Deliverables
Your submission for this project involves a write-up. There is no subission for your actual exploits–as long as you see the timestamps for flags populate on the splash page https://box.cs161.org, you’ve gotten credit for them! If you worked with a partner, you need to acquire each flag on your own server to receive credit for it, but only one of you needs to upload the write-up and tag the other person. Remember to add your partner to all of your Gradescope submissions!
Deadlines
Task | Due | Points |
---|---|---|
Site Flags Hit (Flags 1-8) | Friday, April 18, 2025 | 70 |
Write-up (Flags 3-8) | Friday, April 18, 2025 | 30 |
This project is worth a total of 100 points.
For both finding flags and the write-up, the points are equally distributed across the listed flags.
Write-up
Deliverable: Please submit your write-up to the Write-up assignment.
Each group must submit write-up–two pages maximum, please. For each of flags 3–8 only, include a brief description (2–3 sentences) of how you acquired the flag, and a suggestion (a line of code or 2–3 sentences) for how to protect against your exploit.
In your write-up, even if there are flags where the same defenses apply, please do not say “Refer to the defenses from Flag X”. Please re-write out and copy out defenses.
No humans, bots, planets, or cats were harmed in this story. (You did break one waffle maker in the galley though. Doesn’t matter, pancakes are better anyway.)