{"id":323,"date":"2025-07-16T22:56:20","date_gmt":"2025-07-16T22:56:20","guid":{"rendered":"https:\/\/www.saintcon.org\/?page_id=323"},"modified":"2025-10-21T03:19:27","modified_gmt":"2025-10-21T03:19:27","slug":"appsec-carnival-games","status":"publish","type":"page","link":"https:\/\/www.saintcon.org\/contests\/appsec-carnival-games\/","title":{"rendered":"Contest &#8211; AppSec Carnival Games"},"content":{"rendered":"<p><img decoding=\"async\" src=\"http:\/\/www.saintcon.org\/wp-content\/uploads\/2025\/08\/AppSecCarnivalv3.svg\" alt=\"\"><\/p>\n<div>\n<p><span style=\"font-weight: 400;\">Step right up! <\/span>Beat the System<\/p>\n<\/div>\n<h2><span style=\"font-weight: 400;\">Your only real enemy is your own curiosity, skill, and time. <\/span><\/h2>\n<div>\n<p><span style=\"font-weight: 400;\">The AppSec Carnival is a security challenge disguised as a shady carnival booth\u2014complete with questionable games, misleading odds, and gloriously stupid prizes. <\/span><\/p>\n<\/div>\n<div>\n<p style=\"text-align: center; font-size: 21px;\">To get started, visit <a href=\"https:\/\/appsec.saintcon.community\">https:\/\/appsec.saintcon.community<\/a> and\/or the AppSec Carnival Games Booth in the Expo Center.<\/p>\n<\/div>\n<ul>\n<li>\n<h3>Where Is It<\/h3>\n<div>\n<p>Find us next to the AppSec Community. \u00a0You can&#8217;t miss the carnival themed games.<\/p>\n<\/div>\n<\/li>\n<li>\n<h3>How to Play<\/h3>\n<div>\n<p><span style=\"font-weight: 400;\">You\u2019ll play the games right at our booth, using a provided laptop. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">Each game may look simple on the surface, but hidden within each game is a subtle vulnerability. Exploit it to win big. <\/span><\/p>\n<\/div>\n<\/li>\n<\/ul>\n<p><img decoding=\"async\" src=\"\/wp-content\/uploads\/2025\/02\/SC25-Logo-Image.svg\" alt=\"\"><\/p>\n<ul>\n<li>\n<h3>What to Bring<\/h3>\n<div>\n<p><span style=\"font-weight: 400;\">Just yourself! The booth setup includes everything you need to play.<br \/><\/span><\/p>\n<p>For more points you&#8217;ll<span style=\"font-weight: 400;\"> want to submit a fix, and you\u2019ll need a device to code that up.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>Important Times<\/h3>\n<div>\n<p><span style=\"font-weight: 400;\">The AppSec Carnival runs from Tuesday afternoon to Friday morning.<\/span><\/p>\n<\/div>\n<\/li>\n<\/ul>\n<div>\n<p style=\"text-align: left;\"><span style=\"font-weight: 400;\">Each game may look simple on the surface, but hidden within each game is a subtle vulnerability. Your mission: exploit it to win big.<\/span><\/p>\n<p style=\"text-align: left;\"><span style=\"font-weight: 400;\">You\u2019ll play right at the booth, using a provided laptop. The source code for each game is open and available on GitHub, so your only real enemy is your own curiosity, skill, and time. Get lucky or clever and you might walk away with a few points and a trinket. But if you dig deeper and find the exploit? That\u2019s where the real points are.<\/span><\/p>\n<p style=\"text-align: left;\"><span style=\"font-weight: 400;\">Once you\u2019ve broken the game, you\u2019ll also get the chance to submit a fix through our testing harness for even more points. Your exploits and fixes will earn you a spot on the leaderboard\u2014and the top three contestants will win actual prizes.<\/span><\/p>\n<\/div>\n<h2>How to Play Our Contest<\/h2>\n<div>\n<p>You\u2019ll need a ticket to play. These may be handed out during the con or earned by engaging with various other SAINTCON communities.<\/p>\n<p>Redeem your ticket at the booth to take a crack at a game.<\/p>\n<p>You can return and play again if you earn more tickets\u2014each game is standalone and has its own challenge.