Announcement

Collapse
No announcement yet.

Info on CyberNinja Range at DEF CON 24

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Info on CyberNinja Range at DEF CON 24

    I am not affiliated with this event and nothing I write is authoritative for it.

    Originally posted by details
    Cyber Ninja Range Contest

    Where? DEFCON - Bally's / Paris Las Vegas, NV

    When? Contest hours:
    •10am – 5:30pm Thursday August 4, 2016
    •10am – 5:30pm Friday August 5, 2016
    •10am – 1:00pm Saturday August 6, 2016
    (All times PDT Pacific Standard Time)

    WIIFM? The Cyber Ninja Range will challenge all comers; from novice through advanced, and transport entrants into the mind of a hacker to understand their targets, technology and thought processes so they can better defend their organization. The range Participation will also benefit you by:
    •Honing your security skills
    •Increasing your security awareness
    •Competing with some of the best Cybersecurity professionals in the world!

    Win Prizes!
    •1st Prize – Most Points – Ninja Ultra Blender
    •2nd Prize – Most Points –PWNE Box plus year subscription to Online Sensei Series
    •3rd Prize – Drawing/Raffle – iPad mini 16GB Wi-Fi

    Plus many more prizes including:
    •Ninja Swords
    •Ninjawear
    •Ninja Stickers

    What the 411 to win Prizes?
    Entrants of the Cyber Ninja Range Contest will be awarded a designated amount points and contest drawing tickets based on the level of their successes attacking their respective ranges. (See chart below)

    TaskPoints/Tickets Received
    Find a machine1 points/tickets per machine found
    Own a box2 points/tickets per box
    Crack password2 points/tickets per password cracked
    Transfer file from machine2 points/tickets per file
    Plant file on the machine2 points/tickets per file planted
    Trojan and backdoor2 points/tickets per planted item
    Add a user2 points/tickets per user added
    Web Apps3 points/tickets per web app hacked
    Own a firewalled box4 points/tickets per box
    Compromise Windows 2008 or 201210 points/tickets
    Bonus machines (secret)25 points/tickets per machine

    Note: A maximum of 5X (5 times) the number of points for any given task per day limit. (Example: Task/Own a box 2 tickets per box. If participant can own 5 Boxes per day and accumulate 10 points max for the task.)

    The contest drawing will take place on Saturday August 6, 2016 during the closing ceremonies/raffle. You must be present to win!
    No purchase necessary to enter, and no entrance or participation fee applies, but prior online registration is required to participate.
    Participants must register online at https://www.secureninja.com/NinjaRange or at the Secure Ninja Contest Table at the DEFCON.

    Who built the ranges?
    The Ninja Black Belt Cyber Range Contest @ DEFCON 2016 was developed by SecureNinja Chief Technology Officer, Joe McCray
    SecureNinja CTO Joe McCray is an Air Force Veteran and has been involved with cybersecurity for over 10 years. Joe has been involved in over 150 very high level pentesting assessments and utilizes his “real world hacking accomplishments” to ensure his clients and students obtain effective knowledge transfer. His extensive experience and deep knowledge, mixed with his comedic style has lead Joe to be one of the most highly sought after speaking experts in the industry. Joe often makes speaking appearances and gives seminars at major events in the security community such as Black Hat, DEFCON, BruCon, DEFCON, Hacktivity and more. Joe is the recipient of the 2009 EC-Council Instructor Circle of Excellence Award and the 2010 EC-Council Instructor of the Year Award. In addition he is the founder and CEO of Strategic Security, Inc. an IT Security consulting firm that provides in-depth technical security assessments of your network, web application, and regulatory compliance gap analysis

