Challenge 2 Explanation: Forensics

Cyber forensics is an important field in the cybersecurity world. Through forensics, cyber investigators are able to identify and understand the actions and methods of cyber criminals. File forensic techniques range from file signature identification to complicated binary analysis. In the preceding lesson, we learned how to identify file types through examining file signatures.

The provided file has an extension of “.pdf” however, if you try to open the file by double-clicking on it, the file will not open properly and likely display an error message.

Explanation Screenshot 1

To investigate this file, first open the file in Notepad to view the file signature. As you can see in the screenshot the file signature, and answer to question 1, is “PNG.”

Explanation Screenshot 2

To view the file as a PNG, rename the file and change the extension to “.png”, and open the file using a picture viewing application. In the picture, you will find the flag.

Explanation example