<\/p>\n<\/div>\n<ul>\n<li>\n<p>        <img decoding=\"async\" src=\"\/wp-content\/uploads\/icon-meetups-events.svg\" alt=\"\"><\/p>\n<h3>Notes<\/h3>\n<div>\n<p><span style=\"font-weight: 400;\">This contest is designed to be fun, welcoming, and hands-on\u2014no gatekeeping here. Whether you\u2019re a first-time player or a seasoned security pro, there\u2019s a game (and probably a janky plush prize) with your name on it.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Come try your luck. Cheat the system. And leave it better than you found it.<\/span><\/p>\n<\/div>\n<p><a href=\"#\"><\/a><\/p>\n<\/li>\n<li>\n<p>        <img decoding=\"async\" src=\"\/wp-content\/uploads\/icon-workshops-trainings.svg\" alt=\"\"><\/p>\n<h3>Scoring<\/h3>\n<div>\n<p><em><span style=\"font-weight: 400;\">Partial wins<br \/><\/span><\/em><span style=\"font-weight: 400;\"> small points + small prize<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><em>Exploit the game<\/em><br \/>big points + bigger prize<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><em>Submit a working fix<br \/><\/em><\/span><span style=\"font-weight: 400;\">even more points and leaderboard climb<\/span><\/p>\n<\/div>\n<p><a href=\"#\"><\/a><\/p>\n<\/li>\n<li>\n<p>        <img decoding=\"async\" src=\"\/wp-content\/uploads\/icon-community-chat.svg\" alt=\"\"><\/p>\n<h3>Helpful Skills<\/h3>\n<div>\n<p><span style=\"font-weight: 400;\">-Are familiar with OWASP Top 10-style vulnerabilities <br \/>(XSS, IDOR, SQLi, etc.)<\/span><\/p>\n<p><span style=\"font-weight: 400;\">-Can read and understand code <br \/>(games will be in various different languages)<\/span><\/p>\n<p><span style=\"font-weight: 400;\">-Can use an LLM<\/span><\/p>\n<p>-Aren\u2019t afraid to try weird things and fail gloriously<\/p>\n<\/div>\n<p><a href=\"#\"><\/a><\/p>\n<\/li>\n<\/ul>\n<div>\n<h2>Frequently Asked Questions:<\/h2>\n<\/div>\n<ul>\n<li>\n<h3>Is this for individuals or teams?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> It\u2019s an individual contest\u2014just you and the game.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>Do I need to bring a laptop?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> Nope! It<strong> is<\/strong> <strong>best<\/strong> to <em>use your own<\/em> for submitting code fixes, but devices will be provided in case you need one.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>How do I get a ticket?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> Tickets will be floating around the con\u2014keep an eye out at various community booths or events.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>What if I\u2019ve never hacked anything before?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> That\u2019s okay! You can try using ChatGPT or learning about vulnerabilities at the AppSec community. Some games can be partially beaten with a little luck and intuition. Come give it a shot and have fun.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>Can I view the game code?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> Yes! All game source code is open and available on GitHub.<\/span><\/p>\n<\/div>\n<\/li>\n<li>\n<h3>How are winners decided?<\/h3>\n<div>\n<p><b>A:<\/b><span style=\"font-weight: 400;\"> The top three individuals with the most combined points from successful exploits and submitted fixes will win final prizes.<\/span><\/p>\n<\/div>\n<\/li>\n<\/ul>\n<p><!--more--><br \/>\n<!