tmpfs.tech · all tracks · Defense & IR

Block the Attacker at TCP Wrappers

Defense & IR · easy · solved in-browser (no VM needed) · 3 tiered hints

Write /etc/hosts.deny to contain a brute-forcer. Deny sshd access from the single host 203.0.113.7, deny all services from the subnet 198.51.100.0/24, and add a final catch-all line that denies ALL services from ALL hosts (the default-deny posture, relying on /etc/hosts.allow for exceptions). (Authored config, graded structurally — the engine isn't run here.)

▶ Start this challenge

Nobody has solved this one yet — be the first clear on the leaderboard.

How it works

Open the challenge and an in-page editor appears — write your answer and tmpfs.tech grades it server-side against the same checks a real box would run. No VM, no install, no signup needed to try.

More Defense & IR challenges

Incident response: evict rogue accounts, eradicate persistence, attribute a breach.

See all Defense & IR challenges →

FAQ

Is it free? Yes — play as a guest, no signup required to start.

Do I need to install anything? No. Everything runs in your browser.

How is it graded? Automatically and deterministically — your work is checked against the exact rules the live box would apply.