{"id":775,"date":"2021-06-05T04:01:00","date_gmt":"2021-06-05T04:01:00","guid":{"rendered":"https:\/\/zineausa.com\/blog\/?p=775"},"modified":"2021-06-05T05:25:04","modified_gmt":"2021-06-05T05:25:04","slug":"what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up","status":"publish","type":"post","link":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/","title":{"rendered":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up"},"content":{"rendered":"\n<p>Had a few hours this morning luckily to attend the Open Source Intelligence (OSINT) workshop presented by Brian Markham, the current Chief Information Security Officer (CISO) at EAB Global. Definitely learned a thing or two I&#8217;d love to share and also a quick write-up of the mini-Capture the Flag event (mini-CTF) we had at the end.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Google Dorking<\/h2>\n\n\n\n<figure class=\"wp-block-image is-resized\"><img decoding=\"async\" src=\"https:\/\/miro.medium.com\/max\/602\/0*EA62_VMXI5zNV8FS\" alt=\"Google Dorks: Utilizing Search Engines | by Hengky Sanjaya | Hengky Sanjaya  Blog | Medium\" width=\"300\"\/><\/figure>\n\n\n\n<p>Everyone knows google but Brian went over some tips that help with specifying google queries to do what you need em to. The main points i wrote down were:<\/p>\n\n\n\n<p><strong>Site: <\/strong>blah.com<strong> inurl:<\/strong>login (finds all login pages for blah.com)<br><strong>Intext:<\/strong> blah (finds blah in the text of a page)<br><strong>After:<\/strong> 2021\/06\/01 (finds pages published after a certain date &#8211; really cool)<br><strong>Intitle:<\/strong> blah (opposite of intext, only searches titles of pages)<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Useful Tools<\/h2>\n\n\n\n<p>He then went over a bunch of useful tools in detail, but here&#8217;s my chicken scratch here on what I think of them:<\/p>\n\n\n\n<p><a href=\"https:\/\/yandex.com\/\"><strong>Yandex <\/strong><\/a>&#8211; alternative to google image search<br><strong><a href=\"http:\/\/Peekyou.com\">Peekyou.com<\/a> <\/strong>&#8211; useful for cross-referencing social media handles and stuff<br><strong><a href=\"https:\/\/exiftool.org\/\">Exiftool<\/a><\/strong> &#8211; good for looking at metadata in files. However, I prefer <a href=\"http:\/\/fotoforensics.com\/\">fotoforensics.com<\/a> since I know the creator \ud83d\ude42<br><strong><a href=\"http:\/\/pic2map.com\">Pic2map<\/a><\/strong> &#8211; Good for pinpointing GPS coordinates within metadata on a map, but it didn&#8217;t work for the CTF and i still prefer fotoforensics that did work for the CTF.<br><a href=\"http:\/\/Familytreenow.com\"><strong>Familytreenow<\/strong><\/a> &#8211; good people and relative lookup tool. However, I prefer <a href=\"https:\/\/www.truepeoplesearch.com\/\">truepeoplesearch<\/a>, but it looks like they share databases or sources to a certain degree.<br><a href=\"http:\/\/Revealname.com\"><strong>Revealname<\/strong><\/a> &#8211; for reverse phone lookups &#8211; had to turn off adblock for this one to work, works but looks really ad-filled, I still prefer truepeoplesearch.<br><a href=\"http:\/\/Carrierlookup.com\"><strong>Carrierlookup<\/strong><\/a>  &#8211; also for reverse phone lookups but their website appeared broken to me (couldn&#8217;t search).<br><a href=\"http:\/\/hunter.io\"><strong>hunter<\/strong><\/a> &#8211; professional email lookup &#8211; this one looks like <a href=\"http:\/\/rocketreach.co\">rocketreach<\/a> where you need to signup for a few free searches, meh.<br><strong><a href=\"https:\/\/github.com\/laramies\/theHarvester\">theHarvester<\/a> <\/strong>&#8211; really cool tool that comes with Kali to pull information about domains like ips, contacts, phone numbers from google searches, will definitely use this going forward.<br><a href=\"https:\/\/whois.arin.net\/\"><strong>whois.arin<\/strong><\/a> &#8211; great whois tool for looking up whole subnets<br><a href=\"https:\/\/ip-netblocks.whoisxmlapi.com\/lookup\"><strong>ip-netblocks<\/strong><\/a> &#8211; Similar to the link above<br><a href=\"https:\/\/dnsdumpster.com\/\"><strong>DNS Dumpster<\/strong><\/a> &#8211; really cool site that makes it so you don&#8217;t need to manually do reverse DNS lookups and look at historical trends.<br><a href=\"https:\/\/github.com\/trufflesecurity\/truffleHog\"><strong>Trufflehog<\/strong><\/a> &#8211; git repo search for secrets and stuff<br><a href=\"https:\/\/github.com\/awslabs\/git-secrets\"><strong>Git-secrets<\/strong><\/a> &#8211; software to prevent the above from happening, heh.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Shodan<\/h2>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image.png\" alt=\"\" class=\"wp-image-777\" width=\"413\" height=\"122\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image.png 413w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-300x89.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-190x56.png 190w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-305x90.png 305w\" sizes=\"auto, (max-width: 413px) 100vw, 413px\" \/><\/figure>\n\n\n\n<p>We also were taught extensively about Shodan. Can use quotes to find phrases in quotes like &#8220;Webcam XP 5&#8221; to find sites with certain phrases in the header (that one finds open webcams).<br>Here were some other useful queries we were taught:<br><strong>Net<\/strong>: xx.xx.xx.xx\/yy &#8211; specific CIDR block<br><strong>Port<\/strong>: 443<br><strong>Http.status<\/strong>: 200 &#8211; filter by response code<br><strong>Org:<\/strong> Stanford &#8211; filter by organization the server is assigned to <br><strong>Country<\/strong>: US &#8211; country the server is in<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\">Mini-CTF Write-up<\/h1>\n\n\n\n<p>This was a really quick CTF that took me about an hour to complete, but really reinforced some of the topics in the class so thank you for putting it together! I will try to grey out the flags but honestly most of these you can google and get pretty quickly.<\/p>\n\n\n\n<p>This is how I did.. had a meeting at the start otherwise I would have started earlier :(. 3rd ain&#8217;t bad though.