Mission
Find and decode tokens: JWT, AWS credentials, K8s service account tokens, git secrets.
Why this matters in 2026
Modern systems authenticate with tokens, not passwords. Finding them is the new credential harvesting.
Mitigation era: 2026-04 · rotation policy: levels may be refreshed as CVEs are patched out of distro defaults.
Connection Terminal
Use the password forphantom11 that you captured on the previous level, then:ssh [email protected] -p 2223SSH command copied to clipboard!
Flag Submission
Log in to submit flags and track progress.
🩸
ACTIVE RECORDFirst Blood captured by