DEV Community

Breno Vitório
Breno Vitório

Posted on

1

Photographs - Writeup

When you open the challenge's page, this is its' content:

A picture, and the challenge in a message

By downloading the image and taking a look at its' EXIF metadata, you're going to find the nickname fl0pfl0p5 in the author field. This nickname can be used as input for a tool like Sherlock, or maybe just a google search, and both will result in interesting stuff.

Sherlock finding social media accounts

The google results, in special, give us a more important hint, which is this one:

Another user referencing the nickname fl0pfl0p5

When we open this reddit post, there's a comment referencing fl0pfl0p5's github user, but the person who's making this comment has a different username, which is m4r64r1n3.

Sherlock returns similar results for this different username, and by looking at its' twitter account, there's this post of a photo that they took!

Photo of a bird

By downloading this picture and using it in a reverse image search tool, such as google image's "find source", you are going to find this reddit post:

Same picture in a different post

By looking at the reddit post, it was made by a third nickname (this person likes to use different nicknames, damn!), which is v1ck1v4l3:

v1ck1v4l3 post

If you search for the nickname on Google, there will be a blog with the same name and the same picture as a post!

v1ck1v4l3 blog

There's an anonymous comment in the picture saying that it's not a good idea to share locations online, so it gives us a hint that the location was shared before, in the blog. Web archive to the rescue!

Comment in the picture post

By picking up the picture post URL and putting it in the web archive, there will be found a snapshot of it, which contains the flag!

Web archive snapshot

Result flag

Sentry image

Hands-on debugging session: instrument, monitor, and fix

Join Lazar for a hands-on session where you’ll build it, break it, debug it, and fix it. You’ll set up Sentry, track errors, use Session Replay and Tracing, and leverage some good ol’ AI to find and fix issues fast.

RSVP here →

Top comments (0)

Sentry image

See why 4M developers consider Sentry, “not bad.”

Fixing code doesn’t have to be the worst part of your day. Learn how Sentry can help.

Learn more