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"349\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-1024x349.png\" alt=\"\" class=\"wp-image-822\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-1024x349.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-300x102.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-768x261.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-600x204.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-176x60.png 176w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41-264x90.png 264w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-41.png 1131w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>The CTF was focused around Brian so some of the private details I&#8217;ll try to grey out as well.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Spot the Fed<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-1.png\" alt=\"\" class=\"wp-image-778\" width=\"445\" height=\"307\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-1.png 445w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-1-300x207.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-1-87x60.png 87w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-1-130x90.png 130w\" sizes=\"auto, (max-width: 445px) 100vw, 445px\" \/><\/figure>\n\n\n\n<p>Googling the location pretty much gives you the answer, which is greyed out. You can also kind of tell by the flag in the picture and the sign at the building.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"598\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-1024x598.png\" alt=\"\" class=\"wp-image-780\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-1024x598.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-300x175.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-768x449.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-600x351.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-103x60.png 103w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3-154x90.png 154w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-3.png 1044w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Agnes<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"402\" height=\"275\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-4.png\" alt=\"Agnes \n25 \nWho's the artist of this photo? Agnes will never tell. \nFlag will be the complete string. Example: \n329A8A3AIE4028E \nagnes2jpeg \" class=\"wp-image-781\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-4.png 402w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-4-300x205.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-4-88x60.png 88w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-4-132x90.png 132w\" sizes=\"auto, (max-width: 402px) 100vw, 402px\" \/><\/figure>\n\n\n\n<p>We used fotoforensics for this which gave us the answer pretty directly which was in the metadata. Could have used Exiftool too!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"811\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42.png\" alt=\"\" class=\"wp-image-825\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42-300x238.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42-768x608.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42-600x475.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42-76x60.png 76w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-42-114x90.png 114w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Vacation Photos<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"462\" height=\"374\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-6.png\" alt=\"Challenge \n8 Solves \nVacation photos \n50 \nI had the best time on my vacation but I can't remember where \nI took this picture. Can you help me? \nFlag should be entered with no spaces. State not required. \nExamples: \nNewYorkCity MiamiBeach \" class=\"wp-image-783\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-6.png 462w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-6-300x243.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-6-74x60.png 74w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-6-111x90.png 111w\" sizes=\"auto, (max-width: 462px) 100vw, 462px\" \/><\/figure>\n\n\n\n<p>This was the picture (I stripped the metadata):<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"591\" height=\"453\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-7.png\" alt=\"\" class=\"wp-image-784\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-7.png 591w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-7-300x230.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-7-78x60.png 78w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-7-117x90.png 117w\" sizes=\"auto, (max-width: 591px) 100vw, 591px\" \/><\/figure>\n\n\n\n<p>Used fotoforensics for this as well, as pic2map didn&#8217;t work for some reason:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"811\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43.png\" alt=\"\" class=\"wp-image-827\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43-300x238.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43-768x608.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43-600x475.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43-76x60.png 76w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-43-114x90.png 114w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Emergency 911<\/h2>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"429\" height=\"279\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-10.png\" alt=\"Challenge 7 Solves \nEmergency 911 \n25 \nWhat E 911 system does the University of Maryland use? \nFlag will be the company name. Examples: \nFireEye Cisco \" class=\"wp-image-787\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-10.png 429w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-10-300x195.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-10-92x60.png 92w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-10-138x90.png 138w\" sizes=\"auto, (max-width: 429px) 100vw, 429px\" \/><\/figure>\n\n\n\n<p>We just googled it the normal way:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"897\" height=\"289\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11.png\" alt=\"Google \nUniversity of Maryland e911 \nQ All News @ Videos \nAbout 45 results (078 seconds) \nImages \nMaps \nMore \nSettings \nTools \nhttps:\/\/terpware.umd.edu Windows Title \nMyE911 - Windows . TERPware - The University of Maryland \nMyEg11 offers dynamic location tracking for soft-phone users so that they have E911 protection, \ninside and outside the enterprise. Faculty and staff of the \" class=\"wp-image-788\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11.png 897w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11-300x97.