-- {\"type\":\"layout\",\"children\":[{\"type\":\"section\",\"props\":{\"animation\":\"slide-bottom-medium\",\"animation_delay\":\"100\",\"header_transparent\":true,\"header_transparent_noplaceholder\":false,\"header_transparent_text_color\":\"light\",\"height\":\"viewport\",\"image\":\"wp-content\\\/uploads\\\/2025\\\/06\\\/Contests.svg\",\"image_position\":\"center-center\",\"image_size\":\"cover\",\"overlap\":true,\"padding\":\"small\",\"padding_remove_bottom\":false,\"style\":\"muted\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"\",\"width\":\"small\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"image\",\"props\":{\"animation\":\"parallax\",\"block_align\":\"center\",\"image\":\"http:\\\/\\\/www.saintcon.org\\\/wp-content\\\/uploads\\\/2025\\\/08\\\/AppSecCarnivalv3.svg\",\"image_svg_color\":\"emphasis\",\"margin\":\"default\",\"margin_remove_top\":true,\"maxwidth\":\"xlarge\",\"parallax_scale\":\"0.6\",\"text_align\":\"center\"},\"name\":\"MAIN LOGO\"},{\"type\":\"text\",\"props\":{\"block_align\":\"center\",\"column_breakpoint\":\"m\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Step right up! <\\\/span>Beat the System<\\\/p>\",\"margin\":\"default\",\"maxwidth\":\"xlarge\",\"text_align\":\"center\",\"text_style\":\"lead\"},\"name\":\"CONTEST TAGLINE\"},{\"type\":\"button\",\"props\":{\"button_size\":\"large\",\"css\":\"@media (max-width: 639px) {\\n    .el-item a { min-width: 192px; }\\n}\",\"grid_column_gap\":\"small\",\"grid_row_gap\":\"small\",\"margin\":\"medium\",\"status\":\"disabled\",\"text_align\":\"center\"},\"children\":[{\"type\":\"button_item\",\"props\":{\"button_style\":\"default\",\"content\":\"Game Source Code\",\"dialog_layout\":\"modal\",\"dialog_offcanvas_flip\":true,\"icon_align\":\"left\",\"link\":\"#\"}},{\"type\":\"button_item\",\"props\":{\"button_style\":\"secondary\",\"content\":\"Leaderboard\",\"dialog_layout\":\"modal\",\"dialog_offcanvas_flip\":true,\"icon_align\":\"left\",\"link\":\"mailto:info@example.com\"}}],\"name\":\"Optional Buttons\\\/Links\"}]}],\"props\":{\"margin\":\"large\"}}],\"name\":\"CONTEST HEADER\"},{\"type\":\"section\",\"props\":{\"animation\":\"fade\",\"animation_delay\":\"200\",\"id\":\"powerful-api\",\"image_position\":\"center-center\",\"padding\":\"large\",\"padding_remove_bottom\":true,\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"\",\"width\":\"large\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"headline\",\"props\":{\"animation\":\"none\",\"content\":\"<span style=\\\"font-weight: 400;\\\">Your only real enemy is your own curiosity, skill, and time. <\\\/span>\",\"text_align\":\"center\",\"title_element\":\"h2\",\"title_style\":\"h1\"},\"name\":\"DETAILS AND INFORMATION\"},{\"type\":\"text\",\"props\":{\"animation\":\"none\",\"block_align\":\"center\",\"column_breakpoint\":\"m\",\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">The AppSec Carnival is a security challenge disguised as a shady carnival booth\\u2014complete with questionable games, misleading odds, and gloriously stupid prizes. <\\\/span><\\\/p>\",\"margin\":\"default\",\"maxwidth\":\"xlarge\",\"text_align\":\"center\",\"text_style\":\"lead\"},\"name\":\"Details and Information\"},{\"type\":\"text\",\"props\":{\"column_breakpoint\":\"m\",\"content\":\"\n\n<p style=\\\"text-align: center; font-size: 21px;\\\">To get started, visit <a href=\\\"https:\\\/\\\/appsec.saintcon.community\\\">https:\\\/\\\/appsec.saintcon.community<\\\/a> and\\\/or the AppSec Carnival Games Booth in the Expo Center.<\\\/p>\",\"margin\":\"default\"}}]}],\"props\":{\"margin\":\"large\",\"margin_remove_bottom\":false}},{\"type\":\"row\",\"props\":{\"column_gap\":\"small\",\"layout\":\"1-3,1-3,1-3\",\"margin\":\"xlarge\",\"margin_remove_top\":true,\"row_gap\":\"large\"},\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"order_first\":\"m\",\"position_sticky_breakpoint\":\"m\",\"width_large\":\"expand\",\"width_medium\":\"1-3\",\"width_small\":\"1-2\"},\"children\":[{\"type\":\"grid\",\"props\":{\"animation\":\"none\",\"block_align\":\"center\",\"content_column_breakpoint\":\"m\",\"filter_align\":\"left\",\"filter_all\":true,\"filter_grid_breakpoint\":\"m\",\"filter_grid_width\":\"auto\",\"filter_position\":\"top\",\"filter_style\":\"tab\",\"grid_default\":\"1\",\"grid_medium\":\"\",\"grid_row_gap\":\"large\",\"icon_width\":80,\"image_align\":\"top\",\"image_grid_breakpoint\":\"m\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"item_animation\":true,\"lightbox_bg_close\":true,\"link_style\":\"default\",\"link_text\":\"Read