Web
Applications, APIs, logic flaws
A 48-hour international capture-the-flag built for curious minds, careful teams, and anyone who wants to learn by taking systems apart.
The official CTF platform is available. Competition access and final rules will be confirmed before the event opens.
Twelve categories cover web systems, infrastructure, intelligence, and the new attack surface created by AI.
Applications, APIs, logic flaws
Disk, memory, artifacts
Hidden data and media
Protocols, traffic, packets
Ciphers, keys, number theory
Memory and binary exploitation
Disassembly and cracking
Prompt injection and AI security
Firmware, IoT, embedded systems
Smart contracts and chains
Open-source intelligence
Everything else that bites
Everything you need to understand before the platform opens.
Enter solo or with a team of up to five. Bring curiosity, patience, and a way to share what you find.
Move across 70+ planned challenges spanning technical domains from web exploitation to AI and OSINT.
Make your final submissions before the 48-hour window closes at 2:00 PM UTC on Sunday.
Challenges are designed around reasoning, creativity, and security intuition. Integrity rules and monitoring protect a fair competition.