broken Access Control
11 Empty User Registration Improper Input Validation
12 Payback Time Improper Input Validation
13 Visual Geo Stalking Sensitive Data Exposure
14 Meta Geo Stalking Sensitive Data Exposure
15 Admin Section Broken Access Control
16 Security Policy Miscellaneous

#6 - AGOAT

    "2Win"



# Flag Box
1 Score Board Miscellaneous
2 Privacy Policy Miscellaneous
3 Confidential Document Sensitive Data Exposure
4 Error Handling Security Misconfiguration
5 Bully Chatbot Miscellaneous
6 View Basket Broken Access Control
7 Forged Review Broken Access Control
8 Exposed Metrics Sensitive Data Exposure
9 Forged Feedback Broken Access Control

#7 - KillerArch



# Flag Box
1 Score Board Miscellaneous
2 DOM XSS XSS
3 Bonus Payload XSS
4 Zero Stars Improper Input Validation