forked from TheWinRaRs/RaRCTF2021-Challenges-Public
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
5 changed files
with
144 additions
and
0 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,56 @@ | ||
# Coherence Check | ||
|
||
### Description - So we're up to date, we've moved away from using s*nity check. Here's your flag. | ||
|
||
|
||
Initially, this challenge may seem super simple, type out the flag you get in the image below. | ||
|
||
![Coherence Check](src/coherencerarctf.png) | ||
|
||
Sure, this will work and give you the flag of `rarctf{Welcome_To_RaRCTF!}`, however, in design of an interesting Coherence Check, I decided to go Down The Rabbit Hole, and add an extra easter egg never seen before in the land of Capture the Flag Coherence Checks - Steganography. | ||
|
||
I decided to skip the 3 common pillars of CTF Steganography - Binwalk, Steghide and Strings. The next thing that I thought of was metadata, so I decided to create some. | ||
|
||
For those with access to a command line, `exiftool` is great for metadata related problems. (can just be installed with `sudo apt install exiftool` for those with the apt package manager.) | ||
|
||
Simply running `exiftool [filename]` will bring us something interesting, as shown below. | ||
``` | ||
➜ ~ exiftool coherence.png | ||
[note, I have trimmed the output of this to make it look nice on you, the reader. If you're brave enough to try the full command, good luck.] | ||
ExifTool Version Number : 12.16 | ||
File Name : coherence.png | ||
Directory : . | ||
File Size : 32 KiB | ||
File Modification Date/Time : 2021:08:06 14:45:33+01:00 | ||
File Access Date/Time : 2021:08:07 18:47:57+01:00 | ||
File Inode Change Date/Time : 2021:08:07 18:47:57+01:00 | ||
File Permissions : rw-r--r-- | ||
File Type : PNG | ||
File Type Extension : png | ||
MIME Type : image/png | ||
Image Width : 1000 | ||
Image Height : 145 | ||
Bit Depth : 8 | ||
Color Type : RGB | ||
Compression : Deflate/Inflate | ||
Filter : Adaptive | ||
Interlace : Noninterlaced | ||
Exif Byte Order : Little-endian (Intel, II) | ||
Bits Per Sample : 8 8 8 | ||
Orientation : Horizontal (normal) | ||
X Resolution : 37.78947368 | ||
Y Resolution : 37.78947368 | ||
Resolution Unit : cm | ||
Software : GIMP 2.10.22 | ||
Color Space : sRGB | ||
Image Supplier : | ||
Image Creator : | ||
Copyright Owner : | ||
Licensor : | ||
Description : if you see this, DM jammy#0402 on discord secret_stego for a special role! | ||
``` | ||
Most of this is irrelevant, but the author (me!) left a note in the description of the metadata, stating ` if you see this, DM jammy#0402 on discord secret_stego for a special role!` If you DMd jammy#0402, you would have received the Rabbithole Enthusiast role on the RaRCTF discord. Congrats to the below people for actually finding this: | ||
|
||
- yardenohana#0558 | ||
|
||
#### Flag: rarctf{Welcome_To_RaRCTF!} |
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1 @@ | ||
rarctf{Welcome_To_RaRCTF!} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,86 @@ | ||
# Discord | ||
|
||
### Description - Come to our discord, and we'll give you a free flag for your trouble. Discord invite: https://discord.gg/VMWvNW36Zx | ||
|
||
### Note: While it is optional to join our discord, we will be posting challenge updates + announcements there first, so it is highly recommended to join. | ||
|
||
A simple discord challenge, you need to verify with the reaction bot, then run `!flag` in the spam discord channel. | ||
|
||
### Alternative solve | ||
|
||
[Rarmony](pwn/Rarmony), our CTF chat platform challenge, also had its own version of the discord flag, in the `general` channel. To get this flag, follow the below steps: | ||
``` | ||
➜ ~ nc 193.57.159.27 28514 | ||
Harmony: Chat for CTFers | ||
0. Read Channel | ||
1. View User Info | ||
2. Change role name | ||
3. Change username | ||
> 0 | ||
Choose channel to view | ||
0. general | ||
1. pwn | ||
2. secret-admin-chat | ||
3. team-locator-inator | ||
4. crypto | ||
5. spam | ||
6. rev | ||
7. misc | ||
8. web | ||
> 0 | ||
general | ||
Tony: :lemonthink: | ||
proleethaxor1337: helo i am new to ctf pls gib flag @organizer | ||
proleethaxor1337: @organizer i cannot find coherence check flag | ||
proleethaxor1337: @organizer | ||
wiwam845: :whopinged: | ||
proleethaxor1337: @organizer gib flag | ||
Pig2: amogus | ||
Quintec: amogus | ||
Strellic: so does anyone here hate rust | ||
Rag: blobfear | ||
mop0: ?mute @Strellic | ||
UnbelievaBoat: @Strellic was muted ... | ||
Tango: although my name is tango i like fanta more uwu | ||
MovingDessert: owo | ||
rak1507: uwu | ||
jammy: uwu | ||
AlOnKali: can one of you help me with my chemistry homework? i cant find anything on acids | ||
JoJo: hill | ||
Tony: in order to fully finish our discord migration, i've decided to repost the discord flag of rarctf{wh3n_4r3_w3-m0v1ng_b4ck_t0-IRC?_29ff18a15e} | ||
diogoctf: Add pastebin pastes to your server today! | ||
rak1507: you guys should all try apl | ||
UnbelievaBoat: tony left the server... | ||
UnbelievaBoat: wiwam845 left the server... | ||
UnbelievaBoat: pig left the server ... | ||
UnbelievaBoat: Quintec left the server... | ||
UnbelievaBoat: diogoctf left the server ... | ||
UnbelievaBoat: floral elements left the server ... | ||
UnbelievaBoat: curdcompiler left the server ... | ||
UnbelievaBoat: fieldracoon left the server ... | ||
UnbelievaBoat: AlOnKali left the server ... | ||
UnbelievaBoat: jammy left the server ... | ||
UnbelievaBoat: mocksower left the server ... | ||
UnbelievaBoat: day left the server ... | ||
UnbelievaBoat: rag left the server ... | ||
MovingDessert: rak owo | ||
rak1507: uwu | ||
UnbelievaBoat: das left the server ... | ||
UnbelievaBoat: Tango left the server ... | ||
UnbelievaBoat: Strellic left the server ... | ||
UnbelievaBoat: mop0 left the server ... | ||
UnbelievaBoat: JoJo left the server ... | ||
UnbelievaBoat: PotatoK left the server ... | ||
UnbelievaBoat: chop0 left the server ... | ||
UnbelievaBoat: right i've had enough of you | ||
UnbelievaBoat: UnbeliveaBoat left the server ... | ||
rak1507: sad! | ||
``` | ||
|
||
After careful looking, we see a message from Tony stating: | ||
|
||
`in order to fully finish our discord migration, i've decided to repost the discord flag of rarctf{wh3n_4r3_w3-m0v1ng_b4ck_t0-IRC?_29ff18a15e}` | ||
|
||
This flag matches up from what you would get from running !flag in the spam channel. | ||
#### Flag: rarctf{wh3n_4r3_w3-m0v1ng_b4ck_t0-IRC?_29ff18a15e} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1 @@ | ||
rarctf{wh3n_4r3_w3-m0v1ng_b4ck_t0-IRC?_29ff18a15e} |