Writeups for BITSCTF 2026 covering OSINT and steganography/forensics challenges. The OSINT challenge involves identifying a Copenhagen landmark post-fire, using Google Maps Street View and What3Words to decode a geocoded flag. The steganography challenges involve multi-step techniques: extracting hidden files with binwalk, LSB analysis with zsteg, XOR decryption via CyberChef, and executing Malbolge esoteric code. A second stego challenge requires extracting byte layers from a 64-bit floating-point TIFF using Python/NumPy, navigating a decoy QR code, and using GIMP color threshold adjustments to reveal a fragmented flag.

5m read timeFrom infosecwriteups.com
Post cover image
81 Impressions