WPICTF - ISpy

description: Someone is always watching. Secure Your Webcam.

category: Recon - 200

wpi_ispy.png

This is the given jpg file:

wpi_ispy_given.png

After searching for hours, a hint has been published: /16:

webcam ? IP/16 ? Shodan !

Okay first lets retrieve the IP:

$ nslookup wpi.edu
Server:			192.168.1.1
Address:		192.168.1.1#53

Non-authoritative answer:
Name:		wpi.edu
Address:	130.215.36.26

And research on Shodan:

wpi_ispy_shodan.png

We finally found something interesting:

wpi_ispy_ip.png

wpi_ispy_flag.png

Flag is: WPI{DUCK_SAY_HELLO}