- Task 2 What does the base said?
- VEhNe2p1NTdfZDNjMGQzXzdoM19iNDUzfQ==
- The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis → https://gchq.github.io/CyberChef/
- have capital - small - and at the end == →
base64
- https://gchq.github.io/CyberChef/ →
base64 decode
THM{ju57_d3c0d3_7h3_b453}
- Task 3 Meta meta
- Meta! meta! meta! meta................................…
ExifTool
is a powerful command-line tool for reading, writing, and editing metadata (EXIF, IPTC, XMP, and more) in various types of digital files, including images and documents.THM{3x1f_0r_3x17}
- Task 4 Mon, are we going to be okay?
- Something is hiding. That's all you need to know.
Steghide
is a command-line utility for hiding and extracting data within image and audio files through steganography techniques, allowing for covert information storage and retrieval.THM{500n3r_0r_l473r_17_15_0ur_7urn}
- Task 5 Erm......Magick
- Huh, where is the flag?
THM{wh173_fl46}
- Task 6 QRrrrr
- Such technology is quite reliable.
Zbarimg
is a command used for decoding barcodes and QR codes from image files using the Zbar library, which can be useful for automating the extraction of information from images with barcodes or QR codes.THM{qr_m4k3_l1f3_345y}
- Task 7 Reverse it or read it?
- Both works, it's all up to you.
strings
command is a utility in Unix and Linux operating systems that extracts and displays human-readable text from binary files, typically locating and printing sequences of printable characters.grep
is a command-line utility in Unix and Linux operating systems used to search and filter text or regular expressions within files.THM{345y_f1nd_345y_60}
- Task 8 Another decoding stuff
- Can you decode it?
- 3agrSy1CewF9v8ukcSkPSYm3oKUoByUpKG4L
- click om
magic button
→ detect the decode automatically THM{17_h45_l3553r_l3773r5}
- Task 9 Left or right
- Left, right, left, right... Rot 13 is too mainstream. Solve this
- MAF{atbe_max_vtxltk}
- ROT13 ("rotate by 13 places", sometimes hyphenated ROT-13) is a simple letter substitution cipher that replaces a letter with the 13th letter after it in the latin alphabet. ROT13 is a special case of the Caesar cipher which was developed in ancient Rome.
THM{hail_the_caesar}
- Task 10 Make a comment
- No downloadable file, no ciphered or encoded text. Huh ....…
- Inspect mode allows you to select a particular element during session playback, and browse through recordings in which users have interacted with the element you have selected.
inspect (Q)
THM{4lw4y5_ch3ck_7h3_c0m3mn7}
- Task 11 Can you fix it?
- I accidentally messed up with this PNG file. Can you help me fix it? Thanks, ^^
- The "image header" in digital images holds essential metadata like format, dimensions, and color depth, instructing software how to display the image. Formats like JPEG, PNG, BMP, and GIF have unique header structures.
- go to → https://en.wikipedia.org/wiki/PNG
Hexedit
is a command-line hexadecimal editor used to view and edit the hexadecimal content of binary files, enabling low-level manipulation of data within these files.THM{Y35_W3_c4n}
- Task 12 Read it
- Some hidden flag inside Tryhackme social account.
inurl
: This operator refines searches by finding keywords or phrases in webpage URLs, e.g., "inurl:technology."intext
: "intext" locates web pages with specific keywords or phrases in their main body text, such as "intext:"climate change."intitle
: It helps find web pages with specific keywords or phrases in their titles, like "intitle:"healthy recipes."THM{50c14l_4cc0un7_15_p4r7_0f_051n7}
- Task 13 Spin my head
- Task 14 An exclusive!