B0dySn@chers

3rd place

6326 points


Members

User Name Score
crashburner 1314
violetinferno 1301
g0zer 210
f@lseP0sitive 2571
reaper 930

Solves

Challenge Category Value Time
DICOM Tag Radiology: Polyglot PE / DICOM Files 18
Adverserial Attacks Digital Twin AI Center 20
Let Me In Medical Records Under Attack 100
Fundamental Rights! What applies? 10
Oui Oui! What applies? 10
Happy Birthday! What applies? 5
En-AI-Abled Devices Digital Twin AI Center 20
Behind the Bars! Awareness Center: Malicious PPE Insider 10
Tell me more It operates on batteries 30
Wait, How? Awareness Center: Malicious PPE Insider 10
You are Fired! Awareness Center: Malicious PPE Insider 10
Identification Please! It operates on batteries 25
No one tells me what to do! It operates on batteries 25
Segregation of duties Certification Center: HCISPP Day3 12
SLA Certification Center: HCISPP Day3 11
Patient changes Certification Center: HCISPP Day3 11
Patient appointment list Certification Center: HCISPP Day3 11
Data privacy Certification Center: HCISPP Day1 10
Fines and penalties Certification Center: HCISPP Day1 12
EMR Breach Medical Records Under Attack 50
HSM Certification Center: HCISPP Day3 11
H-ISAC Certification Center: HCISPP Day3 11
Government board Certification Center: HCISPP Day3 11
Third party responsibilities Certification Center: HCISPP Day3 10
Private insurance Certification Center: HCISPP Day3 10
Notice of privacy Certification Center: HCISPP Day3 11
Helthcare system Certification Center: HCISPP Day3 10
Cloud type Certification Center: HCISPP Day3 10
Performance implementation Certification Center: HCISPP Day3 11
Action plan Certification Center: HCISPP Day3 10
Malware delivery Certification Center: HCISPP Day3 9
Data breach recovery Certification Center: HCISPP Day3 9
Child abuse Certification Center: HCISPP Day3 9
Encryption Certification Center: HCISPP Day3 12
New code Certification Center: HCISPP Day3 12
Information risk assessment Certification Center: HCISPP Day3 9
United States Patent Office - Suspect Terry - Remote Access Patent Office: Incident Response, Memory Forensics, Network Forensics 30
Who-Is in the Crematorium? Crematorium: Watch your BACnet 50
Adversarial threat Certification Center: HCISPP Day3 10
I'll have a dozen microchip BLE vulnerabilities, please Awareness Center : SBOM 3
SBOM Healthcare PoC Awareness Center : SBOM 3
Prove It Awareness Center : SBOM 5
United States Patent Office - Suspect Terry - Second Keylogger Install Patent Office: Incident Response, Memory Forensics, Network Forensics 30
Specification Vexation Awareness Center : SBOM 5
United States Patent Office Patrick Final - Script Files Patent Office: Incident Response, Memory Forensics, Network Forensics 100
United States Patent Office Patrick Final Patent Office: Incident Response, Memory Forensics, Network Forensics 100
United States Patent Office - Suspect Terry cont. Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Old Bugs Never Die Awareness Center : SBOM 10
A Long Way from Home What applies? 10
St. Elvis and St. Elvis Digital Twin Out of the Woods St. Elvis Digital Twin 200
Scan Type Radiology: Polyglot PE / DICOM Files 18
The Doors: Open Sesame! Hospital Building Automation System: BACNet 10
Data Leak Through Lights Hospital Building Automation System: BACNet 100
Be still my beating heart Medical Implant Communication System (MICS) 200
MDM Awareness Center: Acronyms! Acronyms! Acronyms! 3
Busy Month Breaches 15
Scary Screenshot Awareness Center: Healthcare Orgs are not Immune 5
SBOM Mr. President! Awareness Center : It Is an Order, Executive One! 15
Millions and Millions Breaches 5
Improvement in Key Areas, Like Supply Chain Awareness Center : It Is an Order, Executive One! 15
What's Breached in Nevada Stays in... oh no Breaches 5
Who Came Together To Harmonize via Audit? Awareness Center : Intranet 10
Who Came Together To Harmonize? Awareness Center : Intranet 10
A - OK Breaches 15
8 Days a Week Breaches 15
See in 3D Awareness Center : Intranet 10
For a Better World Awareness Center : Intranet 10
Risky Business Breaches 10
Pilfer & Loss Breaches 10
Films at 11 Breaches 10
Data and Statistics Awareness Center : Intranet 10
Breachmail Breaches 10
Bring them to their knees... Awareness Center : Healthcare Orgs are not Immune 5
Calling Tiger Woods... Awareness Center : Healthcare Orgs are not Immune 10
