top of page
Search

Holiday Challenges🎅

  • Writer: Cyber Catamounts
    Cyber Catamounts
  • Dec 14, 2020
  • 2 min read

❄️Flag 1:

❄️Flag 2:

❄️Flag 3:

  • This flag is written in faint color. You can use the bucket fill tool

  • How?

    • Open Gimp on your VM

  • Click on the bucket tool shown above or use “ctrl-b” → Click on areas in the background to reveal the flag!

    • Flag: can_you_see_me?

❄️Flag 4:

❄️Flag 1:



We know it’s a photograph (the name of the file tells us!), so change .mp3 in the filename to .jpg to get the first flag.




  • Want to know how to tell what filetype it is without a filename?

    • > file [filename

  • Mp3 imposter!

















❄️Flag 2:

  • Run the strings command to get a hint.

    • > strings [filename]

      • steghide password is flag #1

  • We now know that steghide passcode is flag #1 (which we found is xmas).

    • > steghide extract -sf [filename]

    • Remember, your password won’t show up when you type it!

Using this we could extract a QR code, decode the QR code and we get a binary string, decode the binary string and we get the flag

Comments


©2020 by CyberCatamounts. Proudly created with Wix.com

bottom of page