web19
这道题和上一道题目差不多,也是一道脚本题,一开始我还以为有了什么新花样,后来才发现差不多,就是在响应头里有一个flag的属性,需要两次base64解码,然后再以post的方式提交回去,就能得到flag,这里直接贴出我这个菜鸡写的脚本
import requests
import base64
url = 'http://114.67.246.176:15361/'
headers = {
'User-Agent': 'Mozilla/5.0 (Linux; Android 6.0; Nexus 5 Build/MRA58N) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.212 Mobile Safari/537.36'
}
request = requests.session()
response = request.get(url, headers=headers)
if response.status_code == 200:
flag = response.headers['flag']
flag1 = base64.b64decode(flag).decode()
flag2 = flag1[14:]
f_flag = base64.b64decode(flag2).decode()
print(f_flag)
data = {
'margin': f_flag
}
req = request.post(url, data=data)
print(req.text)
运行后得到flag
注:萌新第一次写write up,不足之处还请见谅,不对之处欢迎批评指正