728x90

[๋ฌธ์ œ]

https://tryhackme.com/r/room/ohsint

 

OhSINT

Are you able to use open source intelligence to solve this challenge?

tryhackme.com

  • OSINT๋Š” ๊ณต๊ฐœ๋œ ๋ฌด๋ฃŒ ์†Œ์Šค์—์„œ๋งŒ ์ˆ˜์ง‘๋˜๋Š” ์œ„ํ˜‘ ์ธํ…”๋ฆฌ์ „์Šค์˜ ํ•˜๋‚˜์˜ ์œ ํ˜•์ด๋‹ค.
  • ์ด ๋ฌธ์ œ๋Š” OSINT ๊ธฐ์ˆ ์„ ํ™œ์šฉํ•˜์—ฌ ์ œ๊ณต๋œ ์ด๋ฏธ์ง€๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ๋‹ต์„ ์ฐพ์•„์•ผ ํ•œ๋‹ค.

[๋ฌธ์ œ ํ’€์ด]

What is this user's avatar of?

  • ๋จผ์ € ํ•ด๋‹น ์ด๋ฏธ์ง€๋ฅผ ๋‹ค์šด๋กœ๋“œ ํ›„ Exiftool์„ ์‚ฌ์šฉํ•ด์„œ ๋ฉ”ํƒ€๋ฐ์ดํ„ฐ๋ฅผ ๋ถ„์„ํ–ˆ์Šต๋‹ˆ๋‹ค.
  • Copyright ํ•„๋“œ์—์„œ OWoodflint๋ผ๋Š” ์ •๋ณด๋ฅผ ์–ป์—ˆ์Šต๋‹ˆ๋‹ค.
  • ๋” ์ •๋ณด๋ฅผ ์–ป๊ธฐ ์œ„ํ•ด ๊ตฌ๊ธ€์— ๊ฒ€์ƒ‰์„ ํ–ˆ๋”๋‹ˆ ํ•ด๋‹น ์ด๋ฆ„์œผ๋กœ ํŠธ์œ„ํ„ฐ ๊ณ„์ •์ด ๋–ด๊ณ  ์•„๋ฐ”ํƒ€๋Š” ๊ณ ์–‘์ธ ๊ฒƒ์„ ๋ฐœ๊ฒฌํ–ˆ์Šต๋‹ˆ๋‹ค.

๋‹ต: cat


What city is this person in?

 

  • ํ•ด๋‹น ๊ณ„์ •์— ๋“ค์–ด๊ฐ€๋‹ˆ ์‚ฌ์šฉ์ž๊ฐ€ ์ž‘์„ฑํ•œ ํŠธ์œ— ์ค‘ BSSID๋ฅผ ๋ฐœ๊ฒฌํ–ˆ์Šต๋‹ˆ๋‹ค.
  • ์ด BSSID๋ฅผ BSSID + Wigle.net ํžŒํŠธ๋ฅผ ์ด์šฉํ•ด์„œ wigle.net์—์„œ ๊ฒ€์ƒ‰์„ ํ–ˆ์Šต๋‹ˆ๋‹ค.

  • wigle.net์—์„œ ๊ฒ€์ƒ‰์„ ํ†ตํ•ด ์‚ฌ์šฉ์ž๋Š” London์— ์žˆ๋‹ค๋Š” ๊ฒƒ์„ ์•Œ์•„๋ƒˆ์Šต๋‹ˆ๋‹ค.
  • ํ•ด๋‹น ๊ธฐ๋Šฅ์„ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ๊ณ„์ •์ด ์žˆ์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค! advanced search๋ฅผ ํ†ตํ•ด ๋ถ„์„ํ–ˆ์Šต๋‹ˆ๋‹ค.

๋‹ต: London


What is the SSID of the WAP he connected to?

  • wigle.net์—์„œ BSSID์™€ ์—ฐ๊ด€๋œ SSID๋„ ์ฐพ์„ ์ˆ˜ ์žˆ์—ˆ์Šต๋‹ˆ๋‹ค.

๋‹ต: UnileverWiFi


What is his personal email address?

What site did you find his email address on?

