Official ID Exposed Discussion

Type your comment> @tummiecookie said:

do we need specific tools to solve this challenge???

just your brain and your browser :wink:

it was one of the most interesting challenges I have done recently.
I have to say thank you to @opt1kz for the best hint.

Some people rated this as simple, and it really is when you find the technique, but honestly I didn’t feel like to rated it less than medium, since if you don’t know what to do here, it becomes pretty harder to find a solution by yourself.

I’m not very sure that you can solve it in different way as the intendent. You need that account.

Thank you to @win32k for posting this little gem

Type your comment> @NoYellowline said:

it was one of the most interesting challenges I have done recently.
I have to say thank you to @opt1kz for the best hint.

Some people rated this as simple, and it really is when you find the technique, but honestly I didn’t feel like to rated it less than medium, since if you don’t know what to do here, it becomes pretty harder to find a solution by yourself.

I’m not very sure that you can solve it in different way as the intendent. You need that account.

Accepting/give hints from a challenge like this is ridiculous, but ok, great work.
The idea of the htb challenges is to solve it yourself.

@win32k said:

Accepting/give hints from a challenge like this is ridiculous, but ok, great work.
The idea of the htb challenges is to solve it yourself.

That is great for people born with the knowledge to solve them, but for everyone else, there is an element of learning which takes place.

Some people learn by google, some learn from previous experience, some get nudges on the forums. I don’t see any individual path as being better than any other.

That’s kind of why the forums exist - if you don’t want to give/get hints, why use it?

Type your comment> @win32k said:

Type your comment> @NoYellowline said:

it was one of the most interesting challenges I have done recently.
I have to say thank you to @opt1kz for the best hint.

Some people rated this as simple, and it really is when you find the technique, but honestly I didn’t feel like to rated it less than medium, since if you don’t know what to do here, it becomes pretty harder to find a solution by yourself.

I’m not very sure that you can solve it in different way as the intendent. You need that account.

Accepting/give hints from a challenge like this is ridiculous, but ok, great work.
The idea of the htb challenges is to solve it yourself.

Wait wait, I never said ‘thank you for the solution’
All the hints are public posted here and if somebody tell something more it’ll be censored.
In my opinion some previous posts are more usefull and complete than others, but nobody has spoilered more than necessary.

For example I mentioned the needed for an account but nothing more.
You have to consider that lots of people (including me) are convinced that in this kind of chall (osint expecially) you don’t need to be registered anywhere.
in my opinion it is necessary to specify at least those times in which instead you need something in particoular.

This is also the essence of collaboration, the forum.

@NoYellowline said:

This is also the essence of collaboration, the forum.

I agree. I think the thread for the Missing in Action challenge is a good example.

Type your comment> @TazWake said:

@NoYellowline said:

This is also the essence of collaboration, the forum.

I agree. I think the thread for the Missing in Action challenge is a good example.

yes it is.

hate Roland :wink:

The technique in this one was pretty interesting. If you’re stuck, you may want to think wider than just email

Wow! Really enjoyed this challenge, learnt a couple of new tricks along the way. Very frustrating until you learn this technique.
There are some really good hints already here and the right Google search will pretty much give you a guide to take you through the process.

Type your comment> @win32k said:

Type your comment> @alienum said:

I can see the path i cannot see the flag

try harder!

Great challenge. I learnt many things I didn’t have a clue about.

Valeu!

@opt1kz said:
This is one of those challenges where you either know the technique or you don’t, and if you don’t it seems impossible unless someone else tells you or you get lucky. It’s also one of those challenges where giving hints without spoiling is very difficult, hence the general lack of information in this thread.

You can find the new technique everyone in this thread keeps mentioning via a simple Google search. For that you need two things: The name of a service and a category. You’re already in possession of both of those things. Everything is right there in front of you!

I wasn’t aware of the technique either and had to ask for help. What I just wrote would have helped me immensely. Ignore the stuff about browsers and developer tools for now and just read what I wrote above. It’s not a riddle or intentionally vague. I promise.

This is the best hint you’ll get. I didn’t get it at first but then you notice it’s pretty obvious.

Well I’ll be damned lol It took some searching, but I found what I was looking for. The source where I learned the technique was a little different than what was on my screen, but I figured it out. Really interesting. I would never have been able to figure it out without reading these comments.

This is really hard! Feels like I’m missing something…

Type your comment> @opt1kz said:

This is one of those challenges where you either know the technique or you don’t, and if you don’t it seems impossible unless someone else tells you or you get lucky. It’s also one of those challenges where giving hints without spoiling is very difficult, hence the general lack of information in this thread.

You can find the new technique everyone in this thread keeps mentioning via a simple Google search. For that you need two things: The name of a service and a category. You’re already in possession of both of those things. Everything is right there in front of you!

I wasn’t aware of the technique either and had to ask for help. What I just wrote would have helped me immensely. Ignore the stuff about browsers and developer tools for now and just read what I wrote above. It’s not a riddle or intentionally vague. I promise.

This is simple OSINT exercice, you need to have a high level of curiosity and always be attentive to the details. OSINT is just not about tool ou social network! You don’t need luck to solve this challenge without help/hint, its just about OSINT mindset :wink:

Type your comment> @win32k said:

This is simple OSINT exercice, you need to have a high level of curiosity and always be attentive to the details. OSINT is just not about tool ou social network! You don’t need luck to solve this challenge without help/hint, its just about OSINT mindset :wink:

Well I guess my subjective experience was just completely invalid then. Pity.

I am curious. I am attentive to detail. However, you can’t just magically have the “OSINT mindset” without prior experience/training in it. That’s the problem. I Googled a great many things and went down a dozen rabbit holes before someone told me to Google something very specific. Why hadn’t I Googled it on my own yet? Because I didn’t know it would yield results. 1+1=2 hadn’t “clicked” in my brain yet, so to speak. Now it has clicked, now it makes sense, and now I have it for the future.

That’s the entire point of learning.

But I wasn’t able to arrive at that destination – and didn’t – without a little bit of guidance. And, lacking that guidance, I would’ve required luck; stringing together random words and tossing them into Google hoping for a result that might not have been there. So I decided to pay it forward and return the guidance. That is all.

This “try harder and if you’re still stuck you’re dumb/lazy” attitude that permeates this site is toxic as ■■■■, but I digress.

Nobody is attacking you or saying, “win32k your challenge SUCKS!!1”. On the contrary, it was quite decent and I always appreciate learning a new technique. I actually went and immediately used it for real world purposes. So thanks for that!

I learned something very, very useful but I feel this challenge should be 30 points as it’s definitely more difficult than Money Flowz or even Infiltration.

Hints. I needed that account to progress; dev tools are great help when you want to look deeper; one ID can be used for many services.

Great challenge. I was familiar with the technique, but there are still rabbit holes. I spent the first hour sending password resets to every service I could find hoping to fuzz the full phone number. No such luck. Think about how these types of services identify you.

Spoiler Removed

Got the flag,
hint: find a useful way to use what u got from the description * find your inspiration*
pm if needed

Type your comment> @akhilesh11 said:

awesome challenge…
this helps

Maybe too explicit, don’t you think? XD