more\",\"margin\":\"default\",\"maxwidth\":\"medium\",\"meta_align\":\"below-title\",\"meta_element\":\"div\",\"meta_style\":\"text-meta\",\"parallax_easing\":\"1\",\"show_content\":true,\"show_hover_image\":true,\"show_hover_video\":true,\"show_image\":true,\"show_link\":true,\"show_meta\":true,\"show_title\":true,\"show_video\":true,\"text_align\":\"center\",\"title_align\":\"top\",\"title_element\":\"h3\",\"title_grid_breakpoint\":\"m\",\"title_grid_width\":\"1-2\",\"title_hover_style\":\"reset\",\"title_style\":\"h4\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p>Find us next to the AppSec Community. \\u00a0You can't miss the carnival themed games.<\\\/p>\",\"title\":\"Where Is It\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">You\\u2019ll play the games right at our booth, using a provided laptop. <\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Each game may look simple on the surface, but hidden within each game is a subtle vulnerability. Exploit it to win big. <\\\/span><\\\/p>\",\"title\":\"How to Play\"}}]}]},{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"order_first\":\"xs\",\"position_sticky_breakpoint\":\"m\",\"width_large\":\"auto\",\"width_medium\":\"1-3\"},\"children\":[{\"type\":\"image\",\"props\":{\"image\":\"wp-content\\\/uploads\\\/2025\\\/02\\\/SC25-Logo-Image.svg\",\"image_border\":\"rounded\",\"image_svg_animate\":false,\"image_svg_color\":\"emphasis\",\"image_svg_inline\":false,\"image_width\":\"370\",\"margin\":\"default\",\"text_align\":\"center\"},\"name\":\"ALT LOGO\"}]},{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\",\"vertical_align\":\"middle\",\"width_large\":\"expand\",\"width_medium\":\"1-3\",\"width_small\":\"1-2\"},\"children\":[{\"type\":\"grid\",\"props\":{\"animation\":\"none\",\"block_align\":\"center\",\"content_column_breakpoint\":\"m\",\"filter_align\":\"left\",\"filter_all\":true,\"filter_grid_breakpoint\":\"m\",\"filter_grid_width\":\"auto\",\"filter_position\":\"top\",\"filter_style\":\"tab\",\"grid_default\":\"1\",\"grid_medium\":\"\",\"grid_row_gap\":\"large\",\"icon_width\":80,\"image_align\":\"top\",\"image_grid_breakpoint\":\"m\",\"image_grid_width\":\"1-2\",\"image_svg_color\":\"emphasis\",\"item_animation\":true,\"lightbox_bg_close\":true,\"link_style\":\"default\",\"link_text\":\"Read more\",\"margin\":\"default\",\"maxwidth\":\"medium\",\"meta_align\":\"below-title\",\"meta_element\":\"div\",\"meta_style\":\"text-meta\",\"parallax_easing\":\"1\",\"show_content\":true,\"show_hover_image\":true,\"show_hover_video\":true,\"show_image\":true,\"show_link\":true,\"show_meta\":true,\"show_title\":true,\"show_video\":true,\"text_align\":\"center\",\"title_align\":\"top\",\"title_element\":\"h3\",\"title_grid_breakpoint\":\"m\",\"title_grid_width\":\"1-2\",\"title_hover_style\":\"reset\",\"title_style\":\"h4\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">Just yourself! The booth setup includes everything you need to play.<br \\\/><\\\/span><\\\/p>\\n\n\n<p>For more points you'll<span style=\\\"font-weight: 400;\\\"> want to submit a fix, and you\\u2019ll need a device to code that up.<\\\/span><\\\/p>\",\"title\":\"What to Bring\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">The AppSec Carnival runs from Tuesday afternoon to Friday morning.