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11-768x247.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11-600x193.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11-186x60.png 186w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-11-279x90.png 279w\" sizes=\"auto, (max-width: 897px) 100vw, 897px\" \/><\/figure>\n\n\n\n<p>This first result had the greyed out flag:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"597\" height=\"100\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-44.png\" alt=\"\" class=\"wp-image-828\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-44.png 597w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-44-300x50.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-44-190x32.png 190w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-44-537x90.png 537w\" sizes=\"auto, (max-width: 597px) 100vw, 597px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">My Pillow<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"454\" height=\"242\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-13.png\" alt=\"Challenge \n7 Solves \nMy Pillow \n25 \nWhich company hosts Mike Lindell's social media platform? \nFlag will be the entire name of the company. \" class=\"wp-image-790\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-13.png 454w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-13-300x160.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-13-113x60.png 113w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-13-169x90.png 169w\" sizes=\"auto, (max-width: 454px) 100vw, 454px\" \/><\/figure>\n\n\n\n<p>No idea who this guy is (probably should know) but found his site on Wikipedia:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"306\" height=\"257\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-45.png\" alt=\"\" class=\"wp-image-829\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-45.png 306w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-45-300x252.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-45-71x60.png 71w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-45-107x90.png 107w\" sizes=\"auto, (max-width: 306px) 100vw, 306px\" \/><\/figure>\n\n\n\n<p>Could have done a reverse NS lookup but used dnsdumpster instead since we were just taught about it \ud83d\ude00<\/p>\n\n\n\n<p>It has the company which the DNS servers are at as well, which is a major DDoS prevention vendor, but not technically sure if that counts as &#8220;hosted&#8221;. However, it would have been hard to find the true host since this vendor masks the true ip of the server, so I&#8217;m glad the DDoS prevention vendor was the right answer heh.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"873\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46.png\" alt=\"\" class=\"wp-image-830\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46-300x256.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46-768x655.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46-600x512.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46-70x60.png 70w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-46-106x90.png 106w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Mac Lab<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"455\" height=\"258\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-17.png\" alt=\"Mac Lab \n25 \nRemember that web cam we saw during class? Where is it? \nFlag will be the place, using the complete name. Examples: \nAirandSpaceMuseum UniversityofOregon \" class=\"wp-image-794\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-17.png 455w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-17-300x170.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-17-106x60.png 106w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-17-159x90.png 159w\" sizes=\"auto, (max-width: 455px) 100vw, 455px\" \/><\/figure>\n\n\n\n<p>This was the screenshot:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"444\" height=\"219\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-47.png\" alt=\"\" class=\"wp-image-831\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-47.png 444w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-47-300x148.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-47-122x60.png 122w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-47-182x90.png 182w\" sizes=\"auto, (max-width: 444px) 100vw, 444px\" \/><\/figure>\n\n\n\n<p>It had the IP so we just ran it through arin which was taught to us in class, and viola it has the organization!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"451\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48.png\" alt=\"\" class=\"wp-image-832\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48-300x132.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48-768x338.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48-600x264.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48-136x60.png 136w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-48-204x90.png 204w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Old Phone<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"443\" height=\"203\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-20.png\" alt=\"Old phone \n50 \nWhat was Brian's previous work (desk) phone number? \nFlagwill be the 10-digit number. Example: \n2028675309 \" class=\"wp-image-797\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-20.png 443w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-20-300x137.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-20-131x60.png 131w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-20-196x90.png 196w\" sizes=\"auto, (max-width: 443px) 100vw, 443px\" \/><\/figure>\n\n\n\n<p>Now we get to some of the harder stuff&#8230; The presentation he gave said he worked at PWC so I googled this:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"759\" height=\"676\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49.png\" alt=\"\" class=\"wp-image-833\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49.png 759w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49-300x267.