Felix Dreissig
Felix Dreissig
The order HTTP headers appears to be deterministic, which could theoretically facilitate checker fingerprinting. We might be able to add randomization by monkey-patching requests from the checker runner or similar....
It would be nice to have Grafana (or similar) dashboards for what happened during a CTF – flag submissions primarily come to my mind. I see three implementation options: 1....
There could be a way to manually mark the checker for a service as defective. That would be shown on the scoreboard and maybe be reflected in the scoring.
There could be an automated way to alert of "first blood" events, i.e. the first successfully submitted flag for a service. Maybe, this could also be handled through #31.
After the CTF, you want to keep the website around but not have an (at some point outdated) Django instance running. Instead, it should just be served as static HTML....
Currently, asset files like sponsor images or network maps either have to be uploaded to the server manually or be included in the Debian package. Both options are not nice,...
FAUST CTF's current way to send emails to all teams is rather hacky. In my opinion, a nice solution would be silently adding all addresses to an (of course moderated)...
I like setting "Behavior on pasting URL when nothing is selected" to "Insert ". This way, URLs are pasted as plain text which is still guaranteed to be clickable under...