<\\\/span><\\\/p>\",\"meta\":\"\",\"title\":\"Important Times\"}}]}]}]}],\"name\":\"CONTEST DETAILS\"},{\"type\":\"section\",\"props\":{\"id\":\"customer-stories\",\"image_position\":\"center-center\",\"padding\":\"large\",\"padding_remove_bottom\":true,\"status\":\"disabled\",\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"\",\"width\":\"\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"headline\",\"props\":{\"content\":\"Photo or Images Header\",\"text_align\":\"center\",\"title_element\":\"h2\",\"title_style\":\"h1\"},\"name\":\"PHOTO or IMAGE HEADER\"},{\"type\":\"overlay-slider\",\"props\":{\"image_width\":\"800\",\"link_margin\":\"xlarge\",\"link_style\":\"default\",\"link_text\":\"Read Story\",\"margin\":\"large\",\"margin_remove_bottom\":true,\"meta_align\":\"above-title\",\"meta_element\":\"div\",\"meta_style\":\"h5\",\"nav\":\"\",\"nav_align\":\"center\",\"nav_below\":true,\"nav_breakpoint\":\"s\",\"nav_position\":\"bottom-center\",\"nav_position_margin\":\"medium\",\"overlay_display\":\"hover\",\"overlay_link\":true,\"overlay_mode\":\"cover\",\"overlay_padding\":\"large\",\"overlay_position\":\"bottom-center\",\"overlay_transition\":\"fade\",\"overlay_transition_background\":false,\"show_content\":true,\"show_hover_image\":true,\"show_hover_video\":true,\"show_link\":true,\"show_meta\":true,\"show_title\":true,\"slidenav\":\"default\",\"slidenav_breakpoint\":\"s\",\"slidenav_margin\":\"medium\",\"slidenav_outside_breakpoint\":\"xl\",\"slider_autoplay_pause\":true,\"slider_center\":true,\"slider_divider\":false,\"slider_gap\":\"small\",\"slider_width\":\"\",\"slider_width_default\":\"1-1\",\"slider_width_medium\":\"4-5\",\"text_align\":\"center\",\"title_element\":\"h3\",\"title_hover_style\":\"reset\"},\"children\":[{\"type\":\"overlay-slider_item\",\"props\":{\"content\":\"\",\"image\":\"wp-content\\\/uploads\\\/2025\\\/05\\\/Asset-14.svg\",\"item_element\":\"article\",\"link\":\"#\",\"text_color\":\"light\",\"title\":\"\"}},{\"type\":\"overlay-slider_item\",\"props\":{\"content\":\"\",\"image\":\"wp-content\\\/uploads\\\/2025\\\/02\\\/COM-Red.svg\",\"item_element\":\"article\",\"link\":\"#\",\"text_color\":\"light\",\"title\":\"\"}},{\"type\":\"overlay-slider_item\",\"props\":{\"content\":\"\",\"image\":\"wp-content\\\/uploads\\\/2025\\\/02\\\/SC25-BG-Contest.svg\",\"item_element\":\"article\",\"link\":\"#\",\"text_color\":\"light\",\"title\":\"\"}},{\"type\":\"overlay-slider_item\",\"props\":{\"content\":\"\",\"image\":\"wp-content\\\/uploads\\\/2025\\\/02\\\/SC25-BG-Loud.svg\",\"item_element\":\"article\",\"link\":\"#\",\"text_color\":\"light\",\"title\":\"\"}}],\"modified\":\"2021-01-15T13:44:53.050Z\",\"name\":\"COMMUNITY PHOTOS OR IMAGES\"}]}],\"props\":{\"margin\":\"large\",\"margin_remove_bottom\":true}}],\"name\":\"Customer Stories\"},{\"type\":\"section\",\"props\":{\"animation\":\"fade\",\"animation_delay\":\"200\",\"id\":\"efficient-workflow\",\"image_position\":\"center-center\",\"padding\":\"large\",\"padding_remove_bottom\":true,\"status\":\"disabled\",\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"\",\"width\":\"default\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\",\"vertical_align\":\"middle\",\"width_medium\":\"1-3\"},\"children\":[{\"type\":\"headline\",\"props\":{\"animation\":\"none\",\"block_align_breakpoint\":\"m\",\"block_align_fallback\":\"center\",\"content\":\"Major Event or Feature at the Booth\",\"maxwidth\":\"large\",\"text_align\":\"left\",\"text_align_breakpoint\":\"m\",\"text_align_fallback\":\"center\",\"title_element\":\"h2\",\"title_style\":\"h1\"}},{\"type\":\"text\",\"props\":{\"animation\":\"none\",\"block_align_breakpoint\":\"m\",\"block_align_fallback\":\"center\",\"column_breakpoint\":\"m\",\"content\":\"\n\n<p>Lorem sociis natoque penatibus et magnis dis parturient montes, nascetur ridiculus mus. Nulla consequat massa quis enim.