WGMY OSINT Writeup #1

finx
4 min readDec 24, 2022

Usually on the end of the year, Wargames.MY is held. This CTF is creme de la creme of Malaysian CTF with huge pool of participant and cash prize

This figure shows how much the prize pool money in stake for this CTF.

With that in mind, the questions tend to be really hard. In this edition however, OSINT section is there. I’m taking my shot at this section as I do have some familiarity with this section

Usually, the winners will do the writeup to confirm their prize but this writeup primarily to log my attempt to finish the section. I will include the challenges that I failed and how far I’ve done to complete the challenge. This is a public display of my current skill, granted they’re not good but got room for improvement.

As for the failed challenge, if I found the writeup, I will cross reference with this one and address my weakness in the other post.

[The result]

I got 1/3 of the challenges done, that’s much better then the last time I enter these things, I got 0 points. Progress :)

[The challenge files]

Here is the link to the files if you’re interested on trying the question yourself: WGMY OSINT Qusestions

[Successful challenge]

Where Am I

The question
The hint for the question
  • The solution
  1. Extract the zip file given and open the file
The whereami.jpg file given in the zip file

2) Do reverse image search on the whereami.jpg. For this one, one very specific browser extension called RevEye Reverse Image Search will be very useful for here as a right click on the pic can enable the pic to be searched on Google Lens, Bing, Yandex and Tineye

The right click menu for the reverse image search extension

For now, the extension are available on Chrome and Firefox

3) Use Google Lens to focus on the store besides Texas Chicken as that store looks weird. As shown below, the result shown that the store is Beard Papa located at Mid Valley Megamall

The result of reverse image search

4) Since Beard Papa store is not available on the map, search Texas Chicken Midvalley as that store is close to the target

Map search of Midvalley’s Texas Chicken store

5) Scroll through the picture of the place until the whereami picture is there. The flag is in the header of the image

The flag location

[Failed challenge]

Who Am I

The question
The hint for this question
  • The attempt
  1. Extract the zip file given and open the file
the whoami.png given in the zip file

2. Open up the hint link for any foothold to start the challenge

When you open the link given in the hint (https://undertale.fandom.com/wiki/W._D._Gaster#Gallery), this is what shown in the browser. Nope, still no idea how to connect this hint with the file given

— — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — —

When Am I

The question
The hint for the question
  • The attempt
  1. Extract the zip file given and open the file
the whenami,jpg given in the zip file with the important details being highlighted

2) The picture shown Comic Fiesta 2022 event schedule with couple of event blurred out. Search for the Comic Fiesta 2022 event schedule online can cross compare it with the file here.

This is the pdf of the event schedule available here (https://www.comicfiesta.org/schedule). As shown here, both of the blurred event are Hololive Meet. Day1 at 3:00PM-4:00PM, Day 2 2:00PM-3:00PM. Still no idea how this piece of info connects to the question.

3) Unblur the pen scribbles on the whenami.png (this step is not doable since I have no idea how to do this)

— — — — — — — — — — — — — — — — — — — — — — — — — — — — — — — —

That’s all for this writeup, Thank you for taking your time reading this post and have a great day :)

If there’s any issue regarding the question link provided in this writeup, please inform me via twitter @thisisfinx

--

--

finx

a malaysian cybersec undergrad student that uses this blog to document anything infosec related (mainly OSINT)