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49-600x534.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49-67x60.png 67w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-49-101x90.png 101w\" sizes=\"auto, (max-width: 759px) 100vw, 759px\" \/><\/figure>\n\n\n\n<p>There were some slides with his number in it! yay!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"546\" height=\"513\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-50.png\" alt=\"\" class=\"wp-image-834\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-50.png 546w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-50-300x282.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-50-64x60.png 64w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-50-96x90.png 96w\" sizes=\"auto, (max-width: 546px) 100vw, 546px\" \/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Heat on Feet<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"455\" height=\"269\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-23.png\" alt=\"Heat on feet \n50 \nWhere was this picture taken? \nFlag will be the city and state. Example formatting: \nSeattle, WA Chicago, IL \" class=\"wp-image-800\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-23.png 455w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-23-300x177.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-23-101x60.png 101w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-23-152x90.png 152w\" sizes=\"auto, (max-width: 455px) 100vw, 455px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"463\" height=\"634\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-29.png\" alt=\"\" class=\"wp-image-806\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-29.png 463w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-29-219x300.png 219w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-29-44x60.png 44w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-29-66x90.png 66w\" sizes=\"auto, (max-width: 463px) 100vw, 463px\" \/><\/figure>\n\n\n\n<p>This one actually had me stumped for a while. I used peekyou first to find that maria person:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"777\" height=\"680\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51.png\" alt=\"\" class=\"wp-image-835\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51.png 777w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51-300x263.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51-768x672.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51-600x525.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51-69x60.png 69w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-51-103x90.png 103w\" sizes=\"auto, (max-width: 777px) 100vw, 777px\" \/><\/figure>\n\n\n\n<p>The Kik link actually gives you her real name which is Samantha or something, but the Periscope link went to another twitter which had a person based in NJ:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"705\" height=\"474\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52.png\" alt=\"\" class=\"wp-image-836\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52.png 705w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52-300x202.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52-600x403.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52-89x60.png 89w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-52-134x90.png 134w\" sizes=\"auto, (max-width: 705px) 100vw, 705px\" \/><\/figure>\n\n\n\n<p>Also if you zoom in on the photo it gives the city:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"790\" height=\"359\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53.png\" alt=\"\" class=\"wp-image-837\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53.png 790w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53-300x136.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53-768x349.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53-600x273.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53-132x60.png 132w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-53-198x90.png 198w\" sizes=\"auto, (max-width: 790px) 100vw, 790px\" \/><\/figure>\n\n\n\n<p>So I googled it and indeed it exists:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"854\" height=\"382\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31.png\" alt=\"\" class=\"wp-image-808\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31.png 854w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31-300x134.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31-768x344.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31-600x268.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31-134x60.png 134w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-31-201x90.png 201w\" sizes=\"auto, (max-width: 854px) 100vw, 854px\" \/><\/figure>\n\n\n\n<p>Now for the extra hard stuff:<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">If it pleases the court<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"450\" height=\"291\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-32.png\" alt=\"Challenge \n7 Solves \nIf it pleases the court \n50 \nWhere did Brian's wife attend law school? \nFlag should be submitted as the place. Examples: \nUniversity of Michigan (flag would be Michigan) UC Santa \nBarbara (flag would be SantaBarbara) \" class=\"wp-image-809\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-32.png 450w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-32-300x194.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-32-93x60.png 93w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-32-139x90.png 139w\" sizes=\"auto, (max-width: 450px) 100vw, 450px\" \/><\/figure>\n\n\n\n<p>Now I typed in FamilyTreeNow and used College Park, MD since we know Brian went to school there from his presentation. We find his past addresses listed:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"412\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54.png\" alt=\"\" class=\"wp-image-838\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54.png 1024w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54-300x121.