<\\\/p>\",\"margin\":\"default\",\"maxwidth\":\"large\",\"text_align\":\"left\",\"text_align_breakpoint\":\"m\",\"text_align_fallback\":\"center\",\"text_style\":\"lead\"}},{\"type\":\"button\",\"props\":{\"animation\":\"none\",\"grid_column_gap\":\"small\",\"grid_row_gap\":\"small\",\"margin\":\"medium\",\"text_align\":\"left\",\"text_align_breakpoint\":\"m\",\"text_align_fallback\":\"center\"},\"children\":[{\"type\":\"button_item\",\"props\":{\"button_style\":\"text\",\"content\":\"External Link if needed\",\"dialog_layout\":\"modal\",\"dialog_offcanvas_flip\":true,\"icon_align\":\"left\",\"link\":\"#\"}}]},{\"type\":\"gallery\",\"props\":{\"filter_align\":\"left\",\"filter_all\":true,\"filter_grid_breakpoint\":\"m\",\"filter_grid_width\":\"auto\",\"filter_position\":\"top\",\"filter_style\":\"tab\",\"grid_default\":\"1\",\"grid_medium\":\"3\",\"item_animation\":true,\"lightbox_bg_close\":true,\"link_style\":\"default\",\"link_text\":\"Read more\",\"margin\":\"default\",\"meta_align\":\"below-title\",\"meta_element\":\"div\",\"meta_style\":\"text-meta\",\"overlay_hover\":true,\"overlay_mode\":\"cover\",\"overlay_position\":\"center\",\"overlay_style\":\"overlay-primary\",\"overlay_transition\":\"fade\",\"show_content\":true,\"show_hover_image\":true,\"show_hover_video\":true,\"show_link\":true,\"show_meta\":true,\"show_title\":true,\"text_align\":\"center\",\"text_color\":\"light\",\"title_element\":\"h3\",\"title_hover_style\":\"reset\"}}]},{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\",\"width_medium\":\"2-3\"},\"children\":[{\"type\":\"image\",\"props\":{\"image\":\"wp-content\\\/uploads\\\/2025\\\/02\\\/FAVICON-25.svg\",\"image_svg_animate\":false,\"image_svg_color\":\"emphasis\",\"image_svg_inline\":false,\"image_width\":512,\"margin\":\"default\",\"position\":\"relative\",\"text_align\":\"center\"},\"name\":\"Feature Logo or Image\"}]}],\"props\":{\"layout\":\"1-3,2-3\",\"margin\":\"medium\"}}],\"name\":\"MAJOR FEATURE SPOTLIGHT\"},{\"type\":\"section\",\"props\":{\"image_position\":\"center-center\",\"padding_remove_bottom\":true,\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"middle\",\"width\":\"default\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"text\",\"props\":{\"animation\":\"none\",\"block_align\":\"center\",\"column_breakpoint\":\"m\",\"content\":\"\n\n<p style=\\\"text-align: left;\\\"><span style=\\\"font-weight: 400;\\\">Each game may look simple on the surface, but hidden within each game is a subtle vulnerability. Your mission: exploit it to win big.<\\\/span><\\\/p>\\n\n\n<p style=\\\"text-align: left;\\\"><span style=\\\"font-weight: 400;\\\">You\\u2019ll play right at the booth, using a provided laptop. The source code for each game is open and available on GitHub, so your only real enemy is your own curiosity, skill, and time. Get lucky or clever and you might walk away with a few points and a trinket. But if you dig deeper and find the exploit? That\\u2019s where the real points are.<\\\/span><\\\/p>\\n\n\n<p style=\\\"text-align: left;\\\"><span style=\\\"font-weight: 400;\\\">Once you\\u2019ve broken the game, you\\u2019ll also get the chance to submit a fix through our testing harness for even more points. Your exploits and fixes will earn you a spot on the leaderboard\\u2014and the top three contestants will win actual prizes.<\\\/span><\\\/p>\",\"margin\":\"default\",\"maxwidth\":\"2xlarge\",\"text_align\":\"left\",\"text_style\":\"lead\"}}]}]}]},{\"type\":\"section\",\"props\":{\"animation\":\"fade\",\"id\":\"community\",\"image_position\":\"center-center\",\"padding_remove_bottom\":false,\"padding_remove_top\":false,\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"\",\"width\":\"default\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"headline\",\"props\":{\"animation\":\"none\",\"content\":\"How to Play Our Contest\",\"text_align\":\"center\",\"title_element\":\"h2\",\"title_style\":\"h1\"},\"name\":\"How to Play Our Contest\"},{\"type\":\"text\",\"props\":{\"animation\":\"none\",\"block_align\":\"center\",\"column_breakpoint\":\"m\",\"content\":\"\n\n<p>You\\u2019ll need a ticket to play. These may be handed out during the con or earned by engaging with various other SAINTCON communities.<\\\/p>\\n\n\n<p>Redeem your ticket at the booth to take a crack at a game.<\\\/p>\\n\n\n<p>You can return and play again if you earn more tickets\\u2014each game is standalone and has its own challenge.