LIGHT@2026
GMT+5:30 IST --:--:--
← BACK TO WRITEUPS
69 words
1 minute
SCSC2026 Quals - Digger - Web Exploitation Writeup

[!NOTE] CTF CHALLENGE OVERVIEW

  • CTF Event: SCSC 2026
  • Category: Writeup
  • Difficulty: [EASY]
  • Tools Used: Python 3, Linux CLI
  • Author / Writeup: LIGHT

Category: Web Exploitation

URL: https://ctf.sriwijayasecuritysociety.com/

Flag: SCSC26{d4g_d1g_dug_d4n9du7}

Challenge Description#

The challenge name “Digger” is a hint to use DNS digging tools like dig to enumerate records.

Analysis#

DNS-based CTF challenges commonly hide flags in:

  • TXT records

  • MX records

  • subdomains

  • zone transfer misconfigurations (AXFR)

Exploitation#

Query TXT records for the domain:

dig TXT sriwijayasecuritysociety.com

The TXT record response contained the flag:

;; ANSWER SECTION:
sriwijayasecuritysociety.com. 300 IN TXT "SCSC26{d4g_d1g_dug_d4n9du7}"
SCSC2026 Quals - Digger - Web Exploitation Writeup
Author
Light
Published at
2026-02-17
License
CC BY-NC-SA 4.0