CTF After Dark - OSINT - Hello There
Hello There
task
A short time ago, in an Internet close, close by… a certain Cyber Officer definitely did not create an OSINT challenge that definitely is not hiding on a certain social media site owned by Microsoft. Do show your CTF skills by finding the (hypothetical) flag or do not. There is no try.
Author: Laura
Tags: osint
notes
Let’s look for users which have the officer
role assigned on the official ACM Cyber discord server
So the target person should be one of those 5 users.
One of those users immediately sticks out after looking at the profile descriptions.
That user is Laura:
We can see, that she has linked her GitHub profile for us!
It is https://github.com/lness02/.
On her GitHub profile we find this repository:
https://github.com/lness02/definitely-not-an-osint-challenge
That is definitely the correct path for this challenge (pun intended).
In the description it says:
|
|
If we take a look at the source code, there is just an index.html
file which is not interesting:
|
|
There is nothing hidden at this stage of the main branch.
However if we take a look at the commit history there is one commit that is worth a look.
It is this commit: eb55556894fb90a0bfb34095ee14b74f3613ebc2
We found the flag!
Although the flag is called: flag{th1s_isn't_th3_fl4g_y0u're_l00king_f0r}
, it is indeed the correct flag ;)