<\\\/p>\",\"margin\":\"default\",\"maxwidth\":\"2xlarge\",\"text_align\":\"center\",\"text_style\":\"lead\"}},{\"type\":\"grid\",\"props\":{\"content_column_breakpoint\":\"m\",\"filter_align\":\"left\",\"filter_all\":true,\"filter_grid_breakpoint\":\"m\",\"filter_grid_width\":\"auto\",\"filter_position\":\"top\",\"filter_style\":\"tab\",\"grid_column_align\":true,\"grid_default\":\"1\",\"grid_medium\":\"3\",\"grid_small\":\"2\",\"icon_width\":80,\"image_align\":\"top\",\"image_grid_breakpoint\":\"m\",\"image_grid_width\":\"1-2\",\"image_svg_animate\":false,\"image_svg_color\":\"primary\",\"image_svg_inline\":true,\"image_width\":\"80\",\"item_animation\":true,\"lightbox_bg_close\":true,\"link_margin\":\"large\",\"link_style\":\"text\",\"link_text\":\"\",\"margin\":\"large\",\"margin_remove_bottom\":true,\"meta_align\":\"below-title\",\"meta_element\":\"div\",\"meta_style\":\"text-meta\",\"panel_image_no_padding\":false,\"panel_link\":true,\"panel_link_hover\":\"true\",\"panel_padding\":\"large\",\"panel_style\":\"card-default\",\"parallax_easing\":\"1\",\"position\":\"relative\",\"position_z_index\":\"1\",\"show_content\":true,\"show_hover_image\":true,\"show_hover_video\":true,\"show_image\":true,\"show_link\":true,\"show_meta\":true,\"show_title\":true,\"show_video\":true,\"text_align\":\"center\",\"title_align\":\"top\",\"title_element\":\"h3\",\"title_grid_breakpoint\":\"m\",\"title_grid_width\":\"1-2\",\"title_hover_style\":\"reset\",\"title_margin\":\"medium\"},\"children\":[{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">This contest is designed to be fun, welcoming, and hands-on\\u2014no gatekeeping here. Whether you\\u2019re a first-time player or a seasoned security pro, there\\u2019s a game (and probably a janky plush prize) with your name on it.<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">Come try your luck. Cheat the system. And leave it better than you found it.<\\\/span><\\\/p>\",\"image\":\"wp-content\\\/uploads\\\/icon-meetups-events.svg\",\"link\":\"#\",\"title\":\"Notes\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><em><span style=\\\"font-weight: 400;\\\">Partial wins<br \\\/><\\\/span><\\\/em><span style=\\\"font-weight: 400;\\\"> small points + small prize<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\"><em>Exploit the game<\\\/em><br \\\/>big points + bigger prize<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\"><em>Submit a working fix<br \\\/><\\\/em><\\\/span><span style=\\\"font-weight: 400;\\\">even more points and leaderboard climb<\\\/span><\\\/p>\",\"image\":\"wp-content\\\/uploads\\\/icon-workshops-trainings.svg\",\"link\":\"#\",\"title\":\"Scoring\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"\n\n<p><span style=\\\"font-weight: 400;\\\">-Are familiar with OWASP Top 10-style vulnerabilities <br \\\/>(XSS, IDOR, SQLi, etc.)<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">-Can read and understand code <br \\\/>(games will be in various different languages)<\\\/span><\\\/p>\\n\n\n<p><span style=\\\"font-weight: 400;\\\">-Can use an LLM<\\\/span><\\\/p>\\n\n\n<p>-Aren\\u2019t afraid to try weird things and fail gloriously<\\\/p>\",\"image\":\"wp-content\\\/uploads\\\/icon-community-chat.svg\",\"link\":\"#\",\"title\":\"Helpful Skills\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"Lorem ipsum dolor sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore et dolore.\",\"image\":\"wp-content\\\/uploads\\\/icon-help-guides.svg\",\"link\":\"#\",\"status\":\"disabled\",\"title\":\"Help Guides\"}},{\"type\":\"grid_item\",\"props\":{\"content\":\"Lorem ipsum dolor sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore et dolore.