└── README.md /README.md: -------------------------------------------------------------------------------- 1 | **** 2 | 3 | # OhSINT 4 | 5 | ![alt text](https://i.imgur.com/Gwd93aS.png) 6 | 7 | **Source:** Created by tryhackme (ben) on TryHackMe 8 | 9 | ***Description:*** 10 | 11 | ​ Are you able to use open source intelligence to solve this challenge? 12 | 13 | ***Related Hosting Links*** 14 | 15 | - TryHackMe 16 | - Hosted as a free room at the time of writing! 17 | - Link: https://tryhackme.com/room/ohsint 18 | 19 | ***Special Notes:*** 20 | 21 | ​ Be sure to try various combinations of searching with the information you find, the results will vary heavily as you try more and more. 22 | 23 | 24 | 25 | ***Instructions:*** 26 | 27 | - As we begin to conquer this room, we are greeted by the following image 28 | - ![alt text](https://i.imgur.com/EGk5v7K.jpg) 29 | - At first glance, this simple appears to be the Windows XP iconic default background. Let's go ahead and see what properties it has by running exiftool on it 30 | - ![alt text](https://i.imgur.com/NaeWtHV.png) 31 | - Interesting, it appears to be attributed to someone named "OWoodflint", let's try just googling that 32 | - ![alt text](https://i.imgur.com/VIav4JR.png) 33 | - Look's like we have two interesting hits, a blog and a twitter profile. Let's peek at the blog 34 | - ![alt text](https://i.imgur.com/9XZDX3w.png) 35 | - Seem's fairly empty, let's check out the source code 36 | - ![alt text](https://i.imgur.com/Xehh8p6.png) 37 | - Bingo! Yeah, that's not a great place to store your password! We'll check the rest of the site, look's like he's traveling at the moment but I'm not seeing anything else here. Let's pivot to his twitter page 38 | - ![alt text](https://i.imgur.com/uDChtv5.png) 39 | - Interesting, looks like he's tweeted a BSSID for a wifi point near where he lives. We'll check wigle.com to see if there's a chance that a wardriver has also spotted this access point 40 | - ![alt text](https://i.imgur.com/vI5C0L3.png) 41 | - ![alt text](https://i.imgur.com/TyOKXSl.png) 42 | - Looks like we're in luck! (If you have any difficulties with this, zoom far out and you'll see a purple icon appear.) Hmm, let's see if we can find any other profiles associated with him. Let's see if he's submitted anything to github 43 | - ![alt text](https://i.imgur.com/6RS4deH.png) 44 | - Sure enough, there's his profile 45 | - ![alt text](https://i.imgur.com/O1JYega.png) 46 | - Creepy, right? Be careful what you post online! 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | ***Flags:*** 55 | 56 | - Twitter 57 | - 58 | - GitHub 59 | - 60 | - WordPress 61 | - 62 | --------------------------------------------------------------------------------