RuCTF is annual open intercollegiate competition and conference on information security.

Версия на русском: @RuCTF

November 23, 19:13

RuCTFE 2019 is over! Thank you for a good game!

Please, rate us at CTFTime and leave feedback

November 10, 11:55

Time to remind you of a couple of important things!

This year we again have RuCTFE Cloud, here is a short FAQ about it:

It is really good way for novice teams to start rocking at attack/defence. Pros can also use it, because it’s handy!

And tomorrow will begin @ZeroNights 2019!

ZeroNights is an annual international conference devoted to the practical aspects of cybersecurity. The aim of the conference is to spread information about new attack methods and defenses, as well as to create space for communication.

BAY, our Cloud creator and admin, can’t go to ZN this year, but he said, that the program is cool, most of all he likes "Principles in software testing and some bugs that others did not notice", "A Monkey in the Sandbox: Exploiting Firefox Through IonMonkey JIT and Kernel Sandbox Escapes", "Opwnsource: VNC vulnerability research".

So if you’re on the Saint Petersburg, come and buy tickets right now (or tomorrow at A2 club)! Also you can buy tickets to St. Petersbutg first, but hurry up 🙂

November 05, 13:02

Sorry, not last year, but in 2017! But last year we had an apocalypse and another strange things with time, so this year had disappeared 😄

November 05, 11:58

Last year we had invited you to rule your own boat. So now it's time to go deeper! How about a submarine? The 23rd of November, 10:00UTC, Ocean of the Internet, VPN Sea

Don't forget to register your warship! Registration is open now at

RuCTF_En (Юлия Славнова), July 03, 15:28

Hi:) Finally, we are ready to send you certificates, not even an eternity.

They are already on your mail.

If it not, fill out the form.

If you want a physical version, then too, please fill out the form.

RuCTF 2019. Developed with ♥ by Hackerdom team. Contribute to HackerDom/ructf-2019 development by creating an account on GitHub.

April 29, 07:21

All the participants in the hall (almost my). Last point - rewarding.

Part the only one

April 28, 16:34

If you come to the “Dom Pechati”, and have forgotten, have not found how to get to the loft, follow this direction! (done so amateur, from heart, understand me and forgive)

April 28, 14:50

10 minutes till the end!

April 28, 14:22

WeatherD seems to become up. But we’re not sure

April 28, 14:14

What happens here?!

April 28, 14:08

April 28, 14:00

WeatherD will be down till the end. Your farms are too intensive 🙁

April 28, 13:02

geoapi was hacked by VoidHack


April 28, 12:33

Sandbox hint

struct AddUnitStackFrame
sockaddr_in addr;
CommandHeader h;
CommandAddUnit cmd;
CommandAddUnitResponse response;
int sock;
size_t size;

fd = 3

April 28, 11:27

Oops, another first blood was 15 minutes ago. Saarsec hacked WeatherD

April 28, 10:11

First Blood on BrainHugger by Tower of Hanoi!

April 28, 10:01

Index fix!

stability patch

replace index.dll and index.pdb in /home/index and restart service

Link to fix for RuCTF Live page:

replace index.dll and index.pdb in /home/index and restart service

weatherD (Rust):
POST: /create_source
body example:
'name': source_name,
'password': password,
'is_public': bool,
'landscape' : string,
'race' : string,
"population" : string

RESPONSE: token to subscribe on source with name source_name (see NotificationsAPI /subscribe)
(token is generated by NotificationsApi)

POST: /push_message
body example:
'name': source_name,
'password': password,
'message': message

GET /subscribe?source={sourceName}&token={token}

token from create_source method.

Protocol: SSE (Server-side-events)
messages from source with source_name

April 28, 09:34

We know about Index problems. Fixing.

April 28, 08:56

We’re not sure is this hint or fix, but

NotificationsAPI has method:
GET /subscribe?source={sourceName}&token={token}

April 28, 08:26

RedBull with us today! Come on, energy is not superfluous.

April 28, 08:01

Lunch time!

April 28, 07:38

Comics are available! Follow the link:


April 28, 06:11

Totally first first blood is by VoidHack on index!

VoidHack! Congratulations!

And SiBears got second firstblood

April 28, 06:02

Oldschool scoreboard:

Two firstbloods:

1. Index service: by VoidHack or Lights Out (we will check it right now)

2. Beacon: by SiBears

(it was so fast, I’m shocked)

April 28, 05:57

Network will be opened in 3 minutes!

Let’s go!

April 28, 05:49

Flag's lifetime is limited by 15 rounds

April 28, 05:42

During the game, scoreboard will be available at

You can submit your flags after 11:00:

1. to TCP port 31337,

2. to, here is an example:

RuCTFE 2019 > HTTP flags submitting system example

RuCTFE is an annual online international challenge in information security. It has been held 10 times already.

April 28, 05:32

If you want to get token for http flag submission system, please contact @ktwzk

