> For the complete documentation index, see [llms.txt](https://picoctf2019.haydenhousen.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://picoctf2019.haydenhousen.com/forensics/pastaaaa.md).

# pastaAAA

## Problem

> This pasta is up to no good. There MUST be something behind it.

* [Image](https://github.com/HHousen/PicoCTF-2019/tree/24b0981c72638c12f9a8572f81e1abbcf8de306d/Forensics/pastaAAA/ctf.png)

## Solution

1. Use the `stegsolve` tool to find the flag in red planes 0 and 1. `stegsolve` can be downloaded from [this GitHub repo](https://github.com/eugenekolo/sec-tools/blob/master/stego/stegsolve/stegsolve/stegsolve.jar). More stenography tools on [HackTricks](https://book.hacktricks.xyz/stego/stego-tricks).
2. Looking at both planes is important to find that the 3rd character of the flag is a dollar sign and not a capital S.

![Solved image, red plane 0 of ctf.png](/files/-MZKDM7Mv0vvEL_rgJQ6) ![Solved image, red plane 1 of ctf.png](/files/-MZKDM7N_cK1ok4ZBQ8J)

### Flag

`picoCTF{pa$ta_1s_lyf3}`
