Game rules

Prerequisites:

  • A OWASP Cornucopia card deck. Both Website App Edition and Ecommerce Edition can be used.
  • A dice. Any dice will do.
  • A computer
  • A list of qr codes that takes the player to the page presenting the characters of the game.

Disclaimer: The game won't necessarily follow Dungeons & Dragons game rules, but we will work towards incorporating more of the same game dynamics and rules into the game moving forward. Currently, the game and rules are to be considered in development and may drasticly change as the work progresses.

Start the game by selecting a game master to lead the game if the game master hasn't been preselected. The game master will use the "cheat sheet" to keep track of where to lead the players.

The game master deals out all the OWASP Cornucopia cards. Once that is done let each player select a character associated with "The Azure Cloud Castle" game. The players choose their character by qr codes only, not knowing which character you will get is more fun and may make it more enjoyable to play the game again.

Once everyone has a character, present yourself. This way, everyone knows about your abilities, skills and spells.

The game master select "Azure Cloud Castle" from the games meny and start to read the plot of the game.

After reading the plot, the players are presented with 1-4 choices. They can "cast a spell", "use a weapon", "throw the dice" or "use a card". All options are not always available. The players are not told which option is the best. The game master keep track on whether the choices the player make are valid or not.

Once you have played the game a couple of times, you can also play the game infront of an audience. If so, let the players dress up as their favorite character for the event.

Rolling the dice

For simplicity you can use any type of dice. Say you use a dice with six edges (1-6). When the player throw the dice, if they get 1-3, then that would be a "low roll" and if they get 4-6, then that would be a "high roll". If you play with a dice with more edges just divide the possible edges that the dice can land on into low and high in a similar fashion. The game master can decide what a "high roll" and what a "low roll" is meant to be. Just make sure that you clarify this before starting the game.

Easter eggs

Encourge the players to click on the links in the text. They contain easter eggs related to cybersecurity.

Provided by Johan Sydseter

OWASP® Dungeons & Daemons

OWASP Dungeons & Daemons is originally created by Johan Sydseter. It is open source and can be downloaded free of charge from the OWASP website. It is is free to use. It is licensed under the Creative Commons Attribution-ShareAlike 4.0 International, so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one. OWASP does not endorse or recommend commercial products or services. OWASP Dungeons & Daemons is licensed under the Creative Commons Attribution-ShareAlike 4.0 International license and is © 2024 OWASP Foundation.