Am I in the flood zone? Awareness Center : Healthcare Orgs are not Immune 10
A Preventable Tragedy Awareness Center : Healthcare Orgs are not Immune 10
Don't use the shredder just yet... Awareness Center : Healthcare Orgs are not Immune 10
Average Individuals Breaches 10
10x1337 Breaches 10
United States Patent Office - Suspect Terry - First Keylogger Install Patent Office: Incident Response, Memory Forensics, Network Forensics 30
Executive Order Awareness Center: It Is an Order, Executive One! 5
Breach Count Breaches 5
Accuracy-Nudge Intervention Awareness Center: Mis-/Disinformation During Pandemic Times 10
Attacking The Hospitals: The Aftermath Awareness Center: Mis-/Disinformation During Pandemic Times 5
Are French Fries The European Chips? Awareness Center : Chips, French Fries or Other? 10
The Semiconductor Kind of Chips Awareness Center : Chips, French Fries or Other? 10
PE Header Size Radiology: Polyglot PE / DICOM Files 3
DICOM Prefix Radiology: Polyglot PE / DICOM Files 21
Playing nice together Awareness Center : Mis-/Disinformation During Pandemic Times 10
Ultrasound Devices Kiosk Mode Vulnerable to Local Breakouts Awareness Center : Vulnerability Management 10
Monitoring Critical Vital Signs Awareness Center : Vulnerability Management 10
DND: Do Not Defib! Awareness Center : Vulnerability Management 10
Ultrasound Authentication Bypass Vulnerability Awareness Center : Vulnerability Management 5
South of the Border Awareness Center : Vulnerability Management 5
What Brand Was It? COVID-19 Test Lab 15
RFID Bypass in Electrosurgical Generators Awareness Center : Vulnerability Management 5
American Fries or Chinese Chips? Awareness Center : Chips, French Fries or Other? 10
Pulse Ox Cloud: We have some REACTions to this menu TeleCare Division: Pulse Oximeter 20
Pulse Ox RE Challenge 2 TeleCare Division : Pulse Oximeter 40
Vaccines for sale Dark(net) Times 30
The physician's office Certification Center: HCISPP Day2 12
NIST guidance Certification Center: HCISPP Day2 12
Medical Record numbers Certification Center: HCISPP Day2 12
Safe Harbor and HIPAA Certification Center: HCISPP Day2 11
Medical devices integration Certification Center: HCISPP Day2 11
Internal threat Certification Center: HCISPP Day2 11
Intended purposes Certification Center: HCISPP Day2 11
Digital Twin System Alert Medical Records Under Attack 30
Information policy Certification Center: HCISPP Day2 11
Healthcare dataset Certification Center: HCISPP Day2 11
GAPP Certification Center: HCISPP Day2 11
Framing Certification Center: HCISPP Day2 11
DSP toolkit Certification Center: HCISPP Day2 11
Disaster recovery Certification Center: HCISPP Day2 11
Data breach notification Certification Center: HCISPP Day2 11
US agency Certification Center: HCISPP Day2 10
Third-party agency Certification Center: HCISPP Day2 10
HSM Certification Center: HCISPP Day2 10
First healthcare regulation Certification Center: HCISPP Day2 10
Cyberattack Certification Center: HCISPP Day2 10
Confidentiality Certification Center: HCISPP Day2 10
Third-party risk assessment Certification Center: HCISPP Day2 9
Security controls Certification Center: HCISPP Day2 9
Common-access card Certification Center: HCISPP Day2 9
Vaccine Storage Freezer Issues Hospital Building Automation System: BACNet 100
French Fries Awareness Center : Chips, French Fries or Other? 10
Single-sign-on authentication Certification Center: HCISPP Day2 9
Are our PGHD protected? Privacy Center: Hello Halo, Apple Watch and Fitbit! 10
Who Fights in our Corner? Privacy Center: Hello Halo, Apple Watch and Fitbit! 10
Send our Health Data Out! Privacy Center: Hello Halo, Apple Watch and Fitbit! 10
Pulse Ox RE Challenge 1 TeleCare Division : Pulse Oximeter 20
Raspberry in Secret Test Lab Hospital Building Automation System: BACNet 100
ICS-CERT Advisory IDs Awareness Center : Vulnerability Management 5
HDO Representative Awareness Center : Vulnerability Management 5
Foreign Devices Hospital Building Automation System: BACNet 100
Lights in ICU Hospital Building Automation System: BACNet 100
Eavesdropping, for fun and flags! St. Elvis Digital Twin (Unity Game) 50
Shred your PHI! St. Elvis Digital Twin (Unity Game) 50
Shame! Shame! Shame! Breaches 5
We're All Individuals! Breaches 5
Jo and Elections Awareness Center: Fake News 10