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54-768x309.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54-600x241.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54-149x60.png 149w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-54-224x90.png 224w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Then I was able to find the name of his wife (J____A)<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"956\" height=\"764\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55.png\" alt=\"\" class=\"wp-image-839\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55.png 956w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55-300x240.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55-768x614.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55-600x479.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55-75x60.png 75w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-55-113x90.png 113w\" sizes=\"auto, (max-width: 956px) 100vw, 956px\" \/><\/figure>\n\n\n\n<p>Then we google her and find her linkedin page and where she went to law school, yay!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"803\" height=\"130\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56.png\" alt=\"\" class=\"wp-image-840\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56.png 803w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56-300x49.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56-768x124.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56-600x97.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56-190x31.png 190w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-56-556x90.png 556w\" sizes=\"auto, (max-width: 803px) 100vw, 803px\" \/><\/figure>\n\n\n\n<p>Saved the hardest one for last.. sigh<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Good luck<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"473\" height=\"260\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-38.png\" alt=\"Challenge \n3 Solves \nGood luck \n50 \nBrian has an Instagram account. Can you find it and find the \nFlag will be the entire string in the curly braces. \" class=\"wp-image-815\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-38.png 473w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-38-300x165.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-38-109x60.png 109w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-38-164x90.png 164w\" sizes=\"auto, (max-width: 473px) 100vw, 473px\" \/><\/figure>\n\n\n\n<p>This was definitely the hardest, and only 2 people had solved it by the time I got to start on it (had a meeting that ran for 2 hours right after the presentation). I started with peekyou, tried all sorts of google dorks but couldn&#8217;t find him. Then I remembered I found his wife:<\/p>\n\n\n\n<p>So we know j_____a&#8217;s name so we find her IG which is public:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"667\" height=\"400\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57.png\" alt=\"\" class=\"wp-image-841\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57.png 667w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57-300x180.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57-600x360.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57-100x60.png 100w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-57-150x90.png 150w\" sizes=\"auto, (max-width: 667px) 100vw, 667px\" \/><\/figure>\n\n\n\n<p>We tried looking through her posts to see if Brian liked any of her photos, of course he did not, so we had to look through the 300+ people she follows to find him, only took me like 15 mins ugh:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"927\" height=\"475\" src=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58.png\" alt=\"\" class=\"wp-image-842\" srcset=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58.png 927w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58-300x154.png 300w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58-768x394.png 768w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58-600x307.png 600w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58-117x60.png 117w, https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/image-58-176x90.png 176w\" sizes=\"auto, (max-width: 927px) 100vw, 927px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>Had a few hours this morning luckily to attend the Open Source Intelligence (OSINT) workshop presented by Brian Markham, the current Chief Information Security Officer (CISO) at EAB Global. Definitely learned a thing or two I&#8217;d love to share and also a quick write-up of the mini-Capture the Flag event (mini-CTF) we had at the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":824,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-775","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog<\/title>\n<meta name=\"description\" content=\"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog\" \/>\n<meta property=\"og:description\" content=\"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/\" \/>\n<meta property=\"og:site_name\" content=\"Zinea InfoSec Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/zineausa\/\" \/>\n<meta property=\"article:published_time\" content=\"2021-06-05T04:01:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-06-05T05:25:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png\" \/>\n\t<meta property=\"og:image:width\" content=\"301\" \/>\n\t<meta property=\"og:image:height\" content=\"111\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Zinea\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@ZineaLLC\" \/>\n<meta name=\"twitter:site\" content=\"@ZineaLLC\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Zinea\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"12 