Monday, September 23, 2013

CSAW CTF 2013 - Recon

There were 8 recon challenges. 6 of them were solved with the exception of Alexander Taylor (fuzyll) and Jordan Wiens (psifertex). Most of recon challenges were solved with the assistance of Tommy. Each challenge in this category worths 100 points.

Julian Cohen

> Google his handle (HockeyInJune)
> Click on Wikipedia user page













> Visit his "new website", there was nothing except picture of a washing machine with big mouth
> Run 'dig' on the url, and get the IP address.



















>] Voila!


















Flag: 1a8024a820bdc7b31b79a2d3a9ae7c02



Kevin Chung

> Hint given was "What places can you graduate from?"
> Start with his high school, Staten Island Technical High School
> First few Google results were about CSAW High School Forensics previous winners
> Clicking on Kevin's name brings us to key.txt

Flag: who_in_the_world_is_kevin_chung


historypeats

> Google "historypeats" gives multiple results, including a github profile
> It is shown that the most recent activity of historypeats was removing comments from historypeats/putscan
> Removed comment was actually the flag














Flag: whatDidtheF0xSay?


Brandon Edwards

> Google his name
> Results show his handle (drraid)
> Google his handle
> One of the results is his github profile
> Public activity show he had recently pushed the flag to sophsec's github


























Flag: a959962111ea3fed179eb044d5b80407


Odin

> Google search yielded nothing
> One of #csaw mod has the nick snOwDIN
> /whois snOwDIN gives some interesting info








> Key is on the LinkedIn page
Flag: cookies_are_for_csaw


Theodore Reed

> Start from prosauce.org
> On "Projects" tab, there's a youtube link to his Shmoocon 2013 talk
> Key is in the hidden comment.






Flag: shmoonconrocksglhfwithcsaw

No comments:

Post a Comment