United States Patent Office - Suspect Terry - First Keylogger Patent Office: Incident Response, Memory Forensics, Network Forensics 30
Flora Awareness Center: Fake News 10
United States Patent Office - Suspect Terry Patent Office: Incident Response, Memory Forensics, Network Forensics 30
Aida and Vaccination Awareness Center: Fake News 10
Let's Play a Game Awareness Center: Fake News 5
FDA Safety Communication - 2 Awareness Center : Vulnerability Management 12
FDA Myths 'n' Facts Awareness Center : Vulnerability Management 20
11 0-Days Awareness Center : Vulnerability Management 5
CVE Awareness Center : Vulnerability Management 5
FDA Safety Communication Awareness Center : Vulnerability Management 20
Attacking The Hospitals Awareness Center: Mis-/Disinformation During Pandemic Times 5
Put on some pants! Awareness Center : Mis-/Disinformation During Pandemic Times 10
Correct Information Saves Lives Awareness Center: Mis-/Disinformation During Pandemic Times 10
Share This With Bad Intention Awareness Center: Mis-/Disinformation During Pandemic Times 5
Do You Understand? Awareness Center: Mis-/Disinformation During Pandemic Times 5
What is Your Solution? Awareness Center: Mis-/Disinformation During Pandemic Times 200
Is that a fake Gucci? Awareness Center : Mis-/Disinformation During Pandemic Times 10
Digital Twin is Back Up and Running Again! St. Elvis Digital Twin 200
Part 2 - United States Patent Office - 01/12/2009 - Malicious Software Patent Office: Incident Response, Memory Forensics, Network Forensics 100
What’s With All The Hiding? Technical Training Center: T-ATP 15
Part 2 - United States Patent Office - 01/12/2009 - Network Share Users Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Part 2 - United States Patent Office - 01/12/2009 - Printer Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Stage 1 Ransomware 30
Let's Share Some Keys Technical Training Center: T-ATP 30
Unsafe Items Training Center: T-ATP 15
The responsible Certification Center: HCISPP Day1 12
A Tulip by any other Name Awareness Center : Vulnerability Research 5
Observe and Report Awareness Center : Vulnerability Research 5
RSS-MD Difference Awareness Center: Risk "Management" 5
Dangerous Precedents Awareness Center : Security Research 10
Dynamic Duo Awareness Center : Security Research 6
Dual Hats Awareness Center : Security Research 5
Series of Tubes Awareness Center : Vulnerability Research 5
Part 2 - United States Patent Office - 01/12/2009 - SID Patent Office: Incident Response, Memory Forensics, Network Forensics 100
White Hats and Lab Coats Awareness Center : Security Research 5
HIPAA Certification Center: HCISPP Day1 14
Knowledge Sharing Awareness Center : Security Research 5
Object Diving Technical Training Center: T-ATP 100
Medical Overflow Technical Training Center: T-ATP 100
Format String Symphony Technical Training Center: T-ATP 100
Safety > Cyber Awareness Center : Security Research 3
RSS-MD 2-Factor Awareness Center: Risk "Management" 5
Traffic At The Hospital: Pt. 3 Technical Training Center: T-ATP 25
Flight Risk Awareness Center : Security Research 3
Shady Place Awareness Center : Security 101 5
Email Deception Awareness Center : Security 101 5
DFIR Awareness Center : Security 101 5
HDO Awareness Center: Healthcare! Acronyms! 3
FMEA Awareness Center: Healthcare! Acronyms! 3
FHIR Awareness Center: Healthcare! Acronyms! 3
DiME Awareness Center: Healthcare! Acronyms! 3
DICOM Awareness Center: Healthcare! Acronyms! 3
CGM Awareness Center: Healthcare! Acronyms! 3
CDRH Awareness Center: Healthcare! Acronyms! 3
Traffic At The Hospital: Pt. 2 Technical Training Center: T-ATP 25
Traffic At The Hospital: Pt. 1 Technical Training Center: T-ATP 25
ISO/IEC Awareness Center: Acronyms! Acronyms! Acronyms! 3
STRIDE Awareness Center: Acronyms! Acronyms! Acronyms! 3
SicGRL Awareness Center: Cyber! Acronyms! 3
SBOM Awareness Center: Cyber! Acronyms! 3
RSS-MD Awareness Center: Cyber! Acronyms! 3
GDPR Awareness Center: Cyber! Acronyms! 3
JSP Awareness Center: Acronyms! Acronyms! Acronyms! 3
ICS-CERT Awareness Center: Acronyms! Acronyms! Acronyms! 3
HHS Awareness Center: Acronyms! Acronyms! Acronyms! 3
H-ISAC Awareness Center: Acronyms! Acronyms! Acronyms! 3
FDA Awareness Center: Acronyms! Acronyms! Acronyms! 3
BLE Awareness Center: Acronyms! Acronyms! Acronyms! 3
NFC Awareness Center: Acronyms! Acronyms! Acronyms! 3
