Introduction

Dear Y,

Kurt Weiss, the CEO of Kurt's Maultaschenfabrikle, was very impressed with your skills demonstrated during the last assessment, where you compromised the entire company, including the Active Directory, all user accounts, and even the IT KeePass. Now, after investing significant resources to address all the vulnerabilities uncovered in the previous assessment, Kurt wants to put his defenses to the test again. He believes he has made it much harder for attackers this time - or at least he hopes so.

Kurt has requested another initial assessment to evaluate the effectiveness of the improvements and the money invested. He only provided us with the name of the company, "Kurt's Maultaschenfabrikle," just as last year, so start your reconnaissance and see if you can breach the fortified defenses! As always, we expect nothing but the highest level of professionalism and expertise from you. Let's make this experience both challenging and rewarding. So, put on your favorite hoodie, grab a cup of coffee, and let the hacking begin!

Here is all you should need:

Bossman


From: Kurt Weiss <kurt.weiss@maultaschenfabrikle.de>
Sent: Thursday, July 04, 2024 06:56 AM
To: Fancy Boss, Laura Schaefer <laura.schaefer@maultaschenfabrikle.de>
CC: Jens Fischer <jens.fischer@maultaschenfabrikle.de>
Subject: Feedback last assessment/new assessment

Hi,

I wanted to follow up on my previous email regarding the last assessment of our systems. After reflecting on
the feedback from your team and the results, I have realized that I was mistaken. I did not expect the outcomes
we saw, and it has certainly opened my eyes to some areas we need to improve.

I'm actually quite grateful for the thoroughness of the last assessment, as it has been a significant learning
experience for me and my team. We've since invested a considerable amount of time, money, and effort into addressing
all the identified weaknesses. I am hopeful that this time, we will see much better results and demonstrate that we
have indeed learned from the previous assessment.

Aside from our security endeavors, it has also been an excellent year for Kurt's Maultaschenfabrikle from a
business perspective. We're thrilled with our growth and success over the past year.

Thank you once again for your hard work and for helping us improve. We're looking forward to the next assessment
and are confident that we will show significant progress.

Best regards,
Kurt

> Kurt Weiss | CEO
> t. +49 1337 4242 4141
> e. kurt.weiss@maultaschenfabrikle.de
> w. maultaschenfabrikle.de

---  
  
On 4/28/23 07:11, Kurt Weiss wrote:
> From: Kurt Weiss <kurt.weiss@maultaschenfabrikle.de>
> Sent: Friday, April 28, 2023 07:11 AM
> To: Fancy Boss
> 
> Hi,
> 
> I wanted to follow up on the last assessment of our security systems and provide some feedback. While I
> appreciate the hard work of your team and the skills demonstrated by your attacker, I have to be honest
> and say that the assessment was a bit too easy. It was  only a warm-up for the upcoming test. So don't be
> too sad.
> 
> I don't mean to sound arrogant, but I don't think your attacker boys have what it takes to truly pwn Kurts
> Maultaschenfabrikle. We take our security very seriously and have implemented measures that will prove to be
> a challenge even for the most skilled attackers.
> 
> In any case, I wanted to thank you for your efforts and assure you that we take our security very seriously,
> but I think you will not be able to pwn us. But I suppose we'll just have to wait and see.
>
> Best regards,
> Kurt
>  
> > Kurt Weiss | CEO
> > t. +49 1337 4242 4141
> > e. kurt.weiss@maultaschenfabrikle.de
> > w. maultaschenfabrikle.de