    OFFICIAL RULES
    NO PURCHASE NECESSARY TO ENTER OR WIN
    1. DESCRIPTION
    The SecureNinja “Cyber Ninja Range Contest will challenge all comers; from novice through advanced skill levels and will transport all entrants into the mind of a hacker to understand their targets, technology and thought processes so in the end they can better defend their organization.
    2. SPONSOR
    SecureNinja 901 N. Pitt Street - Suite 105 * Alexandria, VA 22314 * Phone: 703.535.8600
    3. ELIGIBILITY VOID WHERE PROHIBITED
    The Cyber Range is open to persons who are legal residents of one of the 50 United States, the District of Columbia (excluding Guam, Puerto Rico, and all other U.S. territories and possessions) or Canada (excluding the province of Quebec). Void where prohibited by law. Participants must have reached the age of majority in their state or province of residence at the time of entering the Cyber Range Contest in order to participate. Persons in any of the following categories are NOT eligible to enter, participate, or win in the Cyber Range Contest: (a) persons who on or after August 1,2016 at 12:01 a.m. Eastern Standard Time (“EST”) were or are officers, directors or employees of Sponsor or any of its respective parent, subsidiary, or affiliated companies, or service agencies, or independent contractors of any of the above organizations; (b) individuals engaged in the development, production, or distribution of materials for the Cyber Range Contest; and (c) persons who are immediate family members (defined as spouse or biological or step- mother, father, sister, brother, daughter, or son and each of their respective spouses) of any person in any of the preceding categories, regardless of where they live, and/or individuals who reside in the same household, whether related or not, as any person in any of the preceding categories. Any questions or issues concerning eligibility shall be determined at the sole discretion of the Sponsor.

    4. WINNERS
    The prize awards and contest drawing will take place on Saturday August 6, 2016 during the closing ceremonies/raffle. You must be present to win! All entrants will be sent an email prior as to exact time and location for the drawing.
    Contestants may only win 1 prize in the contest. (ex. If one person gets the most points and also has a ticket drawn in the raffle they can only win 1 prize and not 2 prizes)
    If a potential winner is found to be ineligible, is not in compliance with the Official Rules, or declines to accept the prize, the prize in question will be forfeited, and in the Sponsor’s sole discretion, may or may not be awarded to an alternate potential winner. All decisions of the Sponsor are final and binding. Any right to receive a prize is non-assignable and non-transferable, and no prize substitution, exchange, or cash equivalent will be allowed, except by Sponsor who reserves the right to substitute a prize of equal or greater value in case of unavailability of a prize as determined solely by Sponsor. All details and other restrictions of prizes not specified in the Official Rules will be determined by Sponsor in its sole discretion.

    Winners shall be solely responsible for any required federal, state, provincial and/or local taxes, sales tax, surcharges, service charges, delivery, processing and handling fees, and all other costs incurred in claiming the prize. Where applicable, winners will be issued a 1099 Tax Form following the receipt of a prize for the retail value of the prize. If required by law, Sponsor reserves the right to withhold and remit to the appropriate taxing authorities the amount of any tax or taxes due. With respect to non-cash prizes, it may be legally necessary, as determined by Sponsor, for the prize winner to pay the amount of any tax before receiving the prize. All costs and expenses not expressly set forth herein shall be solely the winners’ responsibility.

    If Participants have any questions regarding the rules or scoring of the Cyber Range Contest, Participant should promptly contact Sponsor in advance of the start date of the Cyber Range Contest. Any issues or objections regarding the Cyber Range Contest must be in writing and delivered to the Sponsor. The Sponsor shall be the final arbitrator of any such issue or objection. If an issue or objection cannot be resolved to the Sponsor's satisfaction, the affected Participant will be deemed ineligible to win a prize, but the Official Rules will otherwise continue to govern the affected Participant and the Cyber Range Contest. A decision or ruling by the Sponsor is final and non-appealable.

