← BACK TO WRITEUPS
69 words
1 minute
SCSC2026 Quals - Digger - Web Exploitation Writeup
[!NOTE] CTF CHALLENGE OVERVIEW
- CTF Event:
SCSC 2026- Category:
Writeup- Difficulty:
[EASY]- Tools Used:
Python 3,Linux CLI- Author / Writeup:
LIGHT
Category: Web Exploitation
URL: https://ctf.sriwijayasecuritysociety.com/
Flag: SCSC26{d4g_d1g_dug_d4n9du7}
Challenge Description
The challenge name “Digger” is a hint to use DNS digging tools like dig to enumerate records.
Analysis
DNS-based CTF challenges commonly hide flags in:
-
TXT records
-
MX records
-
subdomains
-
zone transfer misconfigurations (AXFR)
Exploitation
Query TXT records for the domain:
dig TXT sriwijayasecuritysociety.comThe TXT record response contained the flag:
;; ANSWER SECTION:sriwijayasecuritysociety.com. 300 IN TXT "SCSC26{d4g_d1g_dug_d4n9du7}" SCSC2026 Quals - Digger - Web Exploitation Writeup
Author
Light
Published at
2026-02-17
License
CC BY-NC-SA 4.0