\",\"image\":\"wp-content\\\/uploads\\\/icon-24-7-support.svg\",\"link\":\"#\",\"status\":\"disabled\",\"title\":\"24\\\/7 Support\"}}],\"name\":\"Grid Cards\"}]}]}],\"name\":\"CONTEST\"},{\"type\":\"section\",\"props\":{\"image_position\":\"center-center\",\"style\":\"default\",\"title_breakpoint\":\"xl\",\"title_position\":\"top-left\",\"title_rotation\":\"left\",\"vertical_align\":\"middle\",\"width\":\"default\"},\"children\":[{\"type\":\"row\",\"children\":[{\"type\":\"column\",\"props\":{\"image_position\":\"center-center\",\"position_sticky_breakpoint\":\"m\"},\"children\":[{\"type\":\"text\",\"props\":{\"column_breakpoint\":\"m\",\"content\":\"\n\n<h2>Frequently Asked Questions:<\\\/h2>\",\"margin\":\"default\"},\"name\":\"FAQ Header\"},{\"name\":\"Frequently Asked Questions\",\"type\":\"accordion\",\"children\":[{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> It\\u2019s an individual contest\\u2014just you and the game.<\\\/span><\\\/p>\",\"image\":\"\",\"title\":\"Is this for individuals or teams?\"}},{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> Nope! It<strong> is<\\\/strong> <strong>best<\\\/strong> to <em>use your own<\\\/em> for submitting code fixes, but devices will be provided in case you need one.<\\\/span><\\\/p>\",\"image\":\"\",\"title\":\"Do I need to bring a laptop?\"}},{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> Tickets will be floating around the con\\u2014keep an eye out at various community booths or events.<\\\/span><\\\/p>\",\"image\":\"\",\"title\":\"How do I get a ticket?\"}},{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> That\\u2019s okay! You can try using ChatGPT or learning about vulnerabilities at the AppSec community. Some games can be partially beaten with a little luck and intuition. Come give it a shot and have fun.<\\\/span><\\\/p>\",\"image\":\"\",\"title\":\"What if I\\u2019ve never hacked anything before?\"}},{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> Yes! All game source code is open and available on GitHub.<\\\/span><\\\/p>\",\"title\":\"Can I view the game code?\"}},{\"type\":\"accordion_item\",\"props\":{\"content\":\"\n\n<p><b>A:<\\\/b><span style=\\\"font-weight: 400;\\\"> The top three individuals with the most combined points from successful exploits and submitted fixes will win final prizes.<\\\/span><\\\/p>\",\"title\":\"How are winners decided?\"}}],\"props\":{\"block_align\":\"center\",\"collapsible\":false,\"content_column_breakpoint\":\"m\",\"content_column_divider\":false,\"content_dropcap\":true,\"image_align\":\"right\",\"image_grid_breakpoint\":\"m\",\"image_grid_width\":\"auto\",\"image_height\":\"100\",\"image_svg_color\":\"emphasis\",\"image_vertical_align\":true,\"image_width\":\"100\",\"link_style\":\"default\",\"link_text\":\"Read more\",\"margin_remove_top\":false,\"multiple\":false,\"show_image\":true,\"show_link\":true}}]}]}],\"name\":\"FAQ\"}],\"version\":\"4.5.24\"} --><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Step right up! Beat the System Your only real enemy is your own curiosity, skill, and time. The AppSec Carnival is a security challenge disguised as a shady carnival booth\u2014complete with questionable games, misleading odds, and gloriously stupid prizes. To get started, visit https:\/\/appsec.saintcon.community and\/or the AppSec Carnival Games Booth in the Expo Center. Where [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":329,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-323","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/pages\/323","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/comments?post=323"}],"version-history":[{"count":27,"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/pages\/323\/revisions"}],"predecessor-version":[{"id":1508,"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/pages\/323\/revisions\/1508"}],"up":[{"embeddable":true,"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/pages\/329"}],"wp:attachment":[{"href":"https:\/\/www.saintcon.org\/wp-json\/wp\/v2\/media?parent=323"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}