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/\"},\"author\":{\"name\":\"Zinea\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#\\\/schema\\\/person\\\/e3c58d4f0650f7fb571c01fcf836b1d0\"},\"headline\":\"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up\",\"datePublished\":\"2021-06-05T04:01:00+00:00\",\"dateModified\":\"2021-06-05T05:25:04+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/\"},\"wordCount\":1105,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/SNAG-2815.png\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/\",\"url\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/\",\"name\":\"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/SNAG-2815.png\",\"datePublished\":\"2021-06-05T04:01:00+00:00\",\"dateModified\":\"2021-06-05T05:25:04+00:00\",\"description\":\"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#primaryimage\",\"url\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/SNAG-2815.png\",\"contentUrl\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/SNAG-2815.png\",\"width\":301,\"height\":111},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/2021\\\/06\\\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/\",\"name\":\"Zinea InfoSec Blog\",\"description\":\"Cyber Security Resources\",\"publisher\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#organization\",\"name\":\"Zinea LLC\",\"url\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/05\\\/zinea-square.png\",\"contentUrl\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/05\\\/zinea-square.png\",\"width\":876,\"height\":876,\"caption\":\"Zinea LLC\"},\"image\":{\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/zineausa\\\/\",\"https:\\\/\\\/x.com\\\/ZineaLLC\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zineausa.com\\\/blog\\\/#\\\/schema\\\/person\\\/e3c58d4f0650f7fb571c01fcf836b1d0\",\"name\":\"Zinea\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g\",\"caption\":\"Zinea\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog","description":"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/","og_locale":"en_US","og_type":"article","og_title":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog","og_description":"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.","og_url":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/","og_site_name":"Zinea InfoSec Blog","article_publisher":"https:\/\/www.facebook.com\/zineausa\/","article_published_time":"2021-06-05T04:01:00+00:00","article_modified_time":"2021-06-05T05:25:04+00:00","og_image":[{"width":301,"height":111,"url":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png","type":"image\/png"}],"author":"Zinea","twitter_card":"summary_large_image","twitter_creator":"@ZineaLLC","twitter_site":"@ZineaLLC","twitter_misc":{"Written by":"Zinea","Est. reading time":"12 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#article","isPartOf":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/"},"author":{"name":"Zinea","@id":"https:\/\/zineausa.com\/blog\/#\/schema\/person\/e3c58d4f0650f7fb571c01fcf836b1d0"},"headline":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up","datePublished":"2021-06-05T04:01:00+00:00","dateModified":"2021-06-05T05:25:04+00:00","mainEntityOfPage":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/"},"wordCount":1105,"commentCount":0,"publisher":{"@id":"https:\/\/zineausa.com\/blog\/#organization"},"image":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#primaryimage"},"thumbnailUrl":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png","inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/","url":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/","name":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up - Zinea InfoSec Blog","isPartOf":{"@id":"https:\/\/zineausa.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#primaryimage"},"image":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#primaryimage"},"thumbnailUrl":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png","datePublished":"2021-06-05T04:01:00+00:00","dateModified":"2021-06-05T05:25:04+00:00","description":"What Brian Markham taught me about OSINT research at the BsidesNOVA workshop and a short write-up of the mini CTF afterwards.","breadcrumb":{"@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#primaryimage","url":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png","contentUrl":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2021\/06\/SNAG-2815.png","width":301,"height":111},{"@type":"BreadcrumbList","@id":"https:\/\/zineausa.com\/blog\/2021\/06\/what-i-learned-from-the-bsidesnova-osint-workshop-mini-ctf-write-up\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zineausa.com\/blog\/"},{"@type":"ListItem","position":2,"name":"What I Learned from the BsidesNOVA OSINT Workshop + mini CTF Write-up"}]},{"@type":"WebSite","@id":"https:\/\/zineausa.com\/blog\/#website","url":"https:\/\/zineausa.com\/blog\/","name":"Zinea InfoSec Blog","description":"Cyber Security Resources","publisher":{"@id":"https:\/\/zineausa.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zineausa.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zineausa.com\/blog\/#organization","name":"Zinea LLC","url":"https:\/\/zineausa.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zineausa.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2018\/05\/zinea-square.png","contentUrl":"https:\/\/zineausa.com\/blog\/wp-content\/uploads\/2018\/05\/zinea-square.png","width":876,"height":876,"caption":"Zinea LLC"},"image":{"@id":"https:\/\/zineausa.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/zineausa\/","https:\/\/x.com\/ZineaLLC"]},{"@type":"Person","@id":"https:\/\/zineausa.com\/blog\/#\/schema\/person\/e3c58d4f0650f7fb571c01fcf836b1d0","name":"Zinea","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/81f66095634a4c974693824dc72cd0db7c7c44910d60dda2d1bf1be275ee107d?s=96&d=mm&r=g","caption":"Zinea"}}]}},"_links":{"self":[{"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/posts\/775","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/comments?post=775"}],"version-history":[{"count":5,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/posts\/775\/revisions"}],"predecessor-version":[{"id":843,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/posts\/775\/revisions\/843"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/media\/824"}],"wp:attachment":[{"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/media?parent=775"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/categories?post=775"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zineausa.com\/blog\/wp-json\/wp\/v2\/tags?post=775"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}