Mobile CTF

Inspired by my friend @yaworsk's web CTF here is a beginners iOS CTF.

Version 1.0

This version doesn't require you to actually run the app. It's intended to start your ctf-engine and get you excited about mobile app sec.

  • Download the Headbook-v1.0.ipa IPA file from here
  • 5 Flags

Version 2.0

Now that you've dipped your toes in the water, get ready for the next set of challenges, here are 5 new flags for you! For this version you'll still need to do some static analysis but it might help you if you run the app on a device. This IPA was compiled for the armv7 and arm64 devices on iOS 8 and later.

  • Download the Headbook-v2.0.ipa IPA file from here
  • 5 Flags

Version 3.0

You done with v1.0 and v2.0 and want more? This version will have 5 new flags and a server side application to make it more difficult but at the same time more life-like. (Note there are NO flags on the server, so please, please don't kill it with requests)

  • Working on it

Found a flag?

Check your flag here

Questions and/or comments?

@ivRodriguezCA