Get ready for Capture The Flag 2025 with these 20 hacking tips
9 and 10 October is go time! Together with Mendix, Siemens, The S-unit and Low-Code Academy, we're organizing the biggest Mendix Hackaton of the year. This event is all about learning more about security in Mendix applications, getting together with the Mendix community and of course, have some competitive fun with your team!
To help you hit the ground running, we’ve gathered practical tips and tricks from past participants and Mendix community experts, people who’ve been there, hacked that!
Let's start with some expert tips from our own Mendix MVP Mitchel Mol!
Mitchel Mol's hacking tips
- Build your A-team
Choose teammates with a wide range of strengths. From app logic and APIs to debugging and security. A diverse team is your secret weapon.
- Explore the Mendix Client API
Brush up on versions 9 and 10. Understanding how the front-end behaves will be crucial during the event.
- Get comfortable with Burp Suite
Use the Burp Suite Pro trial to practice intercepting traffic, manipulating headers, and exploring session flows.
- Install Ciphx DevTools
This browser extension gives you powerful visibility into what’s happening behind the scenes in Mendix apps.
- Study past write-ups
Learn how previous teams cracked challenges. Patterns repeat, and smart players know what to look for.
In his Mendix Ignite Newsletter, Mitchel wrote down his lessons learned from CTF 2024 as an attendant.
More tips from Mendix community members
You can find all 20 tips from Mendix community members and previous attendees in the source article from Mendix.
Here you find tips from Mendix MVP's and experts such as Rene van Hofwegen, Dirk van Veen, Eline Bijkerk, Raymond Kok, and more.
Read along in this blog!