7–9 Apr 2026
Jaarbeurs Supernova
Europe/Amsterdam timezone

Security Days Organisational Committee

Capture the Flag: Testing knowledge of offensive and defensive security and compliance in a controlled and gamified environment

8 Apr 2026, 11:00
3h
Expedition Room (Jaarbeurs Supernova)

Expedition Room

Jaarbeurs Supernova

Utrecht, Netherlands
Panel Session (90 min) Capture the Flag

Speaker

Humberto Forsan (RNP)

Description

Objective: Sharing RNP Brasil's experience in promoting CTF (Capture the Flag), this exercise integrates technical and strategic areas to test knowledge of offensive and defensive security and compliance in a controlled and gamified environment, uniting teams from academic networks in Europe to complete the challenges.

Details: The CTF (Capture the Flag) challenge is a cybersecurity competition where teams or individuals search for vulnerabilities in systems and networks to find "flags," which are secret texts or point accumulations, functioning like a hacker game to develop practical skills in areas of OSINT, Web Security, Forensics and Log Analysis, Cryptography and Steganography, and GRC.
Our CTF is configured in Jeopardy mode (Challenges by categories and scoring).
For Security Days, we will assemble teams of 3 to 4 people, where mixed profiles are recommended.
We will divide the challenges into 5 pillars. The idea is that all flags require security reasoning, but not all require knowing how to program or use Kali Linux tools.
Together with the Geant team, we will still define whether to execute the following modes:
• Standard Challenges (Static and Regex): Participants submit a "flag" for validation.
• Unlockable Challenges: Allows creating dependencies between challenges. A challenge only becomes visible or accessible after a prerequisite has been met.
• Multiple Choice Questions: Ideal for checking theoretical knowledge.

For the CTF, we are requesting 3 hours (30 minutes setup + 2:30 hours for the competition). However, we can adjust the time according to the Geant team's instructions.

Intended audience: This presentation is intended for professionals in the global research and education community who work to strengthen cybersecurity and risk management practices. It will be particularly relevant to research and education network security technical teams (NRENs), cybersecurity incident response team (CSIRT) members, risk management specialists, and technical leaders responsible for protecting digital infrastructure.

Author

Humberto Forsan (RNP)

Presentation materials

There are no materials yet.