OhSINT | THM WalkThrough

Nihir Zala
2 min readJan 24, 2023

--

#1 What is this users avatar of?

Download the supplied image.

*If you do not already have it, download exiftool by running apt-get install exiftool *

#2 What city is this person in?

Take the BSSID found on the page and find it’s location with wigle.net.

#3 Whats the SSID of the WAP he connected to?

Zoom in all the way to view the SSID.

#4 What is his personal email address?

From a Google search, we can see two other websites our target has accounts on.

On the Github page, we can see his email address.

#5 What site did you find his email address on?

Answer: github

#6 Where has he gone on holiday?

On the WordPress site, he reveals his location.

#7 What is this persons password?

If you closely inspect the source code of the blog, our victim’s password is visible.

--

--

Nihir Zala
Nihir Zala

Written by Nihir Zala

Hi there, I'm Nihir Zala—a Laravel developer from Gujrat, India, with over 2.5 years of professional experience. I also learning Penetesting from THM and HTB.

No responses yet