sir cumference would be so proud…
The starting point for most challenges where we are only provided with an image is to check it for any hidden information.
There are many tools available for this, but a good place to start is with the
strings command (usually built in on a Unix environment, and easily installable on other platforms). This command returns all strings of printable characters stored in a file.
Another option is to use an online image forensics tool. My go-to would be Forensically:
This site has lots of options for analysing images, but for this challenge we only really need to use
Using either of these tools, we eventually come across this vaguely familiar number:
Given all the challenge clues so far seem to be leading us to one thing, lets compare this string with pi:
Now there’s a few things we could try here.
Doesn’t look particularly relevant.
Maybe finding the difference?
Again, nothing jumps out as us here.
If we think about what this challenge is leading us to, there must be some information encoded in this string somehow. Maybe there is some pattern to the differing digits between this string and pi?
Time to go to python! Let’s mark all differences as 0, and all similarities as 1.
Aha! That looks like binary, lets head to CyberChef which should be able to decode it.
And our flag is:
Wait, that doesn’t look right. Maybe we should try decoding it the other way round?
..Û....H.\..].[Û.[. still doesn’t look right. Maybe its a padding issue? Lets try looking at just the fractional-part of the two strings.
Finally, we get our flag:
dont be irrational