- Published on
The Numbers Mason from OSMOSIS - "For the Love of OSINT CTF"
Task Overview
We were given a WAV audio file that contained a sequence of sounds. The goal was to extract meaningful information from it.
Since the file was an audio signal, we suspected it might contain Dual-Tone Multi-Frequency (DTMF) tones, commonly used in telephony for dialing numbers. To decode it, we used an online DTMF decoder:
data:image/s3,"s3://crabby-images/6a284/6a284565e8bb7b9ab4795b4a75a875b4d3c31312" alt="DTMF Decoding"
The tool extracted the following numerical sequence from the audio:
224448555999#2886677727788
Initially, it looked like a sequence of phone keypad numbers, possibly representing text typed on a T9 keyboard (old Nokia-style SMS input). So we can user tool like Multi-tap Decoder.
data:image/s3,"s3://crabby-images/de39e/de39e82b055039f67f4c4d761aa5432d562a0023" alt="T9 Keyboard"
By recognizing the input as T9-based text, we converted:
224448555999#2886677727788
to:
BITLY AUNRAQU
We figured out that it's a link to https://bit.ly/AUNRAQU
This link led to a website with a flag
data:image/s3,"s3://crabby-images/8c991/8c99198e257c13b3b0f03560221602ce73f5a8cb" alt="FLAG"
Conclusion
The challenge involved decoding DTMF tones from a WAV file and recognizing the result as a T9 text message, which turned out to be a bit.ly link leading to a webpage with flag.