 
  • ์•„๊นŒ ๊ตฌ๊ธ€์— ๊ฒ€์ƒ‰ํ–ˆ์„ ๋•Œ ํŠธ์œ„ํ„ฐ ๊ณ„์ • ๋ฐ‘์— ๊นƒํ—ˆ๋ธŒ ํŽ˜์ด์ง€๋„ ๊ฐ™์ด ์žˆ์—ˆ๋Š” ๋ฐ ์ด๋ฒˆ์—๋Š” ์ •๋ณด๋ฅผ ๋” ์–ป๊ธฐ ์œ„ํ•ด ๊นƒํ—ˆ๋ธŒ ํŽ˜์ด์ง€์— ๋“ค์–ด๊ฐ”์Šต๋‹ˆ๋‹ค.
  • ํ•ด๋‹น ํŽ˜์ด์ง€์— ์‚ฌ์šฉ์ž์˜ ์ด๋ฉ”์ผ ์ฃผ์†Œ๋ฅผ ๋ฐœ๊ฒฌํ–ˆ์Šต๋‹ˆ๋‹ค.
  • ์‚ฌ์šฉ์ž ์ด๋ฉ”์ผ ์ฃผ์†Œ๋Š” Github ํŽ˜์ด์ง€์—์„œ ๋ฐœ๊ฒฌ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.

๋‹ต: OWoodflint@gmail.com

๋‹ต: Github


Where has he gone on holiday?

  • ์ด๋ฒˆ์—๋Š” Github ํŽ˜์ด์ง€ ์ด๋ฉ”์ผ ์ฃผ์†Œ ๋ฐ‘์— ์žˆ๋Š” wordpress ๋ธ”๋กœ๊ทธ์— ๋“ค์–ด๊ฐ€ ๋ดค์Šต๋‹ˆ๋‹ค.

  • ๋“ค์–ด๊ฐ€ ๋ณด๋‹ˆ ์ง€๊ธˆ์€ New York์— ์žˆ๋‹ค๋Š” ์‚ฌ์‹ค์„ ์•Œ์•„๋ƒˆ์Šต๋‹ˆ๋‹ค.

๋‹ต: New York


What is the person's password?

 

 

  • ๋จผ์ € ํžŒํŠธ๋ฅผ ์ด์šฉํ•ด ์†Œ์Šค ์ฝ”๋“œ๋ฅผ ํ™•์ธํ•˜๋ผ๊ณ  ํ•ด์„œ wordpress์˜ ํŽ˜์ด์ง€์˜ ์†Œ์Šค ์ฝ”๋“œ๋ฅผ ํ™•์ธํ–ˆ์Šต๋‹ˆ๋‹ค.
  • ๋น„๋ฐ€๋ฒˆํ˜ธ์™€ ๊ด€๋ จ๋œ ๋‹จ์„œ๋ฅผ ์ฐพ๊ธฐ ์œ„ํ•ด password, flag, hint ๊ฐ™์€ ํ‚ค์›Œ๋“œ๋ฅผ ๊ฒ€์ƒ‰ํ–ˆ์ง€๋งŒ ์ •๋ณด๋ฅผ ์–ป์„ ์ˆ˜ ์—†์—ˆ์Šต๋‹ˆ๋‹ค.
  • ๊ทธ๋ž˜์„œ ์ด ๋ถ€๋ถ„์€ ๋‹ค๋ฅธ ๋ธ”๋กœ๊ทธ๋ฅผ ์ฐธ๊ณ ํ•˜๋‹ˆ ์ฃผ์„ ๋ถ€๋ถ„์— password๊ฐ€ ์ˆจ๊ฒจ์ ธ ์žˆ์—ˆ๋˜ ์ข€ ๊นŒ๋‹ค๋กœ์› ๋˜ ๋ฌธ์ œ์˜€์Šต๋‹ˆ๋‹ค..

๋‹ต: pennYDr0pper.!

 

OhSINTโ€Š—โ€ŠTryHackMe WriteUp

Open Source Intelligence (OSINT) is a sub-type of threat intelligence that is only gathered from free, public sources.

medium.com

 

+ Recent posts