The Nen-Book
LinkedinTwitterMediumGithubHTB
  • Whoami
  • Walkthroughs & Writeups
    • My CTF Methodology
    • Hack The Box Machines
      • Administrator
      • Escape two
      • Cicada
      • HTB Permx Machine(CVE-2023–4220 Chamilo LMS)
    • Intigriti 1337Up 2024
      • Intigriti 1337Up 2024-CTF OSINT Challenges
      • Intigriti 1337Up Live 2024-CTF Web Challenges
    • CyCTF Quals 2024
      • OSINT Challenges CyCTF Quals 2024
      • Old Friend OSINT Challenge CyCTF 2024 Quals Writeup
    • PicoCTF
      • PicoCTF 2024 Web Exploitation Challenges
      • PicoCTF 2024 General Skills Challenges
      • PicoCTF 2021 Web Exploitation Challenges Walkthrough
      • PicoCTF 2019 Web Exploitation Challenges
  • Web_AppSec
    • Web_Recon
    • SQli
    • ATO
    • Backend_Technology_Tricks
    • XSS
    • SSRF
    • CSRF
    • XXE
    • SSTI
    • Insecure_Deserialization
    • Open_Redirects
    • Information_Disclosures
    • Rate_Limiting
    • Clickjacking
    • Broken Access Control & IDORS
    • Bash_Scripting
    • Authentication_Vulnerabilities
    • App_Logic_Errors
  • Network & AD Pentesting
    • Scanning & Enumeration
    • Active_Directory
      • AD_Overview_&_ Lab Build
      • AD_Initial_Attack_Vectors
      • AD_Post-Compromise_Enumeration
      • AD_Post-Compromise_Attacks
    • Buffer_Overflow_Attacks
    • Web_Applications
    • Privilege_Escalation
  • Cloud_Security
    • AWS Pentesting
  • APISec
    • API_Recon
    • Broken_Access_Control & Info_Leaks
  • Code_Review
    • Source_Code_Review_101
    • Code Review Tools
  • Bug_Hunting
    • Picking_A_BugBounty_Program
    • Writing_A_Good_Report
  • MITRE ATT&CK
    • Introducing the ATT&CK Framework
    • MITRE Engenuity
    • Threat-Informed Defense
Powered by GitBook
On this page
  • First Challenge: Aerospace
  • Second Challenge: OhMyCell

Was this helpful?

Edit on GitHub
  1. Walkthroughs & Writeups
  2. CyCTF Quals 2024

OSINT Challenges CyCTF Quals 2024

PreviousCyCTF Quals 2024NextOld Friend OSINT Challenge CyCTF 2024 Quals Writeup

Last updated 5 months ago

Was this helpful?

Hello, this is SirReda (0xHunterr). I recently participated in CyCTF 2024 Quals, and today, we will walkthrough OSINT challenges.

First Challenge: Aerospace

Description: We are investigating the history of a nano-satellite project, Satellites usually are being observed by researchers/scientists via stations on earth. can you find out the last station has observed the satellite with a status “Good” , flag is the station name without spaces example flag: CyCTF{1337-Station}

Files provided with the challenge Data.txt File:

1 43728U 18096K 23081.21782463 .01925735 32332-2 20784-2 0 9995 2 43728 97.3099 175.2941 0008625 277.9511 82.0794 16.10744455241223

So our duty here is to find the station, to do that we must know more about that mini-satellite

from the observation logs provided in the challenge you can search and know what info it gives us, ChatGPT can be useful here.

ChatGPT response for “at what time this observation loged?”

using the NORD ID in a query with our best friend “google” to search for the satellite: 43728 norad id satellite , we got its name 3CAT1

no status good appear

from the challenge description, our goal is the “last” observation with the status “Good” playing filters we got:

so our flag is: CyCTF{766-Dunchurch}

Second Challenge: OhMyCell

Description: A Friend of mine is working at the Arab German Company in Cairo , he told me about his struggle to call his wife while he is at the office , i decided to make an investigation for the region to tell him where is the best spot he can go to have a good signal i mean i am a communication engineer after all , but looks like i need some help from a smart person like you. The flag is the cell id of the better cell he can be nearby to have a better signal and the radio Type, example format CyCTF{1337_CDMA}

Our mission is clear and the situation we are in is pretty simple first let’s find what company they meant and where it’s located. Searching Google with the same quote “the Arab German Company in Cairo” we got plenty

but the one that fits with the description is the “Arab German Company For License Plates S.A.E.” Since it’s near the Airport that answers the Struggle in phone calls and now it makes sense unlike the others

near the Airport

after digging and trying the cells in this area we found our cell

the flag: CyCTF{16456_UMTS}

bro use Etisalat to call his wife

going to websites to see what observations there and using the name we got

determining the longitude and latitude: (30.083411, 31.387606) now searching for a site that enables us to see what cell towers are available in a specific area I used , you will notice some search filters like MCC, MNC…

Mobile Country Codes (MCC) are used in wireless telephone networks (GSM, CDMA, UMTS, etc.) checkout this

Using this info in and locating the same place in its map and simulating the exact place (in front of Cairo AirPort) we reached:

we reached the end of this writeup See you in the next ones (ان شاء الله) If you have any questions, You can reach me through my social accounts: | | |

https://network.satnogs.org/observations
OpenCelliD
https://www.mcc-mnc.com/
OpenCelliD
Twitter(X)
Linkedin
Github
Facebook