滑块分析(记录笔记)
流程分析
1.获取gt和challenge
https://www.geetest.com/demo/gt/register-fullpage-official?t=1647671972238
2.环境校验(w: aes + rsa)(js)
https://api.geetest.com/get.php?gt=fe23d6148baf995e34decea58c12b5e4&challenge=5cdea843584bfc277f2157584a5b8ff9&lang=zh-cn&pt=0&client_type=web&w=3XOIkaLZk9Y....
3.获取图片,进行还原图片,获取缺口
https://api.geetest.com/get.php?is_next=true&type=slide3>=ff3cd843746782b0e0f377c2d234d6a5&challenge=787658aaf6b27710abf07338ada692f8&lang=zh-cn&https=true&protocol=https%3A%2F%2F&offline=false&product=embed&api_server=api.geetest.com&isPC=true&autoReset=true&width=100%25&callback=geetest_1647672245234
(还原图片的数组可能会变化)
4.提交验证 (aes + rsa )(js)
rp: MD5(gt+challenge + passtime)
aa: 可能是随机字符串
https://api.geetest.com/ajax.php?gt=ff3cd843746782b0e0f377c2d234d6a5&challenge=787658aaf6b27710abf07338ada692f8&lang=zh-cn&pt=0&client_type=web&w=
注意:rsa加密数据即aes的key