Posts

Showing posts from May, 2023

ChatGPT On CTF Challenges

Image
We want to see whether ChatGPT or other AI (MS-New_Bing or Google Bard) are able to help the user to go to some test environment to run cmd to solve the CTF challenges (Understand the challenge question and capture the flag). In this test case we will create a test environment to test ChatGPT and other AI's performance on solving a web-exploitation CTF challenges. We will build a CTF challenge question and related test environment as an example, we will also show how to use the Jailbreak Prompt such as Always Intelligent and Machiavellian chatbot prompt (AIM) to simplify the process (such as bypass most of OpenAI’s policy guidelines). Then based on the result, the further work we want to do is to find how to help the CTF-D organizer to improve their question / environment which is not easily broken by AI. Capture The Flags, or CTFs, are a kind of computer security competition. Teams of competitors (or just individuals) are pitted against each other in a test of computer securi

The National Cybersecurity R&D Laboratory (NCL) participated in Locked Shield 2023, hosted by CCDCOE

The National Cybersecurity R&D Laboratory (NCL) participated in Locked Shield 2023 , which took place in Estonia from April 18 to 21, 2023. Locked Shield 2023 is the world's largest live-fire cyber defense exercise hosted by the NATO Cooperative Cyber Defense Center of Excellence (CCDCOE) . Over 3,000 participants from 38 nations took part in the exercise, which involved protecting real computer systems from real-time attacks and simulating tactical and strategic decisions in critical situations. Locked Shields is a Red Team vs. Blue Team training exercise, with Blue Teams composed of NATO CCDCOE member nations and their partner nations. In addition to defending systems, teams must report incidents, execute strategic decisions, and solve forensic, legal, and media challenges. The exercise plan was prepared by 400 organizers , creating more than 5,500 virtual systems for its purpose. Locked Shield enables cybersecurity experts to enhance their skills in defending national