Medium difficulty challenges.

This game was one of 3 qualifiers for the HMGCC & BAE face to face challenge held at the Blue Fin building, London on 3rd September 2016. Here is another chance to try your hand at the decryption challenge.

Game summary - this is an explanation of what the game entails.

Background
A friendly country's Royal Navy has been under a sustained cyber attack for several months by unknown actors. Network engineers have detected suspicious activity and believe this may be related to a viral email containing a Java based quiz program targeting their Rum loving sailors. Initial analysis has not highlighted anything suspicious, but a more thorough investigation is required...

BT logo

We are investigating a large corporate with a consumer type customer base with an online presence and a set of retail stores. A large number of customers are reporting unauthorised bank account transactions which appear to be related. We have a suspect (an employee has had erratic behaviour and attendance, and showing signed of unusual recent affluence) but we’re not sure of motive or how this happened.

You will need analysis skills and some experience with SQL injection techniques to complete this challenge.

Your challenge is to look at the initial stages of the attack by identifying the SQL injection request, which data was extracted, and time of attack.

Here is another chance to try your hand at the qualifier for the HMGCC & BAE face to face challenge at the Blue Fin building, London on 3rd September 2016.  This challenge will test your networking skills.

The scenario:

CorpNet is a multinational business with clients around the globe. There have been reports from staff that their workstations have been behaving strangely and the Systems Admin believes they have spotted suspicious activity on one of their office networks. The Chief Security Officer has asked for an independent review of their network. Working as a network forensic investigator, examine the provided forensic.pcap file from local System Admin and provide answers to the questions.

HMGCC Logo

Welcome to Her Majesty's Government Communications Centre's (HMGCC's) game

This game is intended to let you practice your  cyber skills on a fictitious office network. If you are interested in a career in cyber then get in touch, we are currently recruiting for skilled engineers of varying experience and knowledge. Visit www.hmgcc.gov.uk for further information.

The scenario:

CorpNet is a multinational business with clients around the globe. There have been reports from staff that their workstations have been behaving strangely and the Systems Admin believes they have spotted suspicious activity on one of their office networks. The Chief Security Officer has asked for an independent review of their network. Working as a network forensic investigator, examine the provided forensic.pcap file from local System Admin and provide answers to the questions

.