    Winners will be required to sign and return affidavits of compliance and eligibility, a liability release, and where lawful, a publicity release (collectively, "Prize Claim Documents"). Confirmation of prize winners is subject to Sponsor's verification of the Prize Claim Documents.
    5. DATA PRIVACY
    All Participants agree that personal data, especially name and address, may be processed, stored, and otherwise used for the purposes and within the context of the Cyber Range Contest and any opt-in a Participant may have agreed to during the registration process. Participants further agree that the data may also be used by the Sponsor in order to check Participants’ identities, emails, postal addresses, telephone numbers, or to otherwise verify the eligibility to participate in the Cyber Range Contest.
    6. RELEASE
    AS AN PARTICIPANT IN EITHER CYBER RANGE ( EITHER NOVICE CONTESTE OR ADVANCED CONTEST), YOU AGREE THAT THE SPONSOR AND ITS SUBSIDIARIES, AGENTS, DIRECTORS, OFFICERS, EMPLOYEES, REPRESENTATIVES, AND ASSIGNS (THE “RELEASED PARTIES”) (A) SHALL NOT BE RESPONSIBLE OR LIABLE FOR ANY LOSSES, DAMAGES, OR INJURIES OF ANY KIND WHATSOEVER RESULTING FROM YOUR PARTICIPATION IN THE EITHER CYBER RANGE CONTEST, INCLUDING ACCESS TO AND USE OF SPONSOR’S DATA CENTER, SYSTEM, SOFTWARE, WEBSITE, OR ANY OTHER CYBER RANGE CONTEST-RELATED ELEMENT OR ACTIVITY, OR FROM YOUR ACCEPTANCE, RECEIPT, POSSESSION AND/OR USE OR MISUSE OF THE PRIZE(S), AND (B) WITHOUT LIMITING THE FOREGOING, ALL ELEMENTS OF THE EITHER CYBER RANGE CONTEST ARE PROVIDED AS IS AND WITHOUT ANY WARRANTY, REPRESENTATION, OR GUARANTEE EXPRESS OR IMPLIED, IN FACT OR IN LAW, WITH RESPECT TO THE EITHER CYBER RANGE CONTEST OR PRIZES, INCLUDING, WITHOUT LIMITATION, TO MERCHANTABILITY, QUALITY OR FITNESS FOR A PARTICULAR PURPOSE.