A Whole Lotta Strings Technical Training Center: T-ATP 50
ISO Need To Tell You About Your Ugly Baby Awareness Center : Vulnerability Research 5
Jack of All Rippers Technical Training Center: T-ATP 20
IoB Awareness Center : Risk "Management" 10
Rubric Data Awareness Center: Risk "Management" 5
Blank Space Technical Training Center: T-ATP 20
Rubric Awareness Center: Risk "Management" 3
A New Vinaigrette Recipe Technical Training Center: T-ATP 20
Overexposed Awareness Center: Risk "Management" 3
JSP Co-Chair Awareness Center: Risk "Management" 3
CIA Awareness Center: Risk "Management" 3
RSS-MD - Functional Impact Awareness Center: Risk "Management" 5
BSIMM Awareness Center : Acronyms! Acronyms! Acronyms! 5
IMDRF Awareness Center : Healthcare! Acronyms! 5
HIMSS Awareness Center: Healthcare! Acronyms! 3
HL7 Awareness Center: Healthcare! Acronyms! 3
EHR Awareness Center : Healthcare! Acronyms! 5
Power Trace Side Channel Attack Embedded Device 200
Metadata Everywhere! Technical Training Center: T-ATP 30
Electronic health Certification Center: HCISPP Day1 13
Tampered Data Technical Training Center: T-ATP 10
Security and privacy Certification Center: HCISPP Day1 12
Vulnerability scan Certification Center: HCISPP Day1 11
NIST Certification Center: HCISPP Day1 11
Chief Privacy Officer Certification Center: HCISPP Day1 11
Level of security Certification Center: HCISPP Day1 10
External auditors Certification Center: HCISPP Day1 10
Database Certification Center: HCISPP Day1 10
Coding system Certification Center: HCISPP Day1 10
BYOD Certification Center: HCISPP Day1 10
Purging data Certification Center: HCISPP Day1 9
ISAC Certification Center: HCISPP Day1 9
EHR Certification Center: HCISPP Day1 9
Data breach investigation Certification Center: HCISPP Day1 9
Authority role Certification Center: HCISPP Day1 9
Risk assessment Certification Center: HCISPP Day1 8
Protection Certification Center: HCISPP Day1 8
Management council Certification Center: HCISPP Day1 8
All The Jars Technical Training Center: T-ATP 10
Chain of trust Certification Center: HCISPP Day1 8
Access and correction Certification Center: HCISPP Day1 8
Ciphers Galore Technical Training Center: T-ATP 20
Medical record Certification Center: HCISPP Day1 7
Defensive Examination Awareness Center : Security Research 10
Privacy situation Certification Center: HCISPP Day1 6
INCLUDES NO DIRT Awareness Center: Healthcare! Acronyms! 6
What is WHO? Awareness Center : Healthcare! Acronyms! 5
MDS2 Awareness Center: Healthcare! Acronyms! 5
PHI Awareness Center : Healthcare! Acronyms! 5
HIPAA Awareness Center: Healthcare! Acronyms! 3
Compromised PACS / DICOM Server - Question 6 DICOM 45
Compromised PACS / DICOM Server - Question 5 Radiology: DICOM 40
Compromised PACS / DICOM Server - Question 4 Radiology: DICOM 30
Compromised PACS / DICOM Server - Question 3 Radiology: DICOM 30
Compromised PACS / DICOM Server - Question 2 Radiology: DICOM 20
Compromised PACS / DICOM Server - Question 1 Radiology: DICOM 30
Part 2 - United States Patent Office - 01/12/2009 - Network Address Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Which agreement? Certification Center: HCISPP Day1 10
Indicator of compromise Ransomware 20
Tracing the malicious actor Ransomware 30
Part 1 - United States Patent Office - 16/11/2009 - Command Prompt Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Target on your back Ransomware 20
PACS Awareness Center: Healthcare! Acronyms! 3
CVSS Awareness Center: Cyber! Acronyms! 3
AAMI Awareness Center: Acronyms! Acronyms! Acronyms! 3
Ransom note part II Ransomware 20
Ransom note Ransomware 15
Part 2 - United States Patent Office - 01/12/2009 Patent Office: Incident Response, Memory Forensics, Network Forensics 100
Part 1 - United States Patent Office - 16/11/2009 Patent Office: Incident Response, Memory Forensics, Network Forensics 100
The future is here! St. Elvis Digital Twin 200
Primanoculation Host Access 40
WireGuard Filetype Host Access 10
WireGuard Endpoint Host Access 10
Verify me Orientation 5
Discord Communications Orientation 20
Simple Service Access - port 80 Orientation 20
Simple Service Access - port 40 Orientation 20
Email Communications Orientation 10
CTFd - Profile Orientation 5
CTFd - Scoreboard Orientation 5
CTFd - Teams Orientation 5
CTFd - File Download Orientation 5
CTFd - First! Orientation 5