    By entering the Either Cyber Range Contest, each Participate agrees: (i) to be bound by the Official Rules and by all applicable laws and decisions of Sponsor which shall be binding and final; (ii) to waive any rights to claim ambiguity with respect to the Official Rules; (iii) to waive all of his or her rights to bring any claim, action, or proceeding against Released Parties in connection with Either Cyber Range Contest; and (iv) to forever and irrevocably agree to release, defend, indemnify, and hold harmless Released Parties from any and all claims, lawsuits, judgments, causes of action, proceedings, demands, fines, penalties, liability costs and expenses (including, without limitation, reasonable outside attorneys’ fees) for any injuries, losses or damages of any kind to persons, including death, or property resulting in whole or in part, directly or indirectly, from: (a) the Either Cyber Range Contest, including but not limited to any Cyber Range Contest-related activity or element thereof, and the Participant’s entry, participation, or inability to participate in the Cyber Range Contest, and (b) the violation of any third party privacy, personal, publicity, or proprietary rights.
    7. LIMITATION OF LIABILITY
    The Released Parties assume no responsibility for any damage to your computer system, laptop, or notebook, which is occasioned by accessing the Cyber Range Contest data center, software, system, and/or Website or participating in the Cyber Range Contest, or for any computer system, phone line, hardware, software, or program malfunctions, or other errors, failures, delayed computer transmissions or network connections that are human or technical in nature. Without limiting the generality of the foregoing, Sponsor is not responsible for lost, interrupted, inaccessible, or unavailable networks, servers, satellites, Internet Service Providers, websites, or other connections; or for miscommunications, failed, jumbled, scrambled, delayed, or misdirected computer, telephone, or cable transmissions; or for any technical malfunctions, failures, difficulties or other errors of any kind or nature; or for the incorrect or inaccurate capture of information, or the failure to capture any information. Sponsor reserves the right in its sole discretion to disqualify any individual who is found to be tampering with the entry process or the operation of the Cyber Range Contest or the Cyber Range Contest Website or system, to be acting in violation of the Official Rules, or to be acting in an unsportsmanlike or disruptive manner, or with the intent to disrupt or undermine the legitimate operation of the Cyber Range Contest, or to annoy, abuse, threaten, or harass any other Participant or Sponsor, and Sponsor reserves the right to seek damages and other remedies from any such person to the fullest extent permitted by law.
    8. INDEMNITY
    To the maximum extent permitted by law, by participating in the Cyber Range Contest, Participant agrees to indemnify the Released Parties from any liability, claim, demand, loss, damage, cost, and expenses arising from Participant’s non-compliance with the Official Rules for which Sponsor will or may become liable, including violation of third party rights, including without limitation, intellectual property, confidentiality, privacy, trade secret, and other rights.
    9. FORCE MAJEURE
    In the event Sponsor is prevented from awarding prize(s) or continuing with the Cyber Range Contest as contemplated herein by any event beyond its control, including but not limited to fire, flood, natural or man-made epidemic, earthquake, explosion, labor dispute or strike, act of God or public enemy, satellite or equipment failure, computer or system failure, riot or civil disturbance, terrorist threat or activity, war (declared or undeclared) or any federal, state, or local government law, order, or regulation, public health crisis, order of any court or jurisdiction, or other cause not reasonably within Sponsor’s direct control (each a “Force Majeure” event or occurrence), then subject to any governmental approval which may be required, Sponsor shall have the sole right to modify, suspend, or terminate the Cyber Range Contest. If the Cyber Range Contest is terminated for Force Majeure before the designated end date or time, Sponsor may, if possible, select the winner(s) from the eligible, non-suspect participants prior to such termination, modification, or suspension.
    10. SEVERABILITY
    The invalidity or unenforceability of any provision of the Official Rules shall not affect the validity or enforceability of any other provision. In the event that any provision is determined to be invalid or otherwise unenforceable or illegal, the Official Rules shall otherwise remain in effect and shall be construed in accordance with their terms as if the invalid or illegal provision were not contained herein.
    11. CHOICE OF LAW
    All issues or questions regarding the construction, validity, interpretation, and enforceability of the Official Rules, or the rights and obligations of the Participants and Sponsor in connection with the Cyber Range Contest, shall be governed by, and construed in accordance with, the laws of the State of Virginia without giving effect to any choice of law or conflict of law rules, which would cause the application of the laws of any jurisdiction other than the State of Virginia. Participants agree that any demand, dispute, claim, or cause of action relating to the Cyber Range Contest shall be resolved individually without resort to any form of class action and pursuant to Section 5 herein. Participants hereby consent to the jurisdiction and venue residing exclusively within the federal or state courts located in Arlington County, Alexandria, VA, USA.
    12. RULES OF CONDUCT
    1.Participants are expected to behave professionally at all times.
    2.Participants will not tamper with, modify, or attempt to manipulate any element of the competition including scoring and management systems.
    3.Denial of Service (DOS) attacks are not allowed.
    4.Participants will not reboot, shutdown, or intentionally disable the services or functions of the target systems.
    5.Participants will not conduct any offensive actions that scan, attack, or interfere with another participant’s system.
    6.Participants will not enter another participant’s workspace, nor attempt to deceive, hoax, or assist other participants by any means.
    7.Participants must compete without “outside assistance” from non-participants.
    8.Participants may not publicly disclose information about the competition or targets or their means of obtaining them without the express written consent of SecureNinja.
    9.Participants understand that violation of this code of conduct or of these rules is grounds for their immediate dismissal and disqualification from the competition, as well as removal from the competition area.
    13. PERMITTED MATERIALS
    1.Participants may not connect more than one (1) laptop or notebook computer to the cyber range network unless specifically authorized to do so. Virtual machines may be used as long as only one (1) IP address is in use.
    2.Memory sticks, flash drives, removable drives, CD/DVDROMs, electronic media, or other similar electronic devices are not allowed unless specifically authorized.
    3.Printed reference materials (books, magazines, checklists, etc.) are permitted.
    4.All competition materials, including equipment, handouts, and participant-generated reports and documents, must remain in the competition area unless specifically authorized. Only materials brought into the competition area may be removed after the competition concludes.
    14. QUESTIONS AND DISPUTES
    1.Participants should work with the competition staff to resolve any questions regarding the rules of the competition or scoring methods before the competition begins.
    2.Should any question arise about scoring, the scoring engine, or how they function, participants should immediately contact the competition staff.
    3.Protests must be presented in writing to the competition staff as soon as possible. The competition officials will be the final arbitrators for any protests or questions arising before, during, or after the competition. Rulings by the competition officials are final. All competition results are official and final as of the end of the competition.
    15. SCORING
    1.Scoring will be based on completing tasks that will be provided throughout the competition. See chart above.
    2.Scores/Ticket amounts will be maintained by the competition officials and may be shared at the end of the competition. Running totals may be provided during the competition. Rankings for some portion of the top participants may be provided during the competition.
    3.Attacking or otherwise interfering with the scoring system is specifically prohibited.
    Site: https://www.secureninja.com/NinjaRange
Working...
X